The ipxitfioctl function in net/ipx/afipx.c in the Linux kernel through 4.11.1 mishandles reference counts, which allows local users to cause a denial of service (use-after-free) or possibly have unspecified other impact via a failed SIOCGIFADDR ioctl call for an IPX interface.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2017-7487.json"
[
{
"digest": {
"line_hashes": [
"221174315439126362148587945530703627704",
"93088008322087312580147985272596572122",
"257602415578959048068936406924686670401",
"285246666305047245796922739818889555110",
"133022877117176210474449159036992826019",
"248946353797739566445263943394882893077",
"46045251141698289404802796664424461184",
"134077740696278808298113593971222040227"
],
"threshold": 0.9
},
"signature_version": "v1",
"target": {
"file": "net/ipx/af_ipx.c"
},
"signature_type": "Line",
"id": "CVE-2017-7487-72e7d454",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@ee0d8d8482345ff97a75a7d747efc309f13b0d80",
"deprecated": false
},
{
"digest": {
"function_hash": "102584804233168091288363070381301442120",
"length": 1669.0
},
"signature_version": "v1",
"target": {
"file": "net/ipx/af_ipx.c",
"function": "ipxitf_ioctl"
},
"signature_type": "Function",
"id": "CVE-2017-7487-a85a86b4",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@ee0d8d8482345ff97a75a7d747efc309f13b0d80",
"deprecated": false
}
]
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2017-7487.json"
[
{
"digest": {
"line_hashes": [
"221174315439126362148587945530703627704",
"93088008322087312580147985272596572122",
"257602415578959048068936406924686670401",
"285246666305047245796922739818889555110",
"133022877117176210474449159036992826019",
"248946353797739566445263943394882893077",
"46045251141698289404802796664424461184",
"134077740696278808298113593971222040227"
],
"threshold": 0.9
},
"signature_version": "v1",
"target": {
"file": "net/ipx/af_ipx.c"
},
"signature_type": "Line",
"id": "CVE-2017-7487-4d211a1c",
"source": "https://github.com/torvalds/linux/commit/ee0d8d8482345ff97a75a7d747efc309f13b0d80",
"deprecated": false
},
{
"digest": {
"function_hash": "102584804233168091288363070381301442120",
"length": 1669.0
},
"signature_version": "v1",
"target": {
"file": "net/ipx/af_ipx.c",
"function": "ipxitf_ioctl"
},
"signature_type": "Function",
"id": "CVE-2017-7487-96f5c2ef",
"source": "https://github.com/torvalds/linux/commit/ee0d8d8482345ff97a75a7d747efc309f13b0d80",
"deprecated": false
}
]