SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2014-1737

The raw_cmd_copyin function in drivers/block/floppy.c in the Linux kernel through 3.14.3 does not properly handle error conditions during processing of an FDRAWCMD ioctl call, which allows local users to trigger kfree operations and gain privileges by…

HIGH 7.2EPSS 0.45%

Does this matter?

High impact if exploited, but EPSS currently rates exploitation as unlikely (0.45%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.

Description

The raw_cmd_copyin function in drivers/block/floppy.c in the Linux kernel through 3.14.3 does not properly handle error conditions during processing of an FDRAWCMD ioctl call, which allows local users to trigger kfree operations and gain privileges by leveraging write access to a /dev/fd device.

CVSS 2.0
7.2 HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
EPSS
0.45% probability · 38th percentile
CISA KEV
Not listed
Weakness
CWE-754
Affected
linux/linux kernel · oracle/linux · debian/debian linux · suse/linux enterprise desktop · suse/linux enterprise high availability extension · suse/linux enterprise real time extension · suse/linux enterprise server · redhat/enterprise linux eus
Source
chrome-cve-admin@google.com

References

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.