crypto/pcrypt.c in the Linux kernel before 4.14.13 mishandles freeing instances, allowing a local user able to access the AFALG-based AEAD interface (CONFIGCRYPTOUSERAPIAEAD) and pcrypt (CONFIGCRYPTO_PCRYPT) to cause a denial of service (kfree of an incorrect pointer) or possibly have unspecified other impact by executing a crafted sequence of system calls.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2017-18075.json"
[
{
"digest": {
"line_hashes": [
"25622132156410234494637984419531732845",
"317512433061370595948585708624907302798",
"338527636901892687152368410514768783807",
"160880649761014410321963761868010836186",
"44495328389736175973142796920272011727",
"178240258490740776882210670650751855912",
"275701507783392814647308300634500119689",
"65743128588657328812818997909981070440",
"133285958610431370987437132269920714910",
"20515578999058593454859797968254799560",
"297427550506090699122542694409064170046",
"330533093679359370357690953649407431064",
"271535004299538677656180701775237746964",
"49801105524609914005081333294506312015",
"117289967499752359555842219193004200641",
"162512901915921908681858701298777536122",
"229022807238713462120349609961749644931",
"42413754327329515241246146599866891032",
"4504172312723890142079212372414026191"
],
"threshold": 0.9
},
"id": "CVE-2017-18075-112e505f",
"signature_type": "Line",
"signature_version": "v1",
"target": {
"file": "crypto/pcrypt.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@d76c68109f37cb85b243a1cf0f40313afd2bae68",
"deprecated": false
},
{
"digest": {
"function_hash": "269459864628290492705311051986714250775",
"length": 1355.0
},
"id": "CVE-2017-18075-65227f39",
"signature_type": "Function",
"signature_version": "v1",
"target": {
"file": "crypto/pcrypt.c",
"function": "pcrypt_create_aead"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@d76c68109f37cb85b243a1cf0f40313afd2bae68",
"deprecated": false
}
]