CVE-2017-15649: Race Condition
Last updated 29 November 2024
Other sources
net/packet/afpacket.c in the Linux kernel before 4.13.6 allows local users to gain privileges via crafted system calls that trigger mishandling of packetfanout data structures, because of a race condition (involving fanoutadd and packetdobind) that leads to a use-after-free, a different vulnerability than CVE-2017-6346.
— Launchpad
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2017-15649?
CVE-2017-15649 has a medium severity rating due to its potential for local privilege escalation.
How do I fix CVE-2017-15649?
To fix CVE-2017-15649, update your Linux kernel to version 4.13.6 or later.
What versions of Linux are affected by CVE-2017-15649?
CVE-2017-15649 affects Linux kernel versions earlier than 4.13.6.
What kind of vulnerability is CVE-2017-15649?
CVE-2017-15649 is a local privilege escalation vulnerability caused by a race condition.
Can CVE-2017-15649 be exploited remotely?
No, CVE-2017-15649 requires local access to the system to be exploited.