oss-sec mailing list archives

Re: New Linux kernel XFRM privilege escalation


From: Marcus Meissner <meissner () suse de>
Date: Fri, 24 Nov 2017 10:29:20 +0100

On Fri, Nov 24, 2017 at 10:08:23AM +0100, Greg KH wrote:
On Fri, Nov 24, 2017 at 09:48:00AM +0100, Marcus Meissner wrote:
Hi,

posted to bugtraq:

http://seclists.org/fulldisclosure/2017/Nov/40
https://blogs.securiteam.com/index.php/archives/3535
https://github.com/torvalds/linux/commit/1137b5e2529a8f5ca8ee709288ecba3e68044df2

affects 2.6.28 up to 4.14 I would say.

Looks like this was fixed in 4.14-rc7, so 4.14 should be ok.

CVE-2017-16939 was assigned by Mitre.

Ciao, Marcus


Current thread: