CVE-2017-5897: kernel: ip6_gre: Invalid reads in ip6gre_err
Severity: Critical
CVSS Score: 9.8
The ip6gre_err function in net/ipv6/ip6_gre.c in the Linux kernel allows remote attackers to have unspecified impact via vectors involving GRE flags in an IPv6 packet, which trigger an out-of-bounds access.