Medium severity5.5NVD Advisory· Published Oct 14, 2017· Updated Jun 17, 2026
CVE-2017-15299
CVE-2017-15299
Description
The KEYS subsystem in the Linux kernel through 4.13.7 mishandles use of add_key for a key that already exists but is uninstantiated, which allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact via a crafted system call.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
23- osv-coords21 versionspkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP1-LTSSpkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Server%2012-LTSSpkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP1pkg:rpm/suse/kernel-default&distro=SUSE%20OpenStack%20Cloud%206pkg:rpm/suse/kernel-ec2&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Public%20Cloud%2012pkg:rpm/suse/kernel-source&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP1-LTSSpkg:rpm/suse/kernel-source&distro=SUSE%20Linux%20Enterprise%20Server%2012-LTSSpkg:rpm/suse/kernel-source&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP1pkg:rpm/suse/kernel-source&distro=SUSE%20OpenStack%20Cloud%206pkg:rpm/suse/kernel-syms&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP1-LTSSpkg:rpm/suse/kernel-syms&distro=SUSE%20Linux%20Enterprise%20Server%2012-LTSSpkg:rpm/suse/kernel-syms&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP1pkg:rpm/suse/kernel-syms&distro=SUSE%20OpenStack%20Cloud%206pkg:rpm/suse/kernel-xen&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP1-LTSSpkg:rpm/suse/kernel-xen&distro=SUSE%20Linux%20Enterprise%20Server%2012-LTSSpkg:rpm/suse/kernel-xen&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP1pkg:rpm/suse/kernel-xen&distro=SUSE%20OpenStack%20Cloud%206pkg:rpm/suse/kgraft-patch-SLE12-SP1_Update_26&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP1-LTSSpkg:rpm/suse/kgraft-patch-SLE12-SP1_Update_26&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP1pkg:rpm/suse/kgraft-patch-SLE12-SP1_Update_26&distro=SUSE%20OpenStack%20Cloud%206pkg:rpm/suse/kgraft-patch-SLE12_Update_33&distro=SUSE%20Linux%20Enterprise%20Server%2012-LTSS
< 3.12.74-60.64.85.1+ 20 more
- (no CPE)range: < 3.12.74-60.64.85.1
- (no CPE)range: < 3.12.61-52.125.1
- (no CPE)range: < 3.12.74-60.64.85.1
- (no CPE)range: < 3.12.74-60.64.85.1
- (no CPE)range: < 3.12.61-52.125.1
- (no CPE)range: < 3.12.74-60.64.85.1
- (no CPE)range: < 3.12.61-52.125.1
- (no CPE)range: < 3.12.74-60.64.85.1
- (no CPE)range: < 3.12.74-60.64.85.1
- (no CPE)range: < 3.12.74-60.64.85.1
- (no CPE)range: < 3.12.61-52.125.1
- (no CPE)range: < 3.12.74-60.64.85.1
- (no CPE)range: < 3.12.74-60.64.85.1
- (no CPE)range: < 3.12.74-60.64.85.1
- (no CPE)range: < 3.12.61-52.125.1
- (no CPE)range: < 3.12.74-60.64.85.1
- (no CPE)range: < 3.12.74-60.64.85.1
- (no CPE)range: < 1-2.3.1
- (no CPE)range: < 1-2.3.1
- (no CPE)range: < 1-2.3.1
- (no CPE)range: < 1-1.3.1
Patches
Vulnerability mechanics
References
8- marc.infonvdIssue TrackingPatchThird Party Advisory
- marc.infonvdIssue TrackingPatchThird Party Advisory
- bugzilla.redhat.com/show_bug.cginvdIssue TrackingThird Party Advisory
- access.redhat.com/errata/RHSA-2018:0654nvd
- lists.debian.org/debian-lts-announce/2017/12/msg00004.htmlnvd
- usn.ubuntu.com/3798-1/nvd
- usn.ubuntu.com/3798-2/nvd
- www.mail-archive.com/linux-kernel%40vger.kernel.org/msg1499828.htmlnvd
News mentions
0No linked articles in our index yet.