5.5
CVSSv3

CVE-2017-15128

Published: 14/01/2018 Updated: 15/07/2021
CVSS v2 Base Score: 4.9 | Impact Score: 6.9 | Exploitability Score: 3.9
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 436
Vector: AV:L/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

A flaw was found in the hugetlb_mcopy_atomic_pte function in mm/hugetlb.c in the Linux kernel prior to 4.13.12. A lack of size check could cause a denial of service (BUG).

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel

redhat enterprise mrg 2.0

redhat enterprise linux 7.0

Vendor Advisories

A flaw was found in the Linux kernel where a local user with a shell account can abuse the userfaultfd syscall when using hugetlbfs A missing size check in hugetlb_mcopy_atomic_pte could create an invalid inode variable, leading to a kernel panic ...