Back

HIGH

kernel: Handling of might_cancel queueing is not properly pretected against race

Published Aug 19, 2017

Description

Race condition in fs/timerfd.c in the Linux kernel before 4.10.15 allows local users to gain privileges or cause a denial of service (list corruption or use-after-free) via simultaneous file-descriptor operations that leverage improper might_cancel queueing.

Affected products

Remediation

Red Hat statement

This issue does not affect Red Hat Enterprise Linux 5 as the code with the flaw is not present in the products listed. This issue affects Red Hat Enterprise Linux 6 and 7. Future updates for the respective releases may address this issue. This issue affects the Linux kernel packages as shipped with Red Hat Enterprise Linux MRG-2. This flaw is not currently planned to be addressed in future updates due to MRG-2 being an EUS release. For additional information, refer to the Extended Update Support (EUS) Guide: https://access.redhat.com/articles/rhel-eus.

Metrics

References (16)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Aug 19, 2017
Updated Aug 5, 2024
Reserved Jun 28, 2017
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity Moderate
Public date Feb 10, 2017