1
PublicDateAtUSN: 2017-09-15
2
Candidate: CVE-2017-14489
5
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-14489
6
https://patchwork.kernel.org/patch/9923803/
7
https://bugzilla.redhat.com/show_bug.cgi?id=1490421
8
https://git.kernel.org/pub/scm/linux/kernel/git/jejb/scsi.git/commit/drivers/scsi/scsi_transport_iscsi.c?h=fixes&id=c88f0e6b06f4092995688211a631bb436125d77b
9
https://usn.ubuntu.com/usn/usn-3469-1
10
https://usn.ubuntu.com/usn/usn-3469-2
11
https://usn.ubuntu.com/usn/usn-3487-1
12
https://usn.ubuntu.com/usn/usn-3583-1
13
https://usn.ubuntu.com/usn/usn-3583-2
15
The iscsi_if_rx function in drivers/scsi/scsi_transport_iscsi.c in the
16
Linux kernel through 4.13.2 allows local users to cause a denial of service
17
(panic) by leveraging incorrect length validation.
19
ChunYu Wang discovered that the iSCSI transport implementation in the Linux
20
kernel did not properly validate data structures. A local attacker could
21
use this to cause a denial of service (system crash).
25
Discovered-by: ChunYu Wang
29
break-fix: 0896b752302662909b52895bd7f601136001069d c88f0e6b06f4092995688211a631bb436125d77b
30
upstream_linux: released (4.14~rc3)
31
precise/esm_linux: ignored (was needs-triage ESM criteria)
32
trusty_linux: released (3.13.0-142.191)
33
vivid/ubuntu-core_linux: ignored (was needs-triage ESM criteria)
34
xenial_linux: released (4.4.0-98.121)
35
zesty_linux: ignored (was pending [4.10.0-43.47] now end-of-life)
36
artful_linux: released (4.13.0-17.20)
37
bionic_linux: not-affected (4.13.0-17.20)
38
devel_linux: not-affected (4.15.0-20.21)
40
Patches_linux-ti-omap4:
41
upstream_linux-ti-omap4: released (4.14~rc3)
42
precise/esm_linux-ti-omap4: DNE
43
trusty_linux-ti-omap4: DNE
44
vivid/ubuntu-core_linux-ti-omap4: DNE
45
xenial_linux-ti-omap4: DNE
46
zesty_linux-ti-omap4: DNE
47
artful_linux-ti-omap4: DNE
48
bionic_linux-ti-omap4: DNE
49
devel_linux-ti-omap4: DNE
51
Patches_linux-linaro-omap:
52
upstream_linux-linaro-omap: released (4.14~rc3)
53
precise/esm_linux-linaro-omap: DNE
54
trusty_linux-linaro-omap: DNE
55
vivid/ubuntu-core_linux-linaro-omap: DNE
56
xenial_linux-linaro-omap: DNE
57
zesty_linux-linaro-omap: DNE
58
artful_linux-linaro-omap: DNE
59
bionic_linux-linaro-omap: DNE
60
devel_linux-linaro-omap: DNE
62
Patches_linux-linaro-shared:
63
upstream_linux-linaro-shared: released (4.14~rc3)
64
precise/esm_linux-linaro-shared: DNE
65
trusty_linux-linaro-shared: DNE
66
vivid/ubuntu-core_linux-linaro-shared: DNE
67
xenial_linux-linaro-shared: DNE
68
zesty_linux-linaro-shared: DNE
69
artful_linux-linaro-shared: DNE
70
bionic_linux-linaro-shared: DNE
71
devel_linux-linaro-shared: DNE
73
Patches_linux-linaro-vexpress:
74
upstream_linux-linaro-vexpress: released (4.14~rc3)
75
precise/esm_linux-linaro-vexpress: DNE
76
trusty_linux-linaro-vexpress: DNE
77
vivid/ubuntu-core_linux-linaro-vexpress: DNE
78
xenial_linux-linaro-vexpress: DNE
79
zesty_linux-linaro-vexpress: DNE
80
artful_linux-linaro-vexpress: DNE
81
bionic_linux-linaro-vexpress: DNE
82
devel_linux-linaro-vexpress: DNE
84
Patches_linux-qcm-msm:
85
upstream_linux-qcm-msm: released (4.14~rc3)
86
precise/esm_linux-qcm-msm: DNE
87
