Vulnerability Name: | CVE-2017-1000379 (CCN-127465) | ||||||||||||||||||||||||||||||||||||||||||||||||
Assigned: | 2017-06-19 | ||||||||||||||||||||||||||||||||||||||||||||||||
Published: | 2017-06-19 | ||||||||||||||||||||||||||||||||||||||||||||||||
Updated: | 2023-01-17 | ||||||||||||||||||||||||||||||||||||||||||||||||
Summary: | The Linux Kernel running on AMD64 systems will sometimes map the contents of PIE executable, the heap or ld.so to where the stack is mapped allowing attackers to more easily manipulate the stack. Linux Kernel version 4.11.5 is affected. | ||||||||||||||||||||||||||||||||||||||||||||||||
CVSS v3 Severity: | 7.8 High (CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H) 6.8 Medium (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C)
3.5 Low (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N/E:U/RL:O/RC:C)
2.6 Low (REDHAT Temporal CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N/E:U/RL:O/RC:C)
| ||||||||||||||||||||||||||||||||||||||||||||||||
CVSS v2 Severity: | 7.2 High (CVSS v2 Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C)
| ||||||||||||||||||||||||||||||||||||||||||||||||
Vulnerability Consequences: | Bypass Security | ||||||||||||||||||||||||||||||||||||||||||||||||
References: | Source: MITRE Type: CNA CVE-2017-1000379 Source: CCN Type: IBM Security Bulletin 2011482 (Security Guardium) IBM Security Guardium is affected by Open Source packages vulnerabilities Source: cve@mitre.org Type: Third Party Advisory, VDB Entry cve@mitre.org Source: cve@mitre.org Type: Third Party Advisory cve@mitre.org Source: cve@mitre.org Type: Third Party Advisory cve@mitre.org Source: cve@mitre.org Type: Third Party Advisory cve@mitre.org Source: cve@mitre.org Type: Third Party Advisory cve@mitre.org Source: cve@mitre.org Type: Third Party Advisory cve@mitre.org Source: cve@mitre.org Type: Third Party Advisory cve@mitre.org Source: cve@mitre.org Type: Third Party Advisory cve@mitre.org Source: cve@mitre.org Type: Third Party Advisory cve@mitre.org Source: cve@mitre.org Type: Third Party Advisory cve@mitre.org Source: cve@mitre.org Type: Third Party Advisory cve@mitre.org Source: cve@mitre.org Type: Third Party Advisory cve@mitre.org Source: cve@mitre.org Type: Third Party Advisory cve@mitre.org Source: cve@mitre.org Type: Third Party Advisory cve@mitre.org Source: cve@mitre.org Type: Third Party Advisory, VDB Entry cve@mitre.org Source: CCN Type: Red Hat Bugzilla Bug 1462165 (CVE-2017-1000379) CVE-2017-1000379 kernel: Incorrectly mapped contents of PIE executable Source: XF Type: UNKNOWN linux-kernel-cve20171000379-sec-bypass(127465) Source: cve@mitre.org Type: Third Party Advisory, VDB Entry cve@mitre.org Source: CCN Type: Qualys Security Advisory QSA - 2017-06-19 The Stack Clash Source: cve@mitre.org Type: Third Party Advisory cve@mitre.org Source: CCN Type: WhiteSource Vulnerability Database CVE-2017-1000379 | ||||||||||||||||||||||||||||||||||||||||||||||||
Vulnerable Configuration: | Configuration RedHat 1: Configuration CCN 1: ![]() | ||||||||||||||||||||||||||||||||||||||||||||||||
Oval Definitions | |||||||||||||||||||||||||||||||||||||||||||||||||
| |||||||||||||||||||||||||||||||||||||||||||||||||
BACK |