CVE-2017-15951: Race Condition
Last updated 29 November 2024
Other sources
The KEYS subsystem in the Linux kernel before 4.13.10 does not correctly synchronize the actions of updating versus finding a key in the "negative" state to avoid a race condition, which allows local users to cause a denial of service or possibly have unspecified other impact via crafted system calls.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2017-15951?
CVE-2017-15951 has a severity rating that may allow local users to create a denial of service condition.
How do I fix CVE-2017-15951?
To fix CVE-2017-15951, update the Linux kernel to version 4.13.10 or later.
Which versions of the Linux kernel are affected by CVE-2017-15951?
CVE-2017-15951 affects the Linux kernel versions prior to 4.13.10, as well as versions 4.4.95 and 4.9.59.
Can CVE-2017-15951 be exploited remotely?
CVE-2017-15951 cannot be exploited remotely; it requires local access to the system.
What are the potential impacts of CVE-2017-15951?
The potential impacts of CVE-2017-15951 include denial of service and possibly other unspecified impacts.