Issue metadata
Sign in to add a comment
|
CVE-2017-11472: CrOS: Vulnerability reported in Linux kernel |
||||||||||||||||||||||
Issue descriptionVOMIT (go/vomit) has received an external vulnerability report for the Linux kernel. Advisory: CVE-2017-11472 Details: http://vomit.googleplex.com/advisory?id=CVE/CVE-2017-11472 CVSS severity score: 3.6/10.0 Description: The acpi_ns_terminate() function in drivers/acpi/acpica/nsutils.c in the Linux kernel before 4.12 does not flush the operand cache and causes a kernel stack dump, which allows local users to obtain sensitive information from kernel memory and bypass the KASLR protection mechanism (in the kernel through 4.9) via a crafted ACPI table. This bug was filed by http://go/vomit Please contact us at vomit-team@google.com if you need any assistance.
,
Aug 2 2017
,
Aug 2 2017
Upstream 3b2d69114fefa ("ACPICA: Namespace: fix operand cache leak").
,
Aug 2 2017
Duplicate of b:64055101. The system won't let me mark the bug accordingly. Marking as ExternalDependency and will mark Fixed when done.
,
Sep 1 2017
Fixed with b:64055101, Change-Id: If19ed725605801d412af2565f154da6fb164cc13
,
Sep 2 2017
,
Dec 9 2017
This bug has been closed for more than 14 weeks. Removing security view restrictions. For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot
,
Jan 22 2018
,
Jan 23 2018
|
|||||||||||||||||||||||
►
Sign in to add a comment |
|||||||||||||||||||||||
Comment 1 by vakh@chromium.org
, Jul 26 2017Status: Assigned (was: Untriaged)