CVE-2017-12192: Null Pointer Dereference

Published Sep 20, 2017
·
Updated

A vulnerability in the Key Management sub component was found in the Linux kernel. Trying to KEYTCLREAD on negative key would lead to a NULL pointer dereference. A local attacker could use this flaw to crash the kernel.

References:

https://lkml.org/lkml/2017/9/18/764

http://seclists.org/oss-sec/2017/q4/63

An upstream patch:

https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=37863c43b2c6464f252862bf2e9768264e961678

Other sources

The keyctlreadkey function in security/keys/keyctl.c in the Key Management subcomponent in the Linux kernel before 4.13.5 does not properly consider that a key may be possessed but negatively instantiated, which allows local users to cause a denial of service (OOPS and system crash) via a crafted KEYCTLREAD operation.

Launchpad

Affected Software

2 affected componentsFixes available
Linux Linux kernel<=4.13.4
debian/linux
5.10.223-15.10.234-16.1.129-16.1.133-16.12.22-1

Event History

Sep 20, 2017
Data Sourced
via Red Hat·07:59 AM
DescriptionSeverityAffected Software
Oct 12, 2017
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Jan 11, 2024
Data Sourced
via Launchpad·10:26 PM
Description
Dec 1, 2024
Data Sourced
via Ubuntu·01:38 AM
RemedyDescriptionSeverityAffected Software

Frequently Asked Questions

1

What is the vulnerability ID of this issue?

The vulnerability ID is CVE-2017-12192.

2

What is the severity level of CVE-2017-12192?

CVE-2017-12192 has a medium severity level.

3

How does this vulnerability impact the Linux kernel versions?

This vulnerability affects Linux kernel versions before 4.13.5.

4

What is the impact of CVE-2017-12192?

CVE-2017-12192 allows local users to cause a denial of service (OOPS and system crash).

5

Is there a fix available for CVE-2017-12192?

Yes, the fix is available in Linux kernel version 4.13.5 and higher.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203