Issue metadata
Sign in to add a comment
|
CVE-2017-18075 CrOS: Vulnerability reported in Linux kernel |
||||||||||||||||||||||
Issue descriptionVOMIT (go/vomit) has received an external vulnerability report for the Linux kernel. Advisory: CVE-2017-18075 Details: http://vomit.googleplex.com/advisory?id=CVE/CVE-2017-18075 CVSS severity score: 7.2/10.0 Description: crypto/pcrypt.c in the Linux kernel before 4.14.13 mishandles freeing instances, allowing a local user able to access the AF_ALG-based AEAD interface (CONFIG_CRYPTO_USER_API_AEAD) and pcrypt (CONFIG_CRYPTO_PCRYPT) to cause a denial of service (kfree of an incorrect pointer) or possibly have unspecified other impact by executing a crafted sequence of system calls. This bug was filed by http://go/vomit Please contact us at vomit-team@google.com if you need any assistance.
,
Feb 12 2018
The fix, d76c68109 ("crypto: pcrypt - fix freeing pcrypt instances") has been applied on v4.14, v4.4.
It needs to be applied for v3.18, v3.14, v3.10, v3.8
,
Feb 12 2018
Correction: aead_instance_ctx has not been introduced into v3.18, v3.14, v3.10, v3.8 ; this bug can be closed.
,
Feb 12 2018
Marking WontFix per #3.
,
Feb 12 2018
|
|||||||||||||||||||||||
►
Sign in to add a comment |
|||||||||||||||||||||||
Comment 1 by groeck@chromium.org
, Feb 11 2018Labels: Security_Severity-High M-65 Security_Impact-Stable Pri-1
Owner: zsm@chromium.org
Status: Assigned (was: Untriaged)