CVE-2017-17840
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
An issue was discovered in Open-iSCSI through 2.0.875. A local attacker can cause the iscsiuio server to abort or potentially execute code by sending messages with incorrect lengths, which (due to lack of checking) can lead to buffer overflows, and result in aborts (with overflow checking enabled) or code execution. The process_iscsid_broadcast function in iscsiuio/src/unix/iscsid_ipc.c does not validate the payload length before a write operation.
Se ha descubierto un problema en versiones hasta la 2.0.875 de Open-iSCSI. Un atacante local puede provocar que el servidor iscsiuio se interrumpa o, posiblemente, ejecute código mediante el envío de mensajes con longitudes incorrectas. Debido a la falta de verificación, esto puede dar lugar a desbordamientos de búfer que den como resultado interrupciones (con la verificación de desbordamiento activada) o ejecución de código. La función process_iscsid_broadcast en iscsiuio/src/unix/iscsid_ipc.c no valida la longitud de la carga útil antes de una operación de escritura.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2017-12-22 CVE Reserved
- 2017-12-22 CVE Published
- 2023-03-08 EPSS Updated
- 2024-09-16 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer
CAPEC
References (2)
URL | Tag | Source |
---|---|---|
http://www.openwall.com/lists/oss-security/2017/12/13/2 | Mailing List | |
https://bugzilla.opensuse.org/show_bug.cgi?id=1072312 | Issue Tracking |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Open-iscsi Project Search vendor "Open-iscsi Project" | Open-iscsi Search vendor "Open-iscsi Project" for product "Open-iscsi" | <= 2.0.875 Search vendor "Open-iscsi Project" for product "Open-iscsi" and version " <= 2.0.875" | - |
Affected
|