CVE-2017-7374
published 2017-03-31CVE-2017-7374: Use-after-free vulnerability in fs/crypto/ in the Linux kernel before 4.10.7 allows local users to cause a denial of service (NULL pointer dereference) or…
PriorityP337high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.80%
53.0th percentile
Use-after-free vulnerability in fs/crypto/ in the Linux kernel before 4.10.7 allows local users to cause a denial of service (NULL pointer dereference) or possibly gain privileges by revoking keyring keys being used for ext4, f2fs, or ubifs encryption, causing cryptographic transform objects to be freed prematurely.
Affected
10 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 4.9.25-1 (bookworm) | linux 4.9.25-1 (bookworm) |
| android | — | — | |
| linux | linux_kernel | >= 0 < 4.9.25-1 | 4.9.25-1 |
| linux | linux_kernel | >= 0 < 4.9.25-1 | 4.9.25-1 |
| linux | linux_kernel | >= 0 < 4.9.25-1 | 4.9.25-1 |
| linux | linux_kernel | >= 0 < 4.9.25-1 | 4.9.25-1 |
| linux | linux_kernel | >= 0 < 4.4.0-75.96 | 4.4.0-75.96 |
| linux | linux_kernel | >= 4.10 < 4.10.7 | 4.10.7 |
| linux | linux_kernel | >= 4.2 < 4.4.59 | 4.4.59 |
| linux | linux_kernel | >= 4.5 < 4.9.20 | 4.9.20 |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.2HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
vendor_ubuntu7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Android
CVE-2017-7374: Filesystem
vendor_android·2017-10-01·CVSS 7.8
CVE-2017-7374 [HIGH] CVE-2017-7374: Filesystem
Android Security Bulletin 2017-10-01
CVE: CVE-2017-7374
Severity: HIGH
Type: EoP
Component: Filesystem
References: A-37866910
Upstream kernel
Ubuntu
Linux kernel (HWE) vulnerabilities
vendor_ubuntu·2017-06-29·CVSS 7.8
CVE-2017-1000363 [HIGH] Linux kernel (HWE) vulnerabilities
Title: Linux kernel (HWE) vulnerabilities
Summary: Several security issues were fixed in the Linux kernel.
USN-3342-1 fixed vulnerabilities in the Linux kernel for Ubuntu 16.10.
This update provides the corresponding updates for the Linux Hardware
Enablement (HWE) kernel from Ubuntu 16.10 for Ubuntu 16.04 LTS.
USN-3333-1 fixed a vulnerability in the Linux kernel. However, that
fix introduced regressions for some Java applications. This update
addresses the issue. We apologize for the inconvenience.
It was discovered that a use-after-free flaw existed in the filesystem
encryption subsystem in the Linux kernel. A local attacker could use this
to cause a denial of service (system crash). (CVE-2017-7374)
Roee Hay discovered that the parallel port printer driver in the Linux
kernel did not
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2017-06-29·CVSS 7.8
CVE-2017-1000363 [HIGH] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Several security issues were fixed in the Linux kernel.
USN 3326-1 fixed a vulnerability in the Linux kernel. However, that
fix introduced regressions for some Java applications. This update
addresses the issue. We apologize for the inconvenience.
It was discovered that a use-after-free flaw existed in the filesystem
encryption subsystem in the Linux kernel. A local attacker could use this
to cause a denial of service (system crash). (CVE-2017-7374)
Roee Hay discovered that the parallel port printer driver in the Linux
kernel did not properly bounds check passed arguments. A local attacker
with write access to the kernel command line arguments could use this to
execute arbitrary code. (CVE-2017-1000363)
Ingo Molnar discovered that the Video
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2017-04-25·CVSS 7.8
CVE-2017-5669 [HIGH] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Several security issues were fixed in the kernel.
It was discovered that a use-after-free flaw existed in the filesystem
encryption subsystem in the Linux kernel. A local attacker could use this
to cause a denial of service (system crash). (CVE-2017-7374)
Andrey Konovalov discovered an out-of-bounds access in the IPv6 Generic
Routing Encapsulation (GRE) tunneling implementation in the Linux kernel.
An attacker could use this to possibly expose sensitive information.
