In the Linux kernel before version 4.12, Kerberos 5 tickets decoded when using the RXRPC keys incorrectly assumes the size of a field. This could lead to the size-remaining variable wrapping and the data pointer going over the end of the buffer. This could possibly lead to memory corruption and possible privilege escalation.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2017-7482.json"
[
{
"deprecated": false,
"signature_type": "Function",
"digest": {
"length": 654.0,
"function_hash": "252070035255997978609968802215626962733"
},
"signature_version": "v1",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@5f2f97656ada8d811d3c1bef503ced266fcd53a0",
"id": "CVE-2017-7482-19abb3d4",
"target": {
"file": "net/rxrpc/key.c",
"function": "rxrpc_krb5_decode_ticket"
}
},
{
"deprecated": false,
"signature_type": "Line",
"digest": {
"line_hashes": [
"282978525468733642806009273798455650085",
"255008650400126841804317848517698872500",
"206623316636271687156646701396091405372",
"157885748738709835179838310642035548196",
"151391800366570822337174056665987477850",
"336561958494354064079474687617474561574",
"328836268646506914961412728184123924040",
"314567805645702586756602466222528004720",
"320484346837403552247768151083373038862",
"248493327900587286952052367736650739852",
"83315088647621517880576506609780095170",
"198827606061278005684865608953453641077",
"147337166618320129389763649646799246538",
"191145931582741919979483763348883618258",
"185113050067733556811136285938150395779",
"52452836743041420554971995267979724991",
"255294803943938865198854119478707165738",
"11966216620727214050769032196112951370",
"256217991508295906079158270826321695169",
"116679161514680785827044301675354671041",
"21296192280159053459006400384026246243",
"240241304556850841460378891663830977683",
"330413127447452898689259679751469823011",
"193419166250410758071761318751619468052",
"200828390395503249982607624884021483035",
"196403830755219029881832281400743331068",
"208357541278922925902660204081441376247",
"1545792772317361780729880180046919621",
"312189698888640146792427287138039017473",
"35403615466503014050292046177555088370",
"129782019505343855209628772945214653181",
"279040357369542537385384133771575257267",
"113566279566823404719796243816561691428",
"195237872792370697149059109864902805313",
"98130846047489757305296859680391122404",
"149167669749472832618526007495745529022",
"262205324390363600128561224739837555390",
"14615617191391537036422109334284879287",
"185884526615209369699445898503754981376",
"116937207546561034287544541081288654045",
"242684111041837309554485811997586204446",
"1082659353101043547164242214317977985",
"208225580439495764273362859183796297567",
"132265464440399651093112674825410919849",
"65151456365111411404919429321378825849",
"33051827424033985978169849955635382355",
"306118942157568549684897602294955621492",
"201795103171553399638007426089434633362",
"329555502483445849675758697242255949294",
"182648270552374986764449502409511829271",
"130072201567818933736747691241107588183",
"318782565387069758229112756867831424639",
"83654336173118005425716856191798529561",
"239321327705410955456574188228929908706",
"87804631126224681268117263903393769893",
"41168759062850945963167288015296876713",
"208225580439495764273362859183796297567",
"132265464440399651093112674825410919849",
"164909343365622401197012504296152595240",
"150526533074369109266984226873632816620",
"309857421182032152359331052333499200394",
"63795533652913063335218176214473997072",
"33823859868585193077903687103231750926",
"82996341944184968012433228779929555121",
"326588325826129717081172210762191854586",
"38118307731754326288991525565190080711",
"337713475208701475473527419978941002784",
"303540997389269918609213520863571728648",
"16218657866025275690278294581093611940",
"284036897716928133160101543644915345099",
"328055226519038414633482323108920755071",
"306312734972286745855224532677650749616",
"207884568332458871550680052947368477365",
"207145668477380565787042743181809272891",
"17874142544272172900876942432163973806",
"139012755062495055737532280246877826127",
"36797627242097537419235806505836105316",
"202143562187125260158525839622412854366",
"77538003702136583741523988273899603375",
"51096779154965682339608721321921288523",
"129926340340831428558779489289543388919",
"253197218338244583705164179404138633797",
"76828577988182493727644161946448805550",
"179049084389184488819398667628946395316",
"91178200985261341907449094935569594284",
"285950677740040351358234257622107496316",
"9038210563110990228909341060297585538",
"63221079367930409259468763775378007814",
"231924701308381620452546104038565416684"
],
"threshold": 0.9
},
"signature_version": "v1",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@5f2f97656ada8d811d3c1bef503ced266fcd53a0",
"id": "CVE-2017-7482-39c40ec5",
"target": {
"file": "net/rxrpc/key.c"
}
},
{
"deprecated": false,
"signature_type": "Function",
"digest": {
"length": 1668.0,
"function_hash": "132351419887434014434918437701713633301"
},
"signature_version": "v1",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@5f2f97656ada8d811d3c1bef503ced266fcd53a0",
"id": "CVE-2017-7482-4e79aa3b",
"target": {
"file": "net/rxrpc/key.c",
"function": "rxrpc_krb5_decode_principal"
}
},
{
"deprecated": false,
"signature_type": "Function",
"digest": {
"length": 2119.0,
"function_hash": "70500740066534365345390887543041583193"
},
"signature_version": "v1",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@5f2f97656ada8d811d3c1bef503ced266fcd53a0",
"id": "CVE-2017-7482-7e92f5b5",
"target": {
"file": "net/rxrpc/key.c",
"function": "rxrpc_preparse_xdr"
}
},
{
"deprecated": false,
"signature_type": "Function",
"digest": {
"length": 766.0,
"function_hash": "151110587770357810496621614374923343646"
},
"signature_version": "v1",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@5f2f97656ada8d811d3c1bef503ced266fcd53a0",
"id": "CVE-2017-7482-df4216dc",
"target": {
"file": "net/rxrpc/key.c",
"function": "rxrpc_krb5_decode_tagged_data"
}
}
]