Medium severity5.5NVD Advisory· Published May 11, 2017· Updated May 13, 2026
CVE-2017-7472
CVE-2017-7472
Description
The KEYS subsystem in the Linux kernel before 4.10.13 allows local users to cause a denial of service (memory consumption) via a series of KEY_REQKEY_DEFL_THREAD_KEYRING keyctl_set_reqkey_keyring calls.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
15- git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/nvdIssue TrackingPatchThird Party Advisory
- openwall.com/lists/oss-security/2017/05/11/1nvdMailing ListPatchThird Party Advisory
- bugzilla.novell.com/show_bug.cginvdIssue TrackingPatch
- bugzilla.redhat.com/show_bug.cginvdIssue TrackingPatch
- github.com/torvalds/linux/commit/c9f838d104fed6f2f61d68164712e3204bf5271bnvdIssue TrackingPatchThird Party Advisory
- www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.10.13nvdRelease NotesVendor Advisory
- lkml.org/lkml/2017/4/1/235nvdBroken Link
- lkml.org/lkml/2017/4/3/724nvdBroken Link
- lists.opensuse.org/opensuse-security-announce/2018-01/msg00007.htmlnvd
- www.securityfocus.com/bid/98422nvd
- www.securitytracker.com/id/1038471nvd
- access.redhat.com/errata/RHSA-2018:0151nvd
- access.redhat.com/errata/RHSA-2018:0152nvd
- access.redhat.com/errata/RHSA-2018:0181nvd
- www.exploit-db.com/exploits/42136/nvd
News mentions
0No linked articles in our index yet.