kernel/bpf/verifier.c in the Linux kernel 4.9.x through 4.9.71 does not check the relationship between pointer values and the BPF stack, which allows local users to cause a denial of service (integer overflow or invalid memory access) or possibly have unspecified other impact.
References
Configurations
History
No history.
Information
Published : 2017-12-27 17:08
Updated : 2025-04-20 01:37
NVD link : CVE-2017-17863
Mitre link : CVE-2017-17863
CVE.ORG link : CVE-2017-17863
JSON object : View
Products Affected
linux
- linux_kernel
debian
- debian_linux
CWE
CWE-190
Integer Overflow or Wraparound