ZeroHour

CVE-2017-10661

CVSS 3.1
7.0 high
EPSS
13%p96
Published
()
Modified
Description

Race condition in fs/timerfd.c in the Linux kernel before 4.10.15 allows local users to gain privileges or cause a denial of service (list corruption or use-after-free) via simultaneous file-descriptor operations that leverage improper might_cancel queueing.

Vendors
linuxredhatdebian
Products
linux kernel, enterprise linux, enterprise linux aus, enterprise linux server eus, enterprise linux server for power little endian update services for sap solutions, debian linux
Weakness
CWE-416
Vector
CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.