crypto/ahash.c in the Linux kernel through 4.10.9 allows attackers to cause a denial of service (API operation calling its own callback, and infinite recursion) by triggering EBUSY on a full queue.
References
Link | Resource |
---|---|
http://marc.info/?l=linux-crypto-vger&m=149181655623850&w=2 | Third Party Advisory |
http://www.securityfocus.com/bid/97534 | Third Party Advisory VDB Entry |
https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf03800en_us | Third Party Advisory |
http://marc.info/?l=linux-crypto-vger&m=149181655623850&w=2 | Third Party Advisory |
http://www.securityfocus.com/bid/97534 | Third Party Advisory VDB Entry |
https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf03800en_us | Third Party Advisory |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 03:32
Type | Values Removed | Values Added |
---|---|---|
References | () http://marc.info/?l=linux-crypto-vger&m=149181655623850&w=2 - Third Party Advisory | |
References | () http://www.securityfocus.com/bid/97534 - Third Party Advisory, VDB Entry | |
References | () https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf03800en_us - Third Party Advisory |
Information
Published : 2017-04-10 14:59
Updated : 2024-11-21 03:32
NVD link : CVE-2017-7618
Mitre link : CVE-2017-7618
CVE.ORG link : CVE-2017-7618
JSON object : View
Products Affected
linux
- linux_kernel
CWE
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')