trusty_linux-qcm-msm: DNE
88
vivid/ubuntu-core_linux-qcm-msm: DNE
89
xenial_linux-qcm-msm: DNE
90
zesty_linux-qcm-msm: DNE
91
artful_linux-qcm-msm: DNE
92
bionic_linux-qcm-msm: DNE
93
devel_linux-qcm-msm: DNE
95
Tags_linux-armadaxp: not-ue
96
Patches_linux-armadaxp:
97
upstream_linux-armadaxp: released (4.14~rc3)
98
precise/esm_linux-armadaxp: DNE
99
trusty_linux-armadaxp: DNE
100
vivid/ubuntu-core_linux-armadaxp: DNE
101
xenial_linux-armadaxp: DNE
102
zesty_linux-armadaxp: DNE
103
artful_linux-armadaxp: DNE
104
bionic_linux-armadaxp: DNE
105
devel_linux-armadaxp: DNE
107
Tags_linux-lts-quantal: not-ue
108
Patches_linux-lts-quantal: DNE
109
upstream_linux-lts-quantal: released (4.14~rc3)
110
precise/esm_linux-lts-quantal: ignored (end-of-life)
111
trusty_linux-lts-quantal: DNE
112
vivid/ubuntu-core_linux-lts-quantal: DNE
113
xenial_linux-lts-quantal: DNE
114
zesty_linux-lts-quantal: DNE
115
artful_linux-lts-quantal: DNE
116
bionic_linux-lts-quantal: DNE
117
devel_linux-lts-quantal: DNE
119
Patches_linux-lts-raring:
120
upstream_linux-lts-raring: released (4.14~rc3)
121
precise/esm_linux-lts-raring: ignored (end-of-life)
122
trusty_linux-lts-raring: DNE
123
vivid/ubuntu-core_linux-lts-raring: DNE
124
xenial_linux-lts-raring: DNE
125
zesty_linux-lts-raring: DNE
126
artful_linux-lts-raring: DNE
127
bionic_linux-lts-raring: DNE
128
devel_linux-lts-raring: DNE
130
Tags_linux-lts-saucy: not-ue
131
Patches_linux-lts-saucy:
132
upstream_linux-lts-saucy: released (4.14~rc3)
133
precise/esm_linux-lts-saucy: ignored (end-of-life)
134
trusty_linux-lts-saucy: DNE
135
vivid/ubuntu-core_linux-lts-saucy: DNE
136
xenial_linux-lts-saucy: DNE
137
zesty_linux-lts-saucy: DNE
138
artful_linux-lts-saucy: DNE
139
bionic_linux-lts-saucy: DNE
140
devel_linux-lts-saucy: DNE
142
Patches_linux-lts-trusty:
143
upstream_linux-lts-trusty: released (4.14~rc3)
144
precise/esm_linux-lts-trusty: released (3.13.0-142.191~precise1)
145
trusty_linux-lts-trusty: DNE
146
vivid/ubuntu-core_linux-lts-trusty: DNE
147
xenial_linux-lts-trusty: DNE
148
zesty_linux-lts-trusty: DNE
149
artful_linux-lts-trusty: DNE
150
bionic_linux-lts-trusty: DNE
151
devel_linux-lts-trusty: DNE
153
Patches_linux-goldfish:
154
upstream_linux-goldfish: released (4.14~rc3)
155
precise/esm_linux-goldfish: DNE
156
trusty_linux-goldfish: ignored (abandoned)
157
vivid/ubuntu-core_linux-goldfish: DNE
158
xenial_linux-goldfish: ignored (was needed now end-of-life)
159
zesty_linux-goldfish: ignored (reached end-of-life)
160
artful_linux-goldfish: DNE
161
bionic_linux-goldfish: DNE
162
devel_linux-goldfish: DNE
164
Patches_linux-grouper:
165
upstream_linux-grouper: released (4.14~rc3)
166
precise/esm_linux-grouper: DNE
167
trusty_linux-grouper: ignored (abandoned)
168
vivid/ubuntu-core_linux-grouper: DNE
169
xenial_linux-grouper: DNE
170
zesty_linux-grouper: DNE
171
artful_linux-grouper: DNE
172
bionic_linux-grouper: DNE
173
devel_linux-grouper: DNE
175
Patches_linux-maguro:
176
upstream_linux-maguro: released (4.14~rc3)
177
precise/esm_linux-maguro: DNE
178
trusty_linux-maguro: ignored (abandoned)
179
vivid/ubuntu-core_linux-maguro: DNE
180
xenial_linux-maguro: DNE
181
zesty_linux-maguro: DNE
