New issue
Advanced search Search tips

Issue 797258 link

Starred by 1 user

Issue metadata

Status: Fixed
Owner:
Closed: Feb 2018
Cc:
Components:
EstimatedDays: ----
NextAction: ----
OS: Chrome
Pri: 2
Type: Bug-Security



Sign in to add a comment

CVE-2017-8824 CrOS: Vulnerability reported in Linux kernel

Project Member Reported by vomit.go...@appspot.gserviceaccount.com, Dec 22 2017

Issue description

VOMIT (go/vomit) has received an external vulnerability report for the Linux kernel. 

Advisory: CVE-2017-8824
  Details: http://vomit.googleplex.com/advisory?id=CVE/CVE-2017-8824
  CVSS severity score: 7.2/10.0
  Description:

The dccp_disconnect function in net/dccp/proto.c in the Linux kernel through 4.14.3 allows local users to gain privileges or cause a denial of service (use-after-free) via an AF_UNSPEC connect system call during the DCCP_LISTEN state.



This bug was filed by http://go/vomit
Please contact us at vomit-team@google.com if you need any assistance.

 

Comment 1 by groeck@chromium.org, Dec 22 2017

Cc: wonderfly@google.com
Labels: Security_Severity-High Security_Impact-None Pri-2
Owner: groeck@chromium.org
Status: ExternalDependency (was: Untriaged)
69c64866ce07 dccp: CVE-2017-8824: use-after-free in DCCP code

CONFIG_IP_DCCP is not enabled in any ChromeOS configurations. Apply through stable tree merge.

Cc: adityakali@google.com
CONFIG_IP_DCCP is not enabled in lakitu either. Applying through stable merge sgtm.
Thanks!

Comment 4 by groeck@chromium.org, Feb 15 2018

The fix will be merged into chromeos-4.4 with the merge of v4.4.116, and into chromeos-4.14 the merge of v4.14.20.

Comment 5 by groeck@chromium.org, Feb 16 2018

Labels: M-66

Comment 6 by groeck@chromium.org, Feb 23 2018

Status: Fixed (was: ExternalDependency)
Fixed per #4.

Project Member

Comment 7 by sheriffbot@chromium.org, Feb 24 2018

Labels: Restrict-View-SecurityNotify
Project Member

Comment 8 by sheriffbot@chromium.org, Jun 2 2018

Labels: -Restrict-View-SecurityNotify allpublic
This bug has been closed for more than 14 weeks. Removing security view restrictions.

For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot

Sign in to add a comment