(CVE-2017-5897)
Andrey Konovalov discovered that the IPv4 implementation in the Linux
kernel did not properly handle invalid IP options in some situations. An
attacker could use this to cause a denial of service or possibly execute
arbitrary code. (CVE-2017-5970)
Gareth Evans di
Ubuntu
Linux kernel (Xenial HWE) vulnerabilities
vendor_ubuntu·2017-04-25·CVSS 7.8
CVE-2017-5669 [HIGH] Linux kernel (Xenial HWE) vulnerabilities
Title: Linux kernel (Xenial HWE) vulnerabilities
Summary: Several security issues were fixed in the kernel.
USN-3265-1 fixed vulnerabilities in the Linux kernel for Ubuntu 16.04
LTS. This update provides the corresponding updates for the Linux
Hardware Enablement (HWE) kernel from Ubuntu 16.04 LTS for Ubuntu
14.04 LTS.
It was discovered that a use-after-free flaw existed in the filesystem
encryption subsystem in the Linux kernel. A local attacker could use this
to cause a denial of service (system crash). (CVE-2017-7374)
Andrey Konovalov discovered an out-of-bounds access in the IPv6 Generic
Routing Encapsulation (GRE) tunneling implementation in the Linux kernel.
An attacker could use this to possibly expose sensitive information.
(CVE-2017-5897)
Andrey Konovalov discovered that the
Red Hat
kernel: use-after-free in keyring key revocation
vendor_redhat·2017-03-31·CVSS 7.8
CVE-2017-7374 [HIGH] CWE-416 kernel: use-after-free in keyring key revocation
kernel: use-after-free in keyring key revocation
Use-after-free vulnerability in fs/crypto/ in the Linux kernel before 4.10.7 allows local users to cause a denial of service (NULL pointer dereference) or possibly gain privileges by revoking keyring keys being used for ext4, f2fs, or ubifs encryption, causing cryptographic transform objects to be freed prematurely.
A use-after-free flaw was found in the Linux kernel's file system encryption implementation. A local user could revoke keyring keys being used for ext4, f2fs, or ubifs encryption, causing a denial of service on the system.
Statement: This issue does not affect the Linux kernel packages as shipped with Red Hat Enterprise Linux 5, 6, 7 and MRG-2 as the code where the flaw was found is not present in these products.
Package: ker
Debian
CVE-2017-7374: linux - Use-after-free vulnerability in fs/crypto/ in the Linux kernel before 4.10.7 all...
vendor_debian·2017·CVSS 7.8
CVE-2017-7374 [HIGH] CVE-2017-7374: linux - Use-after-free vulnerability in fs/crypto/ in the Linux kernel before 4.10.7 all...
Use-after-free vulnerability in fs/crypto/ in the Linux kernel before 4.10.7 allows local users to cause a denial of service (NULL pointer dereference) or possibly gain privileges by revoking keyring keys being used for ext4, f2fs, or ubifs encryption, causing cryptographic transform objects to be freed prematurely.
Scope: local
bookworm: resolved (fixed in 4.9.25-1)
bullseye: resolved (fixed in 4.9.25-1)
forky: resolved (fixed in 4.9.25-1)
sid: resolved (fixed in 4.9.25-1)
trixie: resolved (fixed in 4.9.25-1)
GHSA
GHSA-hg37-8m7v-x2rc: Use-after-free vulnerability in fs/crypto/ in the Linux kernel before 4
ghsa_unreviewed·2022-05-17
CVE-2017-7374 [HIGH] CWE-416 GHSA-hg37-8m7v-x2rc: Use-after-free vulnerability in fs/crypto/ in the Linux kernel before 4
Use-after-free vulnerability in fs/crypto/ in the Linux kernel before 4.10.7 allows local users to cause a denial of service (NULL pointer dereference) or possibly gain privileges by revoking keyring keys being used for ext4, f2fs, or ubifs encryption, causing cryptographic transform objects to be freed prematurely.
OSV
linux-hwe vulnerabilities
osv·2017-06-29·CVSS 7.8
[HIGH] linux-hwe vulnerabilities
linux-hwe vulnerabilities
USN-3342-1 fixed vulnerabilities in the Linux kernel for Ubuntu 16.10.
