Description
The acpi_ns_evaluate() function in drivers/acpi/acpica/nseval.c in the Linux kernel through 4.12.9 does not flush the operand cache and causes a kernel stack dump, which allows local users to obtain sensitive information from kernel memory and bypass the KASLR protection mechanism (in the kernel through 4.9) via a crafted ACPI table.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Ubuntu USN |
USN-3696-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-3696-2 | Linux kernel (Xenial HWE) vulnerabilities |
Ubuntu USN |
USN-3762-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-3762-2 | Linux kernel (HWE) vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T19:05:19.987Z
Reserved: 2017-08-25T00:00:00.000Z
Link: CVE-2017-13695
No data.
Status : Modified
Published: 2017-08-25T08:29:00.367
Modified: 2026-05-13T00:24:29.033
Link: CVE-2017-13695
OpenCVE Enrichment
No data.
Weaknesses
Ubuntu USN