BSA-2017-285

Brocade Fabric OS

2 more products

21394

17 May 2017

17 May 2017

Closed

High

7.8

N/A

CVE-2017-2636

Summary

Security Advisory ID : BSA-2017-285

Component : Linux Kernel

Revision : 1.0: Interim

A race condition flaw was found in the N_HLDC Linux kernel driver when accessing n_hdlc.tbuf list that can lead to double free. A local, unprivileged user able to set the HDLC line discipline on the tty device could use this flaw to increase their privileges on the system.

Affected Products

Brocade is investigating its product lines to determine which products may be affected by this vulnerability and the impact on each affected product.

Products Confirmed Not Vulnerable

Brocade 5400 vRouter, Brocade 5600 vRouter, Brocade FastIron OS, Brocade NetIron OS, Brocade ServerIronADX, Brocade SLX-OS, Brocade Virtual Traffic Manager, and Brocade Virtual Web Application Firewall are confirmed not affected by this vulnerability.

Workaround

There are no workarounds that address this vulnerability.

Revision History

Version Change Date
1.0 Initial Publication May 17, 2017