Oval Definition:oval:com.ubuntu.artful:def:201717863000
Revision Date:2017-12-27Version:1
Title:CVE-2017-17863 on Ubuntu 17.10 (artful) - high.
Description:kernel/bpf/verifier.c in the Linux kernel 4.9.x through 4.9.71 does not check the relationship between pointer values and the BPF stack, which allows local users to cause a denial of service (integer overflow or invalid memory access) or possibly have unspecified other impact. Jann Horn discovered that the Berkeley Packet Filter (BPF) implementation in the Linux kernel did not properly check the relationship between pointer values and the BPF stack. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2017-17863
Platform(s):Ubuntu 17.10
Product(s):
Definition Synopsis
  • Ubuntu 17.10 (artful) is installed.
  • AND Package Information
  • NOT While related to the CVE in some way, the 'linux' package in artful is not affected.
  • OR NOT While related to the CVE in some way, the 'linux-raspi2' package in artful is not affected.
  • OR NOT While related to the CVE in some way, the 'linux-snapdragon' package in artful is not affected.
  • BACK