182
artful_linux-maguro: DNE
183
bionic_linux-maguro: DNE
184
devel_linux-maguro: DNE
187
upstream_linux-mako: released (4.14~rc3)
188
precise/esm_linux-mako: DNE
189
trusty_linux-mako: ignored (abandoned)
190
vivid/ubuntu-core_linux-mako: DNE
191
xenial_linux-mako: ignored (abandoned)
192
zesty_linux-mako: DNE
193
artful_linux-mako: DNE
194
bionic_linux-mako: DNE
195
devel_linux-mako: DNE
198
upstream_linux-manta: released (4.14~rc3)
199
precise/esm_linux-manta: DNE
200
trusty_linux-manta: ignored (abandoned)
201
vivid/ubuntu-core_linux-manta: DNE
202
xenial_linux-manta: DNE
203
zesty_linux-manta: DNE
204
artful_linux-manta: DNE
205
bionic_linux-manta: DNE
206
devel_linux-manta: DNE
209
upstream_linux-flo: released (4.14~rc3)
210
precise/esm_linux-flo: DNE
211
trusty_linux-flo: ignored (abandoned)
212
vivid/ubuntu-core_linux-flo: DNE
213
xenial_linux-flo: ignored (abandoned)
215
artful_linux-flo: DNE
216
bionic_linux-flo: DNE
219
Patches_linux-raspi2:
220
upstream_linux-raspi2: released (4.14~rc3)
221
precise/esm_linux-raspi2: DNE
222
trusty_linux-raspi2: DNE
223
vivid/ubuntu-core_linux-raspi2: ignored (end-of-life)
224
xenial_linux-raspi2: released (4.4.0-1076.84)
225
zesty_linux-raspi2: ignored (was pending [4.10.0-1024.27] now end-of-life)
226
artful_linux-raspi2: released (4.13.0-1006.6)
227
bionic_linux-raspi2: not-affected (4.13.0-1006.6)
228
devel_linux-raspi2: not-affected (4.15.0-1010.11)
230
Patches_linux-lts-utopic:
231
upstream_linux-lts-utopic: released (4.14~rc3)
232
precise/esm_linux-lts-utopic: DNE
233
trusty_linux-lts-utopic: ignored (end-of-life)
234
vivid/ubuntu-core_linux-lts-utopic: DNE
235
xenial_linux-lts-utopic: DNE
236
zesty_linux-lts-utopic: DNE
237
artful_linux-lts-utopic: DNE
238
bionic_linux-lts-utopic: DNE
239
devel_linux-lts-utopic: DNE
241
Patches_linux-lts-vivid:
242
upstream_linux-lts-vivid: released (4.14~rc3)
243
precise/esm_linux-lts-vivid: DNE
244
trusty_linux-lts-vivid: ignored (was needs-triage now end-of-life)
245
vivid/ubuntu-core_linux-lts-vivid: DNE
246
xenial_linux-lts-vivid: DNE
247
zesty_linux-lts-vivid: DNE
248
artful_linux-lts-vivid: DNE
249
bionic_linux-lts-vivid: DNE
250
devel_linux-lts-vivid: DNE
252
Patches_linux-lts-wily:
253
upstream_linux-lts-wily: released (4.14~rc3)
254
precise/esm_linux-lts-wily: DNE
255
trusty_linux-lts-wily: ignored (end-of-life)
256
vivid/ubuntu-core_linux-lts-wily: DNE
257
xenial_linux-lts-wily: DNE
258
zesty_linux-lts-wily: DNE
259
artful_linux-lts-wily: DNE
260
bionic_linux-lts-wily: DNE
261
devel_linux-lts-wily: DNE
263
Patches_linux-krillin:
264
product_linux-krillin: ignored (was needed now end-of-life)
266
Patches_linux-vegetahd:
267
product_linux-vegetahd: ignored (was needed now end-of-life)
269
Patches_linux-lts-xenial:
270
upstream_linux-lts-xenial: released (4.14~rc3)
271
precise/esm_linux-lts-xenial: DNE
272
trusty_linux-lts-xenial: released (4.4.0-98.121~14.04.1)
273
vivid/ubuntu-core_linux-lts-xenial: DNE
274
xenial_linux-lts-xenial: DNE
275
zesty_linux-lts-xenial: DNE
276
artful_linux-lts-xenial: DNE
277
bionic_linux-lts-xenial: DNE
278
devel_linux-lts-xenial: DNE
280
Patches_linux-snapdragon:
281
