Vulnerability Description
The dccp_rcv_state_process function in net/dccp/input.c in the Linux kernel through 4.9.11 mishandles DCCP_PKT_REQUEST packet data structures in the LISTEN state, which allows local users to obtain root privileges or cause a denial of service (double free) via an application that makes an IPV6_RECVPKTINFO setsockopt system call.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux Kernel | < 3.2.86 |
| Debian | Debian Linux | 8.0 |
Related Weaknesses (CWE)
References
- http://rhn.redhat.com/errata/RHSA-2017-0293.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2017-0294.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2017-0295.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2017-0316.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2017-0323.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2017-0324.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2017-0345.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2017-0346.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2017-0347.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2017-0365.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2017-0366.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2017-0403.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2017-0501.htmlThird Party Advisory
- http://www.debian.org/security/2017/dsa-3791Third Party Advisory
- http://www.openwall.com/lists/oss-security/2017/02/22/3Mailing ListThird Party Advisory
FAQ
What is CVE-2017-6074?
CVE-2017-6074 is a vulnerability with a CVSS score of 7.8 (HIGH). The dccp_rcv_state_process function in net/dccp/input.c in the Linux kernel through 4.9.11 mishandles DCCP_PKT_REQUEST packet data structures in the LISTEN state, which allows local users to obtain ro...
How severe is CVE-2017-6074?
CVE-2017-6074 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2017-6074?
Check the references section above for vendor advisories and patch information. Affected products include: Linux Linux Kernel, Debian Debian Linux.