CVE-2017-14051: Integer Overflow
An integer overflow in the qla2x00sysfswriteoptromctl function in drivers/scsi/qla2xxx/qlaattr.c in the Linux kernel through 4.12.10 allows local users to cause a denial of service (memory corruption and system crash) by leveraging root access.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2017-14051?
CVE-2017-14051 is an integer overflow vulnerability in the qla2x00_sysfs_write_optrom_ctl function in the Linux kernel.
How does CVE-2017-14051 impact the system?
CVE-2017-14051 allows local users with root access to cause a denial of service (memory corruption and system crash).
Which versions of Linux are affected by CVE-2017-14051?
Linux kernel versions up to 4.12.10 are affected by CVE-2017-14051.
How can I fix CVE-2017-14051?
To fix CVE-2017-14051, update your Linux kernel to version 4.14 or higher.
Where can I find more information about CVE-2017-14051?
You can find more information about CVE-2017-14051 at the following references: [Bugzilla](https://bugzilla.kernel.org/show_bug.cgi?id=194061), [Patchwork](https://patchwork.kernel.org/patch/9929625/), [SecurityFocus](http://www.securityfocus.com/bid/100571).