Oval Definition:oval:com.ubuntu.artful:def:201716995000
Revision Date:2017-12-27Version:1
Title:CVE-2017-16995 on Ubuntu 17.10 (artful) - high.
Description:The check_alu_op function in kernel/bpf/verifier.c in the Linux kernel through 4.14.8 allows local users to cause a denial of service (memory corruption) or possibly have unspecified other impact by leveraging incorrect sign extension. Jann Horn discovered that the Berkeley Packet Filter (BPF) implementation in the Linux kernel improperly performed sign extension in some situations. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2017-16995
Platform(s):Ubuntu 17.10
Product(s):
Definition Synopsis
  • Ubuntu 17.10 (artful) is installed.
  • AND Package Information
  • The 'linux' package in artful was vulnerable but has been fixed (note: '4.13.0-25.29').
  • OR The 'linux-raspi2' package in artful was vulnerable but has been fixed (note: '4.13.0-1011.11').
  • OR The 'linux-snapdragon' package in artful was vulnerable but has been fixed (note: '4.4.0-1088.93').
  • BACK