{"id":"UBUNTU-CVE-2017-15126","details":"A use-after-free flaw was found in fs/userfaultfd.c in the Linux kernel before 4.13.6. The issue is related to the handling of fork failure when dealing with event messages. Failure to fork correctly can lead to a situation where a fork event will be removed from an already freed list of events with userfaultfd_ctx_put().","modified":"2025-09-08T16:44:27Z","published":"2018-01-14T06:29:00Z","upstream":["CVE-2017-15126"],"references":[{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2017-15126"},{"type":"REPORT","url":"https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=384632e67e0829deb8015ee6ad916b180049d252"},{"type":"REPORT","url":"https://www.cve.org/CVERecord?id=CVE-2017-15126"}],"affected":[{"package":{"name":"linux-azure","ecosystem":"Ubuntu:16.04:LTS","purl":"pkg:deb/ubuntu/linux-azure@4.13.0-1005.7?arch=source&distro=xenial"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.13.0-1005.7"}]}],"versions":["4.11.0-1009.9","4.11.0-1011.11","4.11.0-1013.13","4.11.0-1014.14","4.11.0-1015.15","4.11.0-1016.16"],"ecosystem_specific":{"availability":"No subscription required","binaries":[{"binary_version":"4.13.0-1005.7","binary_name":"linux-azure-cloud-tools-4.13.0-1005"},{"binary_version":"4.13.0-1005.7","binary_name":"linux-azure-headers-4.13.0-1005"},{"binary_version":"4.13.0-1005.7","binary_name":"linux-azure-tools-4.13.0-1005"},{"binary_version":"4.13.0-1005.7","binary_name":"linux-cloud-tools-4.13.0-1005-azure"},{"binary_version":"4.13.0-1005.7","binary_name":"linux-headers-4.13.0-1005-azure"},{"binary_version":"4.13.0-1005.7","binary_name":"linux-image-4.13.0-1005-azure"},{"binary_version":"4.13.0-1005.7","binary_name":"linux-image-extra-4.13.0-1005-azure"},{"binary_version":"4.13.0-1005.7","binary_name":"linux-tools-4.13.0-1005-azure"}]},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2017/UBUNTU-CVE-2017-15126.json"}}],"schema_version":"1.7.3","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H"},{"type":"CVSS_V3","score":"CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H"},{"type":"Ubuntu","score":"medium"}]}