CVE-2017-9074

HIGH
New! CVE Severity Now Using CVSS v3

The calculated severity for CVEs has been updated to use CVSS v3 by default. CVEs that do not have a CVSS v3 score will fall back CVSS v2 for calculating severity. Severity display preferences can be toggled in the settings dropdown.

Description

The IPv6 fragmentation implementation in the Linux kernel through 4.11.1 does not consider that the nexthdr field may be associated with an invalid option, which allows local users to cause a denial of service (out-of-bounds read and BUG) or possibly have unspecified other impact via crafted socket and send system calls.

References

http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=2423496af35d94a87156b063ea5cedffc10a70a1

http://www.debian.org/security/2017/dsa-3886

http://www.securityfocus.com/bid/98577

https://access.redhat.com/errata/RHSA-2017:1842

https://access.redhat.com/errata/RHSA-2017:2077

https://access.redhat.com/errata/RHSA-2017:2669

https://access.redhat.com/errata/RHSA-2018:0169

https://github.com/torvalds/linux/commit/2423496af35d94a87156b063ea5cedffc10a70a1

https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0

https://patchwork.ozlabs.org/patch/763117/

Details

Source: MITRE

Published: 2017-05-19

Updated: 2018-11-30

Type: CWE-125

Risk Information

CVSS v2

Base Score: 7.2

Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Impact Score: 10

Exploitability Score: 3.9

Severity: HIGH

CVSS v3

Base Score: 7.8

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Impact Score: 5.9

Exploitability Score: 1.8

Severity: HIGH

Vulnerable Software

Configuration 1

OR

cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* versions up to 4.11.1 (inclusive)

Tenable Plugins

View all (65 total)