This update provides the corresponding updates for the Linux Hardware
Enablement (HWE) kernel from Ubuntu 16.10 for Ubuntu 16.04 LTS.
USN-3333-1 fixed a vulnerability in the Linux kernel. However, that
fix introduced regressions for some Java applications. This update
addresses the issue. We apologize for the inconvenience.
It was discovered that a use-after-free flaw existed in the filesystem
encryption subsystem in the Linux kernel. A local attacker could use this
to cause a denial of service (system crash). (CVE-2017-7374)
Roee Hay discovered that the parallel port printer driver in the Linux
kernel did not properly bounds check passed arguments. A local attacker
with write access to the
OSV
linux-lts-xenial vulnerabilities
osv·2017-04-25·CVSS 7.8
CVE-2017-7374 [HIGH] linux-lts-xenial vulnerabilities
linux-lts-xenial vulnerabilities
USN-3265-1 fixed vulnerabilities in the Linux kernel for Ubuntu 16.04
LTS. This update provides the corresponding updates for the Linux
Hardware Enablement (HWE) kernel from Ubuntu 16.04 LTS for Ubuntu
14.04 LTS.
It was discovered that a use-after-free flaw existed in the filesystem
encryption subsystem in the Linux kernel. A local attacker could use this
to cause a denial of service (system crash). (CVE-2017-7374)
Andrey Konovalov discovered an out-of-bounds access in the IPv6 Generic
Routing Encapsulation (GRE) tunneling implementation in the Linux kernel.
An attacker could use this to possibly expose sensitive information.
(CVE-2017-5897)
Andrey Konovalov discovered that the IPv4 implementation in the Linux
kernel did not properly handle invalid IP o
OSV
linux, linux-aws, linux-gke, linux-raspi2, linux-snapdragon vulnerabilities
osv·2017-04-25·CVSS 7.8
CVE-2017-7374 [HIGH] linux, linux-aws, linux-gke, linux-raspi2, linux-snapdragon vulnerabilities
linux, linux-aws, linux-gke, linux-raspi2, linux-snapdragon vulnerabilities
It was discovered that a use-after-free flaw existed in the filesystem
encryption subsystem in the Linux kernel. A local attacker could use this
to cause a denial of service (system crash). (CVE-2017-7374)
Andrey Konovalov discovered an out-of-bounds access in the IPv6 Generic
Routing Encapsulation (GRE) tunneling implementation in the Linux kernel.
An attacker could use this to possibly expose sensitive information.
(CVE-2017-5897)
Andrey Konovalov discovered that the IPv4 implementation in the Linux
kernel did not properly handle invalid IP options in some situations. An
attacker could use this to cause a denial of service or possibly execute
arbitrary code. (CVE-2017-5970)
Gareth Evans discovered that the sh
OSV
CVE-2017-7374: Use-after-free vulnerability in fs/crypto/ in the Linux kernel before 4
osv·2017-03-31·CVSS 7.8
CVE-2017-7374 [HIGH] CVE-2017-7374: Use-after-free vulnerability in fs/crypto/ in the Linux kernel before 4
Use-after-free vulnerability in fs/crypto/ in the Linux kernel before 4.10.7 allows local users to cause a denial of service (NULL pointer dereference) or possibly gain privileges by revoking keyring keys being used for ext4, f2fs, or ubifs encryption, causing cryptographic transform objects to be freed prematurely.
No detection rules found.
No public exploits indexed.
http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=1b53cf9815bb4744958d41f3795d5d5a1d365e2dhttp://www.securityfocus.com/bid/97308https://github.com/torvalds/linux/commit/1b53cf9815bb4744958d41f3795d5d5a1d365e2dhttps://source.android.com/security/bulletin/2017-10-01https://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.10.7http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=1b53cf9815bb4744958d41f3795d5d5a1d365e2dhttp://www.securityfocus.com/bid/97308https://github.com/torvalds/linux/commit/1b53cf9815bb4744958d41f3795d5d5a1d365e2dhttps://source.android.com/security/bulletin/2017-10-01https://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.10.7
2017-03-31
Published