Description
The bio_map_user_iov and bio_unmap_user functions in block/bio.c in the Linux kernel before 4.13.8 do unbalanced refcounting when a SCSI I/O vector has small consecutive buffers belonging to the same page. The bio_add_pc_page function merges them into one, but the page reference is never dropped. This causes a memory leak and possible system lockup (exploitable against the host OS by a guest OS user, if a SCSI disk is passed through to a virtual machine) due to an out-of-memory condition.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-1200-1 | linux security update |
EUVD |
EUVD-2017-3765 | The bio_map_user_iov and bio_unmap_user functions in block/bio.c in the Linux kernel before 4.13.8 do unbalanced refcounting when a SCSI I/O vector has small consecutive buffers belonging to the same page. The bio_add_pc_page function merges them into one, but the page reference is never dropped. This causes a memory leak and possible system lockup (exploitable against the host OS by a guest OS user, if a SCSI disk is passed through to a virtual machine) due to an out-of-memory condition. |
Ubuntu USN |
USN-3487-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-3582-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-3582-2 | Linux kernel (Xenial HWE) vulnerabilities |
Ubuntu USN |
USN-3583-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-3583-2 | Linux kernel (Trusty HWE) vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-05T18:28:16.645Z
Reserved: 2017-08-01T00:00:00.000Z
Link: CVE-2017-12190
No data.
Status : Modified
Published: 2017-11-22T18:29:00.477
Modified: 2026-05-13T00:24:29.033
Link: CVE-2017-12190
OpenCVE Enrichment
No data.
Debian DLA
EUVD
Ubuntu USN