CVE-2016-6516
- EPSS 0.52%
- Published 06.08.2016 20:59:15
- Last modified 12.04.2025 10:46:40
Race condition in the ioctl_file_dedupe_range function in fs/ioctl.c in the Linux kernel through 4.7 allows local users to cause a denial of service (heap-based buffer overflow) or possibly gain privileges by changing a certain count value, aka a "do...
CVE-2016-6480
- EPSS 0.07%
- Published 06.08.2016 20:59:14
- Last modified 12.04.2025 10:46:40
Race condition in the ioctl_send_fib function in drivers/scsi/aacraid/commctrl.c in the Linux kernel through 4.7 allows local users to cause a denial of service (out-of-bounds access or system crash) by changing a certain size value, aka a "double fe...
CVE-2016-6198
- EPSS 0.04%
- Published 06.08.2016 20:59:13
- Last modified 12.04.2025 10:46:40
The filesystem layer in the Linux kernel before 4.5.5 proceeds with post-rename operations after an OverlayFS file is renamed to a self-hardlink, which allows local users to cause a denial of service (system crash) via a rename system call, related t...
CVE-2016-6197
- EPSS 0.04%
- Published 06.08.2016 20:59:12
- Last modified 12.04.2025 10:46:40
fs/overlayfs/dir.c in the OverlayFS filesystem implementation in the Linux kernel before 4.6 does not properly verify the upper dentry before proceeding with unlink and rename system-call processing, which allows local users to cause a denial of serv...
CVE-2016-6187
- EPSS 4.58%
- Published 06.08.2016 20:59:10
- Last modified 12.04.2025 10:46:40
The apparmor_setprocattr function in security/apparmor/lsm.c in the Linux kernel before 4.6.5 does not validate the buffer size, which allows local users to gain privileges by triggering an AppArmor setprocattr hook.
CVE-2016-6162
- EPSS 0.04%
- Published 06.08.2016 20:59:09
- Last modified 12.04.2025 10:46:40
net/core/skbuff.c in the Linux kernel 4.7-rc6 allows local users to cause a denial of service (panic) or possibly have unspecified other impact via certain IPv6 socket operations.
CVE-2016-6156
- EPSS 0.04%
- Published 06.08.2016 20:59:08
- Last modified 12.04.2025 10:46:40
Race condition in the ec_device_ioctl_xcmd function in drivers/platform/chrome/cros_ec_dev.c in the Linux kernel before 4.7 allows local users to cause a denial of service (out-of-bounds array access) by changing a certain size value, aka a "double f...
CVE-2016-6136
- EPSS 0.02%
- Published 06.08.2016 20:59:06
- Last modified 12.04.2025 10:46:40
Race condition in the audit_log_single_execve_arg function in kernel/auditsc.c in the Linux kernel through 4.7 allows local users to bypass intended character-set restrictions or disrupt system-call auditing by changing a certain string, aka a "doubl...
CVE-2016-5696
- EPSS 34.41%
- Published 06.08.2016 20:59:05
- Last modified 12.04.2025 10:46:40
net/ipv4/tcp_input.c in the Linux kernel before 4.7 does not properly determine the rate of challenge ACK segments, which makes it easier for remote attackers to hijack TCP sessions via a blind in-window attack.
CVE-2016-5412
- EPSS 0.08%
- Published 06.08.2016 20:59:04
- Last modified 12.04.2025 10:46:40
arch/powerpc/kvm/book3s_hv_rmhandlers.S in the Linux kernel through 4.7 on PowerPC platforms, when CONFIG_KVM_BOOK3S_64_HV is enabled, allows guest OS users to cause a denial of service (host OS infinite loop) by making a H_CEDE hypercall during the ...