CVE-2017-5967
published 2017-02-14CVE-2017-5967: The time subsystem in the Linux kernel through 4.9.9, when CONFIG_TIMER_STATS is enabled, allows local users to discover real PID values (as distinguished from…
PriorityP413medium4CVSS 3.0
AVLACLPRNUINSUCLINAN
EPSS
0.33%
26.2th percentile
The time subsystem in the Linux kernel through 4.9.9, when CONFIG_TIMER_STATS is enabled, allows local users to discover real PID values (as distinguished from PID values inside a PID namespace) by reading the /proc/timer_list file, related to the print_timer function in kernel/time/timer_list.c and the __timer_stats_timer_set_start_info function in kernel/time/timer.c.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 4.9.13-1 (bookworm) | linux 4.9.13-1 (bookworm) |
| linux | linux_kernel | <= 4.9.9 | — |
| linux | linux_kernel | >= 0 < 4.9.13-1 | 4.9.13-1 |
| linux | linux_kernel | >= 0 < 4.9.13-1 | 4.9.13-1 |
| linux | linux_kernel | >= 0 < 4.9.13-1 | 4.9.13-1 |
| linux | linux_kernel | >= 0 < 4.9.13-1 | 4.9.13-1 |
| linux | linux_kernel | >= 0 < 4.4.0-208.240 | 4.4.0-208.240 |
CVSS provenance
nvdv3.04.0MEDIUMCVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
nvdv2.02.1LOWAV:L/AC:L/Au:N/C:P/I:N/A:N
osv5.5MEDIUM
vendor_ubuntu5.5MEDIUM
vendor_debian4.0LOW
vendor_redhat4.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-3vpq-g4qh-42g9: The time subsystem in the Linux kernel through 4
ghsa_unreviewed·2022-05-17
CVE-2017-5967 [MEDIUM] CWE-200 GHSA-3vpq-g4qh-42g9: The time subsystem in the Linux kernel through 4
The time subsystem in the Linux kernel through 4.9.9, when CONFIG_TIMER_STATS is enabled, allows local users to discover real PID values (as distinguished from PID values inside a PID namespace) by reading the /proc/timer_list file, related to the print_timer function in kernel/time/timer_list.c and the __timer_stats_timer_set_start_info function in kernel/time/timer.c.
OSV
linux, linux-aws, linux-kvm, linux-lts-xenial, linux-raspi2, linux-snapdragon vulnerabilities
osv·2021-04-13·CVSS 5.5
CVE-2015-1350 [MEDIUM] linux, linux-aws, linux-kvm, linux-lts-xenial, linux-raspi2, linux-snapdragon vulnerabilities
linux, linux-aws, linux-kvm, linux-lts-xenial, linux-raspi2, linux-snapdragon vulnerabilities
Ben Harris discovered that the Linux kernel would strip extended privilege
attributes of files when performing a failed unprivileged system call. A
local attacker could use this to cause a denial of service. (CVE-2015-1350)
Andrey Konovalov discovered that the video4linux driver for Hauppauge HD
PVR USB devices in the Linux kernel did not properly handle some error
conditions. A physically proximate attacker could use this to cause a
denial of service (system crash) or possibly execute arbitrary code.
(CVE-2017-16644)
It was discovered that the timer stats implementation in the Linux kernel
allowed the discovery of a real PID value while inside a PID namespace. A
local attacker could use this t
OSV
CVE-2017-5967: The time subsystem in the Linux kernel through 4
osv·2017-02-14·CVSS 4.0
CVE-2017-5967 [MEDIUM] CVE-2017-5967: The time subsystem in the Linux kernel through 4
The time subsystem in the Linux kernel through 4.9.9, when CONFIG_TIMER_STATS is enabled, allows local users to discover real PID values (as distinguished from PID values inside a PID namespace) by reading the /proc/timer_list file, related to the print_timer function in kernel/time/timer_list.c and the __timer_stats_timer_set_start_info function in kernel/time/timer.c.
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2021-04-13·CVSS 5.5
CVE-2017-16644 [MEDIUM] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Several security issues were fixed in the Linux kernel.
Ben Harris discovered that the Linux kernel would strip extended privilege
attributes of files when performing a failed unprivileged system call. A
local attacker could use this to cause a denial of service. (CVE-2015-1350)
Andrey Konovalov discovered that the video4linux driver for Hauppauge HD
PVR USB devices in the Linux kernel did not properly handle some error
conditions. A physically proximate attacker could use this to cause a
denial of service (system crash) or possibly execute arbitrary code.
