Security Advisory

CVE-2017-9211

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2017-05-23 05:14:00
Last updated 2024-09-17 02:53:35
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

The crypto_skcipher_init_tfm function in crypto/skcipher.c in the Linux kernel through 4.11.2 relies on a setkey function that lacks a key-size check, which allows local users to cause a denial of service (NULL pointer dereference) via a crafted application.