Security Advisory

CVE-2017-17053

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2017-11-29 03:00:00
Last updated 2024-08-05 20:43:59
Assigner mitre
State PUBLISHED

Description

The init_new_context function in arch/x86/include/asm/mmu_context.h in the Linux kernel before 4.12.10 does not correctly handle errors from LDT table allocation when forking a new process, allowing a local attacker to achieve a use-after-free or possibly have unspecified other impact by running a specially crafted program. This vulnerability only affected kernels built with CONFIG_MODIFY_LDT_SYSCALL=y.