A use-after-free vulnerability was found in network namespaces code affecting...
Vulnerability Description
A use-after-free vulnerability was found in network namespaces code affecting the Linux kernel before 4.14.11. The function get_net_ns_by_id() in net/core/net_namespace.c does not check for the net::count value after it has found a peer network in netns_ids idr, which could lead to double free and memory corruption. This vulnerability could allow an unprivileged local user to induce kernel memory corruption on the system, leading to a crash. Due to the nature of the flaw, privilege escalation cannot be fully ruled out, although it is thought to be unlikely.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2017-15129
Credits & Attribution
No credits recorded in the NVD database.
References
- https://usn.ubuntu.com/3617-1/
- https://usn.ubuntu.com/3619-2/
- https://usn.ubuntu.com/3617-3/
- https://marc.info/?l=linux-netdev&m=151370451121029&w=2
- https://marc.info/?t=151370468900001&r=1&w=2
- https://usn.ubuntu.com/3632-1/
- https://bugzilla.redhat.com/show_bug.cgi?id=1531174
- https://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.14.11
- https://github.com/torvalds/linux/commit/21b5944350052d2583e82dd59b19a9ba94a007f0
- https://access.redhat.com/errata/RHSA-2018:1062
- https://access.redhat.com/errata/RHSA-2018:0654
- https://access.redhat.com/security/cve/CVE-2017-15129
- http://www.securityfocus.com/bid/102485
- http://seclists.org/oss-sec/2018/q1/7
- https://access.redhat.com/errata/RHSA-2018:0676
- http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=21b5944350052d2583e82dd59b19a9ba94a007f0
- https://usn.ubuntu.com/3617-2/
- https://usn.ubuntu.com/3619-1/
- https://access.redhat.com/errata/RHSA-2019:1946