CVE-2017-17449: Infoleak
Published Dec 7, 2017
·Updated
Last updated 4 July 2026
Other sources
The netlinkdelivertapskb function in net/netlink/afnetlink.c in the Linux kernel through 4.14.4, when CONFIGNLMON is enabled, does not restrict observations of Netlink messages to a single net namespace, which allows local users to obtain sensitive information by leveraging the CAPNETADMIN capability to sniff an nlmon interface for all Netlink activity on the system.
— Launchpad
Affected Software
2 affected componentsFixes available
Linux Linux kernel<=4.14.4
debian/linux
5.10.223-15.10.262-16.1.176-16.1.180-16.12.94-16.12.101-17.1.8-17.1.8-2
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
debian/linuxto a version that resolves this vulnerability.Fixed in 5.10.223-1Fixed in 5.10.262-1Fixed in 6.1.176-1Fixed in 6.1.180-1Fixed in 6.12.94-1Fixed in 6.12.101-1Fixed in 7.1.8-1Fixed in 7.1.8-2 - Upgrade
Upgrade
linux kernelto a version that resolves this vulnerability.Fixed in 4.14.4
Event History
Dec 7, 2017
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·12:29 AM
DescriptionSeverityWeaknessAffected Software
Dec 14, 2017
Data Sourced
via Red Hat·01:47 AM
DescriptionSeverityAffected Software
Jan 11, 2024
Data Sourced
via Launchpad·10:34 PM
Description
Jul 4, 2026
Data Sourced
via Ubuntu·11:10 AM
RemedyDescriptionSeverityAffected Software
Aug 16, 2026
Data Sourced
via Debian·12:40 PM
DescriptionAffected Software