CVE-2017-7184 is a heap-based out-of-bounds access vulnerability in the Linux kernel's xfrm_replay_verify_len function, affecting various Linux distributions including Ubuntu. It allows local users with CAP_NET_ADMIN privileges to achieve root escalation or cause a denial of service. The vulnerability has a CVSS score of 7.8 (HIGH) due to its low attack complexity and high impact on confidentiality, integrity, and availability. While no public exploit code (Metasploit, Nuclei, ExploitDB) is readily available, it was demonstrated at Pwn2Own 2017, indicating exploitability, and has garnered significant community and media attention.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
4.8CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:4.8:*:*:*:*:*:*:* | ||
< 3.2.89CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
>= 3.3, < 3.10.106CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
>= 3.11, < 3.12.73CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
>= 3.13, < 3.16.44CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.