First published: Sun Oct 01 2017(Updated: )
Last updated 24 July 2024
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Linux Kernel | <=4.13.4 | |
debian/linux | 5.10.223-1 5.10.234-1 6.1.123-1 6.1.128-1 6.12.12-1 6.12.17-1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-14954 is a vulnerability in the Linux kernel that allows local users to obtain sensitive information and bypass the KASLR protection mechanism.
CVE-2017-14954 works by accessing rusage data structures in unintended cases during the waitid system call.
The severity of CVE-2017-14954 is high due to the potential for data leakage and bypassing of security measures.
To fix CVE-2017-14954, update your Linux kernel to version 4.14~ or higher.
More information about CVE-2017-14954 can be found on the official Linux kernel repository and the grsecurity website.