7.2
CVSSv2

CVE-2017-9986

Published: 28/06/2017 Updated: 01/07/2017
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

The intr function in sound/oss/msnd_pinnacle.c in the Linux kernel up to and including 4.11.7 allows local users to cause a denial of service (over-boundary access) or possibly have unspecified other impact by changing the value of a message queue head pointer between two kernel reads of that value, aka a "double fetch" vulnerability.

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel

Vendor Advisories

The intr function in sound/oss/msnd_pinnaclec in the Linux kernel through 4117 allows local users to cause a denial of service (over-boundary access) or possibly have unspecified other impact by changing the value of a message queue head pointer between two kernel reads of that value, aka a "double fetch" vulnerability ...
The intr function in sound/oss/msnd_pinnaclec in the Linux kernel before 413, 4950, 4499 and 4145 allows local users to cause a denial of service (over-boundary access) or possibly have unspecified other impact by changing the value of a message queue head pointer between two kernel reads of that value, aka a "double fetch" vulnerability ...