crypto/pcrypt.c in the Linux kernel before 4.14.13 mishandles freeing instances, allowing a local user able to access the AF_ALG-based AEAD interface (CONFIG_CRYPTO_USER_API_AEAD) and pcrypt (CONFIG_CRYPTO_PCRYPT) to cause a denial of service (kfree of an incorrect pointer) or possibly have unspecified other impact by executing a crafted sequence of system calls.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2018-01-24T10:00:00
Updated: 2024-08-05T21:13:48.207Z
Reserved: 2018-01-24T00:00:00
Link: CVE-2017-18075
Vulnrichment
No data.
NVD
Status : Modified
Published: 2018-01-24T10:29:00.223
Modified: 2024-11-21T03:19:18.370
Link: CVE-2017-18075
Redhat