CVE-2017-2618

Description

A flaw was found in the Linux kernels handling of clearing SELinux attributes on /proc/pid/attr files before 4.9.10. An empty (null) write to this file can crash the system by causing the system to attempt to access unmapped kernel memory.

Risk Information

Base Score
5.5
MODERATE
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
EPSS Score
Exploitation Probability
0.05

Associated Vulnerability

VulnerabilityOS Platform
Linux kernel (USN-3381-1) linux-image-3.13.0-126-generic_3.13.0-126.175_i386.debLinux
Linux kernel (USN-3381-1) linux-image-3.13.0-126-generic_3.13.0-126.175_amd64.debLinux
Linux kernel (USN-3381-1) linux-image-3.13.0-126-lowlatency_3.13.0-126.175_i386.debLinux
Linux kernel (USN-3381-1) linux-image-3.13.0-126-lowlatency_3.13.0-126.175_amd64.debLinux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234