7.8

CVE-2016-4997

Exploit
The compat IPT_SO_SET_REPLACE and IP6T_SO_SET_REPLACE setsockopt implementations in the netfilter subsystem in the Linux kernel before 4.6.3 allow local users to gain privileges or cause a denial of service (memory corruption) by leveraging in-container root access to provide a crafted offset value that triggers an unintended decrement.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Linux ≫ Linux Kernel Version >= 2.6.17 < 3.2.80
Linux ≫ Linux Kernel Version >= 3.3 < 3.10.103
Linux ≫ Linux Kernel Version >= 3.11 < 3.12.62
Linux ≫ Linux Kernel Version >= 3.13 < 3.14.73
Linux ≫ Linux Kernel Version >= 3.15 < 3.16.37
Linux ≫ Linux Kernel Version >= 3.17 < 3.18.37
Linux ≫ Linux Kernel Version >= 3.19 < 4.1.28
Linux ≫ Linux Kernel Version >= 4.2 < 4.4.14
Linux ≫ Linux Kernel Version >= 4.5 < 4.6.3
Canonical ≫ Ubuntu Linux Version 12.04 SwEdition lts
Canonical ≫ Ubuntu Linux Version 14.04 SwEdition lts
Canonical ≫ Ubuntu Linux Version 15.10
Canonical ≫ Ubuntu Linux Version 16.04 SwEdition lts
Novell ≫ Suse Linux Enterprise Desktop Version 12.0 Update sp1
Novell ≫ Suse Linux Enterprise Server Version 12.0 Update sp1
Oracle ≫ Linux Version 7
Debian ≫ Debian Linux Version 8.0
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 5.68% 0.92
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
NIST 7.2 3.9 10
AV:L/AC:L/Au:N/C:C/I:C/A:C
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.html
Third Party Advisory
http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2016-3090545.html
Third Party Advisory
http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00000.html
Third Party Advisory
http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00007.html
Third Party Advisory
Mailing List
http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00044.html
Third Party Advisory
Mailing List
http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00055.html
Third Party Advisory
Mailing List
http://www.oracle.com/technetwork/topics/security/ovmbulletinoct2016-3090547.html
Third Party Advisory
http://www.debian.org/security/2016/dsa-3607
Third Party Advisory
http://rhn.redhat.com/errata/RHSA-2016-1847.html
Third Party Advisory
http://rhn.redhat.com/errata/RHSA-2016-1875.html
Third Party Advisory
http://rhn.redhat.com/errata/RHSA-2016-1883.html
Third Party Advisory
https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05347541
Third Party Advisory
http://www.ubuntu.com/usn/USN-3016-1
Third Party Advisory
http://www.ubuntu.com/usn/USN-3016-2
Third Party Advisory
http://www.ubuntu.com/usn/USN-3016-3
Third Party Advisory
http://www.ubuntu.com/usn/USN-3016-4
Third Party Advisory
http://www.ubuntu.com/usn/USN-3017-1
Third Party Advisory
http://www.ubuntu.com/usn/USN-3017-2
Third Party Advisory
http://www.ubuntu.com/usn/USN-3017-3
Third Party Advisory
http://www.ubuntu.com/usn/USN-3018-1
Third Party Advisory
http://www.ubuntu.com/usn/USN-3018-2
Third Party Advisory
http://www.ubuntu.com/usn/USN-3019-1
Third Party Advisory
http://www.ubuntu.com/usn/USN-3020-1
Third Party Advisory
http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00027.html
Third Party Advisory
Mailing List
http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00048.html
Third Party Advisory
Mailing List
http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00050.html
Third Party Advisory
Mailing List
http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00051.html
Third Party Advisory
Mailing List
http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00052.html
Third Party Advisory
Mailing List
http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00053.html
Third Party Advisory
Mailing List
http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00054.html
Third Party Advisory
Mailing List
http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=ce683e5f9d045e5d67d1312a42b359cb2ab2a13c
Vendor Advisory
http://lists.opensuse.org/opensuse-security-announce/2016-06/msg00060.html
Third Party Advisory
http://lists.opensuse.org/opensuse-security-announce/2016-06/msg00061.html
Third Party Advisory
http://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.6.3
Vendor Advisory
http://www.openwall.com/lists/oss-security/2016/06/24/5
Third Party Advisory
Mailing List
http://www.openwall.com/lists/oss-security/2016/09/29/10
Third Party Advisory
Exploit
Mailing List
http://www.securityfocus.com/bid/91451
Third Party Advisory
VDB Entry
http://www.securitytracker.com/id/1036171
Third Party Advisory
VDB Entry
https://bugzilla.redhat.com/show_bug.cgi?id=1349722
Third Party Advisory
Issue Tracking
https://github.com/nccgroup/TriforceLinuxSyscallFuzzer/tree/master/crash_reports/report_compatIpt
Third Party Advisory
Exploit
https://github.com/torvalds/linux/commit/ce683e5f9d045e5d67d1312a42b359cb2ab2a13c
Patch
Third Party Advisory
https://www.exploit-db.com/exploits/40435/
Third Party Advisory
VDB Entry
https://www.exploit-db.com/exploits/40489/
Third Party Advisory
VDB Entry