CVE-2017-11473: Buffer Overflow
Buffer overflow in the mpoverridelegacyirq() function in arch/x86/kernel/acpi/boot.c in the Linux kernel through 3.2 allows local users to gain privileges via a crafted ACPI table.
Other sources
Buffer overflow in the mpoverridelegacyirq() function in arch/x86/kernel/acpi/boot.c in the Linux kernel through 4.12.2 allows local users to gain privileges via a crafted ACPI table.
References:
http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2017-11473
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-11473
Upstream patch:
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=dad5ab0db8deac535d03e3fe3d8f2892173fa6a4
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2017-11473?
CVE-2017-11473 is a vulnerability in the Linux kernel that allows local users to gain privileges via a crafted ACPI table.
What is the severity of CVE-2017-11473?
The severity of CVE-2017-11473 is low.
How does CVE-2017-11473 affect the Linux kernel?
CVE-2017-11473 affects the Linux kernel through version 3.2.
How can I fix CVE-2017-11473?
To fix CVE-2017-11473, update your Linux kernel to version 3.13.0-157.207 or later.
Where can I find more information about CVE-2017-11473?
You can find more information about CVE-2017-11473 on the following websites: NIST National Vulnerability Database (NVD), MITRE CVE dictionary, and the Git commit for the Linux kernel.