Beveiligingsadvies

CVE-2017-7482

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2018-07-30 14:00:00
Laatst bijgewerkt 2024-08-05 16:04:11
Toegewezen door redhat
CVSS-score 7.1
Status PUBLISHED

Beschrijving

In the Linux kernel before version 4.12, Kerberos 5 tickets decoded when using the RXRPC keys incorrectly assumes the size of a field. This could lead to the size-remaining variable wrapping and the data pointer going over the end of the buffer. This could possibly lead to memory corruption and possible privilege escalation.