CVE-2017-7184: High severity Linux Linux kernel vulnerability

Published Mar 19, 2017
·
Updated

Out-of-bounds kernel heap access vulnerability was found in xfrm, kernel's IP framework for transforming packets. An error dealing with netlink messages from unprivileged user leads to arbitrary read/write and privilege escalation.

Public disclosure on oss-security:

http://openwall.com/lists/oss-security/2017/03/29/2

http://seclists.org/oss-sec/2017/q1/689

Upstream patches:

https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=677e806da4d916052585301785d847c3b3e6186a

https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=f843ee6dd019bcece3e74e76ad9df0155655d0df

Other sources

The xfrmreplayverifylen function in net/xfrm/xfrmuser.c in the Linux kernel through 4.10.6 does not validate certain size data after an XFRMMSGNEWAE update, which allows local users to obtain root privileges or cause a denial of service (heap-based out-of-bounds access) by leveraging the CAPNETADMIN capability, as demonstrated during a Pwn2Own competition at CanSecWest 2017 for the Ubuntu 16.10 linux-image- package 4.8.0.41.52.

MITRE

Affected Software

14 affected components
Linux Linux kernel=4.8
Canonical Ubuntu Linux=16.10
Linux Linux kernel<3.2.89
Linux Linux kernel>=3.3<3.10.106
Linux Linux kernel>=3.11<3.12.73
Linux Linux kernel>=3.13<3.16.44
Linux Linux kernel>=3.17<3.18.49
Linux Linux kernel>=3.19<4.1.49
Linux Linux kernel>=4.2<4.4.59
Linux Linux kernel>=4.5<4.9.20
Linux Linux kernel>=4.10<4.10.8
Google Android
All of the following
Linux Linux kernel=4.8
Canonical Ubuntu Linux=16.10

Event History

Mar 19, 2017
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Data Sourced
via NVD·06:59 PM
DescriptionSeverityAffected Software
Mar 23, 2017
Data Sourced
via Red Hat·09:45 AM
DescriptionSeverityAffected Software

Frequently Asked Questions

1

What is the severity of CVE-2017-7184?

CVE-2017-7184 is rated as a critical vulnerability that could allow local users to gain root privileges or cause a denial of service.

2

How do I fix CVE-2017-7184?

To fix CVE-2017-7184, update the Linux kernel to a version that is not vulnerable, specifically versions above 4.10.8 or as specified in security advisories.

3

What are the affected systems for CVE-2017-7184?

CVE-2017-7184 affects multiple Linux kernel versions up to 4.10.8, including specific versions of Android and Ubuntu Linux.

4

Can CVE-2017-7184 lead to remote code execution?

CVE-2017-7184 primarily allows local privilege escalation, rather than remote code execution.

5

Who can exploit CVE-2017-7184?

Local users with appropriate capabilities can exploit CVE-2017-7184 to gain elevated privileges.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203