(CVE-2017-16644)
It was discovered that the timer stats implementation in the Linux kernel
allowed the discovery of a real PID value while inside a PID namespace. A
local attacker could us
Red Hat
kernel: Time subsystem allows local users to discover real PID values
vendor_redhat·2017-02-10·CVSS 4.0
CVE-2017-5967 [MEDIUM] CWE-212 kernel: Time subsystem allows local users to discover real PID values
kernel: Time subsystem allows local users to discover real PID values
The time subsystem in the Linux kernel through 4.9.9, when CONFIG_TIMER_STATS is enabled, allows local users to discover real PID values (as distinguished from PID values inside a PID namespace) by reading the /proc/timer_list file, related to the print_timer function in kernel/time/timer_list.c and the __timer_stats_timer_set_start_info function in kernel/time/timer.c.
The time subsystem in the Linux kernel, when CONFIG_TIMER_STATS is enabled, allows local users to discover real PID values (as distinguished from PID values inside a PID namespace) by reading the /proc/timer_list file, related to the print_timer function in kernel/time/timer_list.c and the __timer_stats_timer_set_start_info function in kernel/time/timer
Debian
CVE-2017-5967: linux - The time subsystem in the Linux kernel through 4.9.9, when CONFIG_TIMER_STATS is...
vendor_debian·2017·CVSS 4.0
CVE-2017-5967 [MEDIUM] CVE-2017-5967: linux - The time subsystem in the Linux kernel through 4.9.9, when CONFIG_TIMER_STATS is...
The time subsystem in the Linux kernel through 4.9.9, when CONFIG_TIMER_STATS is enabled, allows local users to discover real PID values (as distinguished from PID values inside a PID namespace) by reading the /proc/timer_list file, related to the print_timer function in kernel/time/timer_list.c and the __timer_stats_timer_set_start_info function in kernel/time/timer.c.
Scope: local
bookworm: resolved (fixed in 4.9.13-1)
bullseye: resolved (fixed in 4.9.13-1)
forky: resolved (fixed in 4.9.13-1)
sid: resolved (fixed in 4.9.13-1)
trixie: resolved (fixed in 4.9.13-1)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2017-5967 kernel: Time subsystem allows local users to discover real PID values [fedora-all]
bugzilla·2017-02-14·CVSS 4.0
CVE-2017-5967 [MEDIUM] CVE-2017-5967 kernel: Time subsystem allows local users to discover real PID values [fedora-all]
CVE-2017-5967 kernel: Time subsystem allows local users to discover real PID values [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple
Bugzilla
CVE-2017-5967 kernel: Time subsystem allows local users to discover real PID values
bugzilla·2017-02-14·CVSS 4.0
CVE-2017-5967 [MEDIUM] CVE-2017-5967 kernel: Time subsystem allows local users to discover real PID values
CVE-2017-5967 kernel: Time subsystem allows local users to discover real PID values
The time subsystem in the Linux kernel, when CONFIG_TIMER_STATS is enabled, allows local users to discover real PID values (as distinguished from PID values inside a PID namespace) by reading the /proc/timer_list file, related to the print_timer function in kernel/time/timer_list.c and the __timer_stats_timer_set_start_info function in kernel/time/timer.c.
Initial discussion:
https://www.spinics.net/lists/kernel/msg2436969.html
Upstream bug:
https://bugzilla.kernel.org/show_bug.cgi?id=193921
Upstream patch:
http://git.kernel.org/cgit/linux/kernel/git/tip/tip.git/commit/?id=dfb4357da6ddbdf57d583ba64361c9d792b0e0b1
Discussion:
Created kernel tracking bugs for this issue:
Affects: fedora-all [bug 142
http://git.kernel.org/cgit/linux/kernel/git/tip/tip.git/commit/?id=dfb4357da6ddbdf57d583ba64361c9d792b0e0b1http://www.securityfocus.com/bid/96271https://bugzilla.kernel.org/show_bug.cgi?id=193921http://git.kernel.org/cgit/linux/kernel/git/tip/tip.git/commit/?id=dfb4357da6ddbdf57d583ba64361c9d792b0e0b1http://www.securityfocus.com/bid/96271https://bugzilla.kernel.org/show_bug.cgi?id=193921
2017-02-14
Published