First published: Sun Apr 23 2017(Updated: )
drivers/media/usb/dvb-usb-v2/dvb_usb_core.c in the Linux kernel 4.9.x and 4.10.x before 4.10.12 interacts incorrectly with the CONFIG_VMAP_STACK option, which allows local users to cause a denial of service (system crash or memory corruption) or possibly have unspecified other impact by leveraging use of more than one virtual page for a DMA scatterlist.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Linux Linux kernel | >=4.9<4.9.24 | |
Linux Linux kernel | >=4.10<4.10.12 | |
Debian Debian Linux | =8.0 | |
Debian Debian Linux | =9.0 | |
debian/linux | 5.10.223-1 5.10.226-1 6.1.115-1 6.1.119-1 6.11.10-1 6.12.5-1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of this vulnerability is CVE-2017-8064.
The title of this vulnerability is 'drivers/media/usb/dvb-usb-v2/dvb_usb_core.c in the Linux kernel 4.9.x and 4.10.x before 4.10.12 interacts incorrectly with the CONFIG_VMAP_STACK option'.
The severity of the vulnerability is not specified.
This vulnerability affects the Linux kernel versions 4.9.x and 4.10.x before 4.10.12.
The impact of this vulnerability includes system crashes, memory corruption, and possible unspecified other impacts.
Yes, there are remediation steps available to fix this vulnerability depending on the Linux kernel version and distribution.