upstream_linux-snapdragon: released (4.14~rc3)
282
precise/esm_linux-snapdragon: DNE
283
trusty_linux-snapdragon: DNE
284
vivid/ubuntu-core_linux-snapdragon: DNE
285
xenial_linux-snapdragon: released (4.4.0-1078.83)
286
zesty_linux-snapdragon: released (4.4.0-1078.83)
287
artful_linux-snapdragon: released (4.4.0-1078.83)
288
bionic_linux-snapdragon: DNE
289
devel_linux-snapdragon: DNE
292
upstream_linux-aws: released (4.14~rc3)
293
precise/esm_linux-aws: DNE
294
trusty_linux-aws: not-affected (4.4.0-1002.2)
295
vivid/ubuntu-core_linux-aws: DNE
296
xenial_linux-aws: released (4.4.0-1039.48)
298
artful_linux-aws: DNE
299
bionic_linux-aws: not-affected (4.15.0-1001.1)
300
devel_linux-aws: not-affected (4.15.0-1007.7)
303
upstream_linux-hwe: released (4.14~rc3)
304
precise/esm_linux-hwe: DNE
305
trusty_linux-hwe: DNE
306
vivid/ubuntu-core_linux-hwe: DNE
307
xenial_linux-hwe: released (4.13.0-26.29~16.04.2)
309
artful_linux-hwe: DNE
310
bionic_linux-hwe: DNE
313
Patches_linux-hwe-edge:
314
upstream_linux-hwe-edge: released (4.14~rc3)
315
precise/esm_linux-hwe-edge: DNE
316
trusty_linux-hwe-edge: DNE
317
vivid/ubuntu-core_linux-hwe-edge: DNE
318
xenial_linux-hwe-edge: released (4.13.0-17.20~16.04.1)
319
zesty_linux-hwe-edge: DNE
320
artful_linux-hwe-edge: DNE
321
bionic_linux-hwe-edge: DNE
322
devel_linux-hwe-edge: DNE
325
upstream_linux-gke: released (4.14~rc3)
326
precise/esm_linux-gke: DNE
327
trusty_linux-gke: DNE
328
vivid/ubuntu-core_linux-gke: DNE
329
xenial_linux-gke: released (4.4.0-1033.33)
331
artful_linux-gke: DNE
332
bionic_linux-gke: DNE
336
upstream_linux-azure: released (4.14~rc3)
337
precise/esm_linux-azure: DNE
338
trusty_linux-azure: DNE
339
vivid/ubuntu-core_linux-azure: DNE
340
xenial_linux-azure: released (4.13.0-1005.7)
341
zesty_linux-azure: DNE
342
artful_linux-azure: DNE
343
bionic_linux-azure: not-affected (4.15.0-1002.2)
344
devel_linux-azure: not-affected (4.15.0-1009.9)
347
upstream_linux-gcp: released (4.14~rc3)
348
precise/esm_linux-gcp: DNE
349
trusty_linux-gcp: DNE
350
vivid/ubuntu-core_linux-gcp: DNE
351
xenial_linux-gcp: released (4.13.0-1002.5)
353
artful_linux-gcp: DNE
354
bionic_linux-gcp: not-affected (4.15.0-1001.1)
355
devel_linux-gcp: not-affected (4.15.0-1006.6)
358
upstream_linux-kvm: released (4.14~rc3)
359
precise/esm_linux-kvm: DNE
360
trusty_linux-kvm: DNE
361
vivid/ubuntu-core_linux-kvm: DNE
362
xenial_linux-kvm: released (4.4.0-1009.14)
364
artful_linux-kvm: DNE
365
bionic_linux-kvm: not-affected (4.15.0-1002.2)
366
devel_linux-kvm: not-affected (4.15.0-1008.8)
368
Patches_linux-euclid:
369
upstream_linux-euclid: released (4.14~rc3)
370
precise/esm_linux-euclid: DNE
371
trusty_linux-euclid: DNE
372
vivid/ubuntu-core_linux-euclid: DNE
373
xenial_linux-euclid: ignored (was needs-triage ESM criteria)
374
zesty_linux-euclid: DNE
375
artful_linux-euclid: DNE
376
bionic_linux-euclid: DNE
377
devel_linux-euclid: DNE
380
upstream_linux-oem: released (4.14~rc3)
381
precise/esm_linux-oem: DNE
382
trusty_linux-oem: DNE
383
xenial_linux-oem: not-affected (4.13.0-1008.9)
385
artful_linux-oem: DNE
386
bionic_linux-oem: not-affected (4.15.0-1002.3)
387
devel_linux-oem: not-affected (4.15.0-1004.5)