Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2017-7533

34
FAUCET Score

CVE-2017-7533 describes a race condition in the Linux kernel's fsnotify implementation (versions through 4.12.4) that allows local users to escalate privileges or cause a denial of service. This vulnerability, rated High severity (CVSS 7.0), requires low privileges and high attack complexity, but can lead to complete compromise of confidentiality, integrity, and availability. While not on CISA's KEV catalog, an exploit for Debian 8 x64 (kernel < 3.16.39) is available on ExploitDB, though there is no evidence of active exploitation or significant community discussion.

Impacted Technologies

VendorProductVersion(s)CPE
>= 3.14, < 3.16.47CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 3.17, < 3.18.64CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 3.19, < 4.4.80CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 4.5, < 4.9.41CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 4.10, < 4.12.5CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

7.0HIGH

CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

Attack Vector
LOCAL
Attack Complexity
HIGH
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
Exploitability Score
1.0
Impact Score
5.9
CvssVersion
3.1

Exploit Intelligence

EPSS Score
1.22%
Probability of exploitation in next 30 days
EPSS Percentile
65.6%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
ExploitDB: EDB-44302 · Oct 16, 2017
This CVE's current EPSS score of 0.0122 is in the 93rd percentile among its peer group of 1,523 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.4 InfoSec Media, 0.1 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (8)

github_advisorypatch availablevia nvd_reference
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 7Fixed in: kernel-rt-0:3.10.0-693.2.1.rt56.620.el7
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 7Fixed in: kernel-0:3.10.0-693.1.1.el7
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 7.2 Extended Update SupportFixed in: kernel-0:3.10.0-327.61.3.el7
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 7.3 Extended Update SupportFixed in: kernel-0:3.10.0-514.32.2.el7
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise MRG 2Fixed in: kernel-rt-1:3.10.0-693.2.1.rt56.585.el6rt
View patch
redhatpatch availablevia nvd_reference
View patch
redhatno patchvia redhat_api
Product: Red Hat Enterprise Linux 7Fixed in: kernel-alt

Vendor Advisories (1)

redhatCVE-2017-7533Important

kernel: a race between inotify_handle_event() and sys_rename()

Aug 3, 2017

References

git.kernel.org / cgit/linux/kernel/git/torvalds/linux.git/commit
Issue TrackingPatchThird Party Advisory
openwall.com / lists/oss-security/2017/08/03/2
Mailing ListPatchThird Party Advisory
access.redhat.com / errata/RHSA-2017:2473
Third Party Advisory
access.redhat.com / errata/RHSA-2017:2585
Third Party Advisory
access.redhat.com / errata/RHSA-2017:2669
Third Party Advisory
access.redhat.com / errata/RHSA-2017:2770
Third Party Advisory
access.redhat.com / errata/RHSA-2017:2869
Third Party Advisory
bugzilla.redhat.com / show_bug.cgi
Issue TrackingPatchThird Party Advisory
github.com / torvalds/linux/commit/49d31c2f389acfe83417083e1208422b4091cd9e
Issue TrackingPatchThird Party Advisory
patchwork.kernel.org / patch/9755753
Issue TrackingPatchThird Party Advisory
patchwork.kernel.org / patch/9755757
Issue TrackingPatchThird Party Advisory
source.android.com / security/bulletin/2017-12-01
Third Party Advisory
mail-archive.com / linux-kernel%40vger.kernel.org/msg1408967.html
Third Party Advisory
debian.org / security/2017/dsa-3927
Third Party Advisory
debian.org / security/2017/dsa-3945
Third Party Advisory
openwall.com / lists/oss-security/2019/06/27/7
Mailing ListThird Party Advisory
openwall.com / lists/oss-security/2019/06/28/1
Mailing ListThird Party Advisory
openwall.com / lists/oss-security/2019/06/28/2
Mailing ListThird Party Advisory
securityfocus.com / bid/100123
Third Party AdvisoryVDB Entry
securitytracker.com / id/1039075
Third Party AdvisoryVDB Entry