CVE-2017-15128

CWE-119Buffer Overflow9 documents7 sources
Severity
5.5MEDIUM
EPSS
0.0%
top 86.00%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJan 14
Latest updateMay 13

Description

A flaw was found in the hugetlb_mcopy_atomic_pte function in mm/hugetlb.c in the Linux kernel before 4.13.12. A lack of size check could cause a denial of service (BUG).

CVSS vector

CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:HExploitability: 1.8 | Impact: 3.6

Affected Packages4 packages

CVEListV5linux_kernel_before_4.13.12Linux kernel before 4.13.12
NVDlinux/linux_kernel4.13.11
Debianlinux< 4.13.13-1+3

Also affects: Enterprise Linux 7.0

Patches

🔴Vulnerability Details

3
GHSA
GHSA-78vc-rw83-8p6r: A flaw was found in the hugetlb_mcopy_atomic_pte function in mm/hugetlb2022-05-13
CVEList
CVE-2017-15128: A flaw was found in the hugetlb_mcopy_atomic_pte function in mm/hugetlb2018-01-14
OSV
CVE-2017-15128: A flaw was found in the hugetlb_mcopy_atomic_pte function in mm/hugetlb2018-01-14

📋Vendor Advisories

2
Red Hat
kernel: Out of bound access in hugetlb_mcopy_atomic_pte function in mm/hugetlb.c2017-12-08
Debian
CVE-2017-15128: linux - A flaw was found in the hugetlb_mcopy_atomic_pte function in mm/hugetlb.c in the...2017

💬Community

3
Bugzilla
CVE-2017-15128 kernel: Out of bound access in hugetlb_mcopy_atomic_pte function in mm/hugetlb.c [fedora-all]2018-02-14
Bugzilla
CVE-2017-15128 kernel: Out of bound access in hugetlb_mcopy_atomic_pte function in mm/hugetlb.c [fedora-all]2018-02-14
Bugzilla
CVE-2017-15128 kernel: Out of bound access in hugetlb_mcopy_atomic_pte function in mm/hugetlb.c2017-12-12