CVE-2017-12146: Linux Kernel
High severity, CVSS 7.0. EPSS: 0.3% chance of exploitation in the next 30 days.
The driver_override implementation in drivers/base/platform.c in the Linux kernel before 4.12.1 allows local users to gain privileges by leveraging a race condition between a read operation and a store operation that involve different overrides.
Affected products
- Linux Linux Kernel: from 3.17, before 3.18.61 (fixed in 3.18.61); from 3.19, before 4.1.43 (fixed in 4.1.43); from 4.2, before 4.4.77 (fixed in 4.4.77); from 4.5, before 4.9.37 (fixed in 4.9.37); from 4.10, before 4.11.10 (fixed in 4.11.10); from 4.12, before 4.12.1 (fixed in 4.12.1)
Published 2017-09-08. Last modified 2026-06-17.