IDNameProductFamilySeverity
127425NewStart CGSL MAIN 4.05 : kernel Multiple Vulnerabilities (NS-SA-2019-0152)NessusNewStart CGSL Local Security Checks
high
124990EulerOS Virtualization for ARM 64 3.0.1.0 : kernel (EulerOS-SA-2019-1537)NessusHuawei Local Security Checks
high
124827EulerOS Virtualization 3.0.1.0 : kernel (EulerOS-SA-2019-1504)NessusHuawei Local Security Checks
critical
121698Photon OS 1.0: Linux PHSA-2017-0019NessusPhotonOS Local Security Checks
high
118684F5 Networks BIG-IP : Linux kernel vulnerability (K61223103)NessusF5 Networks Local Security Checks
high
111868Photon OS 1.0: Linux PHSA-2017-0019 (deprecated)NessusPhotonOS Local Security Checks
critical
109829Oracle Linux 6 / 7 : Unbreakable Enterprise kernel (ELSA-2018-4109) (Meltdown) (Spectre)NessusOracle Linux Local Security Checks
high
109668OracleVM 3.3 : Unbreakable / etc (OVMSA-2018-0041) (Spectre)NessusOracleVM Local Security Checks
high
107051Oracle Linux 6 / 7 : Unbreakable Enterprise kernel (ELSA-2018-4040)NessusOracle Linux Local Security Checks
high
106469OracleVM 3.4 : Unbreakable / etc (OVMSA-2018-0015) (BlueBorne) (Meltdown) (Spectre) (Stack Clash)NessusOracleVM Local Security Checks
critical
106369Scientific Linux Security Update : kernel on SL6.x i386/x86_64 (20180125)NessusScientific Linux Local Security Checks
high
106367Oracle Linux 6 : kernel (ELSA-2018-0169) (deprecated)NessusOracle Linux Local Security Checks
critical
106334RHEL 6 : kernel (RHSA-2018:0169)NessusRed Hat Local Security Checks
high
105248OracleVM 3.4 : Unbreakable / etc (OVMSA-2017-0174) (BlueBorne) (Dirty COW) (Stack Clash)NessusOracleVM Local Security Checks
high
105247Oracle Linux 6 / 7 : Unbreakable Enterprise kernel (ELSA-2017-3659) (BlueBorne) (Dirty COW) (Stack Clash)NessusOracle Linux Local Security Checks
high
105145Oracle Linux 6 : Unbreakable Enterprise kernel (ELSA-2017-3658) (BlueBorne) (Stack Clash)NessusOracle Linux Local Security Checks
high
104374SUSE SLES12 Security Update : kernel (SUSE-SU-2017:2920-1) (KRACK) (Stack Clash)NessusSuSE Local Security Checks
critical
104371Oracle Linux 6 : Unbreakable Enterprise kernel (ELSA-2017-3637)NessusOracle Linux Local Security Checks
high
104271SUSE SLES12 Security Update : kernel (SUSE-SU-2017:2908-1) (KRACK) (Stack Clash)NessusSuSE Local Security Checks
critical
103354SUSE SLES11 Security Update : kernel (SUSE-SU-2017:2525-1) (Stack Clash)NessusSuSE Local Security Checks
critical
103110SUSE SLES11 Security Update : kernel (SUSE-SU-2017:2389-1) (Stack Clash)NessusSuSE Local Security Checks
high
103046RHEL 6 : MRG (RHSA-2017:2669)NessusRed Hat Local Security Checks
high
102774OracleVM 3.4 : Unbreakable / etc (OVMSA-2017-0145) (Stack Clash)NessusOracleVM Local Security Checks
critical
102773Oracle Linux 6 / 7 : Unbreakable Enterprise kernel (ELSA-2017-3609) (Stack Clash)NessusOracle Linux Local Security Checks
critical
102734CentOS 7 : kernel (CESA-2017:1842) (Stack Clash)NessusCentOS Local Security Checks
high
102645Scientific Linux Security Update : kernel on SL7.x x86_64 (20170801)NessusScientific Linux Local Security Checks
high
102511Oracle Linux 7 : kernel (ELSA-2017-1842-1) (Stack Clash)NessusOracle Linux Local Security Checks
critical
102281Oracle Linux 7 : kernel (ELSA-2017-1842) (Stack Clash)NessusOracle Linux Local Security Checks
high
102151RHEL 7 : kernel-rt (RHSA-2017:2077)NessusRed Hat Local Security Checks
high
102143RHEL 7 : kernel (RHSA-2017:1842) (Stack Clash)NessusRed Hat Local Security Checks
high
101853EulerOS 2.0 SP2 : kernel (EulerOS-SA-2017-1123)NessusHuawei Local Security Checks
high
101852EulerOS 2.0 SP1 : kernel (EulerOS-SA-2017-1122)NessusHuawei Local Security Checks
high
101762SUSE SLED12 / SLES12 Security Update : kernel (SUSE-SU-2017:1853-1) (Stack Clash)NessusSuSE Local Security Checks
high
101156Ubuntu 17.04 : linux, linux-raspi2 vulnerabilities (USN-3345-1)NessusUbuntu Local Security Checks
high
101155Ubuntu 14.04 LTS : linux-lts-xenial vulnerabilities (USN-3344-2)NessusUbuntu Local Security Checks
high
101154Ubuntu 16.04 LTS : linux, linux-aws, linux-gke, linux-raspi2, linux-snapdragon vulnerabilities (USN-3344-1)NessusUbuntu Local Security Checks
high
101153Ubuntu 12.04 LTS : linux-lts-trusty vulnerabilities (USN-3343-2)NessusUbuntu Local Security Checks
critical
101152Ubuntu 14.04 LTS : linux vulnerabilities (USN-3343-1)NessusUbuntu Local Security Checks
high
101151Ubuntu 16.04 LTS : linux-hwe vulnerabilities (USN-3342-2)NessusUbuntu Local Security Checks
high
101150Ubuntu 16.10 : linux, linux-raspi2 vulnerabilities (USN-3342-1)NessusUbuntu Local Security Checks
high
100999Amazon Linux AMI : kernel (ALAS-2017-846)NessusAmazon Linux Local Security Checks
high
100933Ubuntu 14.04 LTS : linux, linux-meta vulnerabilities (USN-3335-1) (Stack Clash)NessusUbuntu Local Security Checks
high
100932Ubuntu 14.04 LTS : linux-lts-xenial, linux-meta-lts-xenial vulnerabilities (USN-3334-1) (Stack Clash)NessusUbuntu Local Security Checks
high
100931Ubuntu 16.04 LTS : linux-hwe, linux-meta-hwe vulnerabilities (USN-3333-1) (Stack Clash)NessusUbuntu Local Security Checks
high
100930Ubuntu 16.04 LTS : linux-meta-raspi2, linux-raspi2 vulnerabilities (USN-3332-1) (Stack Clash)NessusUbuntu Local Security Checks
high
100929Ubuntu 16.04 LTS : linux-aws, linux-meta-aws vulnerabilities (USN-3331-1) (Stack Clash)NessusUbuntu Local Security Checks
high
100928Ubuntu 16.04 LTS : linux-meta-snapdragon, linux-snapdragon vulnerabilities (USN-3330-1) (Stack Clash)NessusUbuntu Local Security Checks
high
100927Ubuntu 16.04 LTS : linux-gke, linux-meta-gke vulnerabilities (USN-3329-1) (Stack Clash)NessusUbuntu Local Security Checks
high
100926Ubuntu 16.04 LTS : linux, linux-meta vulnerabilities (USN-3328-1) (Stack Clash)NessusUbuntu Local Security Checks
high
100925Ubuntu 16.10 : linux-meta-raspi2, linux-raspi2 vulnerabilities (USN-3327-1) (Stack Clash)NessusUbuntu Local Security Checks
high
100924Ubuntu 16.10 : linux, linux-meta vulnerabilities (USN-3326-1) (Stack Clash)NessusUbuntu Local Security Checks
high
100923Ubuntu 17.04 : linux-meta-raspi2, linux-raspi2 vulnerabilities (USN-3325-1) (Stack Clash)NessusUbuntu Local Security Checks
high
100922Ubuntu 17.04 : linux, linux-meta vulnerabilities (USN-3324-1) (Stack Clash)NessusUbuntu Local Security Checks
high
100877Debian DSA-3886-1 : linux - security update (Stack Clash)NessusDebian Local Security Checks
critical
100876Debian DLA-993-2 : linux regression update (Stack Clash)NessusDebian Local Security Checks
critical
100798Fedora 24 : kernel (2017-6554692044)NessusFedora Local Security Checks
high
100769Virtuozzo 6 : parallels-server-bm-release / vzkernel / etc (VZA-2017-047)NessusVirtuozzo Local Security Checks
high
100711openSUSE Security Update : the Linux Kernel (openSUSE-2017-666)NessusSuSE Local Security Checks
high
100601Virtuozzo 7 : readykernel-patch (VZA-2017-045)NessusVirtuozzo Local Security Checks
high
100600Virtuozzo 7 : readykernel-patch (VZA-2017-044)NessusVirtuozzo Local Security Checks
high
100599Virtuozzo 7 : readykernel-patch (VZA-2017-043)NessusVirtuozzo Local Security Checks
high
100598Virtuozzo 7 : readykernel-patch (VZA-2017-042)NessusVirtuozzo Local Security Checks
critical
100563Fedora 25 : kernel (2017-6f06be3fe9)NessusFedora Local Security Checks
high
100491Fedora 24 : kernel (2017-85744f8aa9)NessusFedora Local Security Checks
high
100435Fedora 25 : kernel (2017-273b67d5ee)NessusFedora Local Security Checks
high