CVE Published: 05/12/2017 |
CVE Updated: 05/08/2024 |
CVE Year: 2017 Source: debian |
Vendor: n/a |
Product: Linux kernel through 4.14.3 Status : PUBLISHED
CVE-2017-8824 Description
The dccp_disconnect function in net/dccp/proto.c in the Linux kernel through 4.14.3 allows local users to gain privileges or cause a denial of service (use-after-free) via an AF_UNSPEC connect system call during the DCCP_LISTEN state.