6.2

CVE-2015-8785

The fuse_fill_write_pages function in fs/fuse/file.c in the Linux kernel before 4.4 allows local users to cause a denial of service (infinite loop) via a writev system call that triggers a zero length for the first segment of an iov.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Linux ≫ Linux Kernel Version < 4.4
Linux ≫ Linux Kernel Version 4.4 Update rc1
Linux ≫ Linux Kernel Version 4.4 Update rc2
Linux ≫ Linux Kernel Version 4.4 Update rc3
Linux ≫ Linux Kernel Version 4.4 Update rc4
Suse ≫ Linux Enterprise Real Time Extension Version 12 Update sp1
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.57% 0.426
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 6.2 2.5 3.6
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
NIST 4.9 3.9 6.9
AV:L/AC:L/Au:N/C:N/I:N/A:C
CWE-835 Loop with Unreachable Exit Condition ('Infinite Loop')

The product contains an iteration or loop with an exit condition that cannot be reached, i.e., an infinite loop.

http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00038.html
Third Party Advisory
http://www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.html
Third Party Advisory
http://lists.opensuse.org/opensuse-security-announce/2016-04/msg00015.html
Third Party Advisory
http://www.ubuntu.com/usn/USN-2886-1
Third Party Advisory
http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00094.html
Third Party Advisory
http://lists.opensuse.org/opensuse-security-announce/2016-04/msg00045.html
Third Party Advisory
http://www.oracle.com/technetwork/topics/security/ovmbulletinoct2016-3090547.html
Third Party Advisory
http://www.debian.org/security/2016/dsa-3503
Third Party Advisory
http://lists.opensuse.org/opensuse-security-announce/2016-07/msg00005.html
Third Party Advisory
http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=3ca8138f014a913f98e6ef40e939868e1e9ea876
Patch
Vendor Advisory
Issue Tracking
http://www.openwall.com/lists/oss-security/2016/01/24/1
Third Party Advisory
Mailing List
http://www.securityfocus.com/bid/81688
Third Party Advisory
VDB Entry
https://bugzilla.redhat.com/show_bug.cgi?id=1290642
Issue Tracking
https://github.com/torvalds/linux/commit/3ca8138f014a913f98e6ef40e939868e1e9ea876
Patch
Vendor Advisory
Issue Tracking