CVE-2017-11176

HIGH

Linux Kernel < 3.2.92 - Use After Free

Title source: rule

Description

The mq_notify function in the Linux kernel through 4.11.9 does not set the sock pointer to NULL upon entry into the retry logic. During a user-space close of a Netlink socket, it allows attackers to cause a denial of service (use-after-free) or possibly have unspecified other impact.

Exploits (8)

exploitdb WORKING POC
by Lexfo · clocallinux
https://www.exploit-db.com/exploits/45553
nomisec WORKING POC 26 stars
by lexfo · poc
https://github.com/lexfo/cve-2017-11176
nomisec WORKING POC 1 stars
by c3r34lk1ll3r · poc
https://github.com/c3r34lk1ll3r/CVE-2017-11176
nomisec WORKING POC
by Yanoro · poc
https://github.com/Yanoro/CVE-2017-11176
nomisec WORKING POC
by Sama-Ayman-Mokhtar · poc
https://github.com/Sama-Ayman-Mokhtar/CVE-2017-11176
nomisec WORKING POC
by leonardo1101 · poc
https://github.com/leonardo1101/cve-2017-11176
nomisec WORKING POC
by DoubleMice · poc
https://github.com/DoubleMice/cve-2017-11176

Scores

CVSS v3 7.8
EPSS 0.2081
EPSS Percentile 95.6%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-416
Status published
Products (3)
debian/debian_linux 8.0
debian/debian_linux 9.0
linux/linux_kernel < 3.2.92
Published Jul 11, 2017
Tracked Since Feb 18, 2026