CVE-2017-6214: High severity Google Android vulnerability
A flaw was found in the Linux kernels handling of packets with the URG flag. Applications using the splice() and tcpspliceread() functionality can allow a remote attacker to force the kernel to enter a condition in which it can loop indefinitely.
Upstream patch:
https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=ccf7abb93af09ad0868ae9033d1ca8108bdaec82
References:
https://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.9.11 http://seclists.org/oss-sec/2017/q1/491
Other sources
The tcpspliceread function in net/ipv4/tcp.c in the Linux kernel before 4.9.11 allows remote attackers to cause a denial of service (infinite loop and soft lockup) via vectors involving a TCP packet with the URG flag.
— Launchpad
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
debian/linuxto a version that resolves this vulnerability.Fixed in 5.10.223-1Fixed in 5.10.234-1Fixed in 6.1.129-1Fixed in 6.1.135-1Fixed in 6.12.25-1 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 4.9.11
Event History
Frequently Asked Questions
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2017-6214.
What is the severity level of CVE-2017-6214?
CVE-2017-6214 has a severity level of high.
How does CVE-2017-6214 affect Linux kernel?
CVE-2017-6214 allows remote attackers to cause a denial of service in the Linux kernel by exploiting a vulnerability in the tcp_splice_read function of net/ipv4/tcp.c.
Which Linux kernel versions are affected by CVE-2017-6214?
Linux kernel versions before 4.9.11 are affected by CVE-2017-6214.
How can I fix the CVE-2017-6214 vulnerability?
To fix the CVE-2017-6214 vulnerability, update your Linux kernel to version 4.9.11 or later.