CVE-2017-1000364

7.4 HIGH
Published: June 19, 2017 Modified: May 13, 2026
View on NVD

Description

An issue was discovered in the size of the stack guard page on Linux, specifically a 4k stack guard page is not sufficiently large and can be "jumped" over (the stack guard page is bypassed), this affects Linux Kernel versions 4.11.5 and earlier (the stackguard page was introduced in 2010).

AI Explanation

Get an AI-powered plain-language explanation of this vulnerability and remediation steps.

Login to generate AI explanation

CVSS v3.x Details

0.0 Low Medium High Critical 10.0
Vector String
CVSS:3.0/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

References to Advisories, Solutions, and Tools

Patch Vendor Advisory Exploit Third Party Advisory
http://www.securityfocus.com/bid/99130
Source: cve@mitre.org
Issue Tracking VDB Entry
https://access.redhat.com/security/cve/CVE-2017-1000364
Source: cve@mitre.org
Third Party Advisory VDB Entry
https://www.qualys.com/2017/06/19/stack-clash/stack-clash.txt
Source: cve@mitre.org
Third Party Advisory
https://www.suse.com/security/cve/CVE-2017-1000364/
Source: cve@mitre.org
Third Party Advisory
https://www.suse.com/support/kb/doc/?id=7020973
Source: cve@mitre.org
Third Party Advisory
http://www.debian.org/security/2017/dsa-3886
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/bid/99130
Source: af854a3a-2127-422b-91ae-364da2661108
Issue Tracking VDB Entry
http://www.securitytracker.com/id/1038724
Source: af854a3a-2127-422b-91ae-364da2661108
https://access.redhat.com/errata/RHSA-2017:1482
Source: af854a3a-2127-422b-91ae-364da2661108
https://access.redhat.com/errata/RHSA-2017:1483
Source: af854a3a-2127-422b-91ae-364da2661108
https://access.redhat.com/errata/RHSA-2017:1484
Source: af854a3a-2127-422b-91ae-364da2661108
https://access.redhat.com/errata/RHSA-2017:1485
Source: af854a3a-2127-422b-91ae-364da2661108
https://access.redhat.com/errata/RHSA-2017:1486
Source: af854a3a-2127-422b-91ae-364da2661108
https://access.redhat.com/errata/RHSA-2017:1487
Source: af854a3a-2127-422b-91ae-364da2661108
https://access.redhat.com/errata/RHSA-2017:1488
Source: af854a3a-2127-422b-91ae-364da2661108
https://access.redhat.com/errata/RHSA-2017:1489
Source: af854a3a-2127-422b-91ae-364da2661108
https://access.redhat.com/errata/RHSA-2017:1490
Source: af854a3a-2127-422b-91ae-364da2661108
https://access.redhat.com/errata/RHSA-2017:1491
Source: af854a3a-2127-422b-91ae-364da2661108
https://access.redhat.com/errata/RHSA-2017:1567
Source: af854a3a-2127-422b-91ae-364da2661108
https://access.redhat.com/errata/RHSA-2017:1616
Source: af854a3a-2127-422b-91ae-364da2661108
https://access.redhat.com/errata/RHSA-2017:1647
Source: af854a3a-2127-422b-91ae-364da2661108
https://access.redhat.com/errata/RHSA-2017:1712
Source: af854a3a-2127-422b-91ae-364da2661108
https://access.redhat.com/security/cve/CVE-2017-1000364
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory VDB Entry
https://kc.mcafee.com/corporate/index?page=content&id=SB10205
Source: af854a3a-2127-422b-91ae-364da2661108
https://kc.mcafee.com/corporate/index?page=content&id=SB10207
Source: af854a3a-2127-422b-91ae-364da2661108
https://www.exploit-db.com/exploits/45625/
Source: af854a3a-2127-422b-91ae-364da2661108
https://www.qualys.com/2017/06/19/stack-clash/stack-clash.txt
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
https://www.suse.com/security/cve/CVE-2017-1000364/
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
https://www.suse.com/support/kb/doc/?id=7020973
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory

50 reference(s) from NVD

Quick Stats

CVSS v3 Score
7.4 / 10.0
EPSS (Exploit Probability)
5.2%
91th percentile
Exploitation Status
Not in CISA KEV

Weaknesses (CWE)

Affected Vendors

linux