do not inherit ipv6_mc_list from parent in kernel-net-ipv6 CVE-2017-9077

asked 2017-07-06

updated 2017-07-06

The tcp_v6_syn_recv_sock function in net/ipv6/tcp_ipv6.c in the Linux kernel through 4.11.1 mishandles inheritance, which allows local users to cause a denial of service or possibly have unspecified other impact via crafted system calls, a related issue to CVE-2017-8890. CVSS v3 Base Score: 7.8 High local

related to CVE-2017-8890

Patch available upstream.

Files affected: kernel-adaptation-sbj- lines 499-503; 575-580
kernel-adaptation-sbj- lines 1277-1282; 1344-1349

