High severity7.8NVD Advisory· Published Sep 15, 2017· Updated May 13, 2026
CVE-2017-14497
CVE-2017-14497
Description
The tpacket_rcv function in net/packet/af_packet.c in the Linux kernel before 4.13 mishandles vnet headers, which might allow local users to cause a denial of service (buffer overflow, and disk and memory corruption) or possibly have unspecified other impact via crafted system calls.
Affected products
3cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*
- cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
11- git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/nvdIssue TrackingPatchThird Party Advisory
- bugzilla.redhat.com/show_bug.cginvdIssue TrackingPatchThird Party Advisory
- github.com/torvalds/linux/commit/edbd58be15a957f6a760c4a514cd475217eb97fdnvdIssue TrackingPatchThird Party Advisory
- marc.infonvdMailing ListPatchThird Party Advisory
- marc.infonvdMailing ListPatchThird Party Advisory
- seclists.org/oss-sec/2017/q3/476nvdMailing ListThird Party Advisory
- www.debian.org/security/2017/dsa-3981nvdThird Party Advisory
- www.securityfocus.com/bid/100871nvdThird Party AdvisoryVDB Entry
- www.securitytracker.com/id/1039371nvdThird Party AdvisoryVDB Entry
- www.securitytracker.com/id/1040106nvdThird Party AdvisoryVDB Entry
- source.android.com/security/bulletin/2018-01-01nvdThird Party Advisory
News mentions
0No linked articles in our index yet.