CVE-2017-9985: High severity linux kernel vulnerability
Last updated 29 November 2024
Other sources
The sndmsndmidiinputread function in sound/isa/msnd/msndmidi.c in the Linux kernel through 4.11.7 allows local users to cause a denial of service (over-boundary access) or possibly have unspecified other impact by changing the value of a message queue head pointer between two kernel reads of that value, aka a "double fetch" vulnerability.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the vulnerability ID of this vulnerability?
The vulnerability ID is CVE-2017-9985.
What is the severity of CVE-2017-9985?
The severity of CVE-2017-9985 is not specified.
How does CVE-2017-9985 affect Linux kernel?
CVE-2017-9985 allows local users to cause a denial of service or possibly have unspecified other impact by changing the value of a message queue head pointer between two kernel reads.
Which versions of Linux kernel are affected by CVE-2017-9985?
Linux kernel through version 4.11.7 is affected by CVE-2017-9985.
How can I fix the CVE-2017-9985 vulnerability?
To fix the CVE-2017-9985 vulnerability, update the Linux kernel to version 4.13 or later.