Vulnerability Description
The make_response function in drivers/block/xen-blkback/blkback.c in the Linux kernel before 4.11.8 allows guest OS users to obtain sensitive information from host OS (or other guest OS) kernel memory by leveraging the copying of uninitialized padding fields in Xen block-interface response structures, aka XSA-216.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux Kernel | <= 4.11.7 |
Related Weaknesses (CWE)
References
- http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=089bc0Mailing ListPatchThird Party Advisory
- http://www.debian.org/security/2017/dsa-3920
- http://www.debian.org/security/2017/dsa-3927
- http://www.debian.org/security/2017/dsa-3945
- http://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.11.8Mailing ListThird Party Advisory
- http://www.securityfocus.com/bid/99162Third Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1038720Third Party AdvisoryVDB Entry
- https://github.com/torvalds/linux/commit/089bc0143f489bd3a4578bdff5f4ca68fb26f34PatchThird Party Advisory
- https://lists.debian.org/debian-lts-announce/2018/09/msg00007.html
- https://security.gentoo.org/glsa/201708-03
- https://xenbits.xen.org/xsa/advisory-216.htmlMitigationVendor Advisory
- http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=089bc0Mailing ListPatchThird Party Advisory
- http://www.debian.org/security/2017/dsa-3920
- http://www.debian.org/security/2017/dsa-3927
- http://www.debian.org/security/2017/dsa-3945
FAQ
What is CVE-2017-10911?
CVE-2017-10911 is a vulnerability with a CVSS score of 6.5 (MEDIUM). The make_response function in drivers/block/xen-blkback/blkback.c in the Linux kernel before 4.11.8 allows guest OS users to obtain sensitive information from host OS (or other guest OS) kernel memory...
How severe is CVE-2017-10911?
CVE-2017-10911 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2017-10911?
Check the references section above for vendor advisories and patch information. Affected products include: Linux Linux Kernel.