CVE-2017-1000364

HIGH

Linux Kernel <4.11.5 - Memory Corruption

Title source: llm

Description

An issue was discovered in the size of the stack guard page on Linux, specifically a 4k stack guard page is not sufficiently large and can be "jumped" over (the stack guard page is bypassed), this affects Linux Kernel versions 4.11.5 and earlier (the stackguard page was introduced in 2010).

Exploits (1)

exploitdb WORKING POC VERIFIED
by Metasploit · rubylocalsolaris
https://www.exploit-db.com/exploits/45625

References (25)

... and 5 more

Scores

CVSS v3 7.4
EPSS 0.0960
EPSS Percentile 92.8%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

Classification

CWE
CWE-119
Status draft

Affected Products (1)

linux/linux_kernel < 4.11.5

Timeline

Published Jun 19, 2017
Tracked Since Feb 18, 2026