CVE-2017-9984: Linux Kernel

High severity, CVSS 7.8. EPSS: 0.4% chance of exploitation in the next 30 days.

The snd_msnd_interrupt function in sound/isa/msnd/msnd_pinnacle.c in the Linux kernel through 4.11.7 allows local users to cause a denial of service (over-boundary access) or possibly have unspecified other impact by changing the value of a message queue head pointer between two kernel reads of that value, aka a "double fetch" vulnerability.

Affected products

  • Linux Linux Kernel: before 3.18.71 (fixed in 3.18.71); from 3.19, before 4.1.45 (fixed in 4.1.45); from 4.2, before 4.4.88 (fixed in 4.4.88); from 4.5, before 4.9.50 (fixed in 4.9.50); from 4.10, before 4.12.13 (fixed in 4.12.13)

Published 2017-06-28. Last modified 2026-06-17.