imPC@ndo IT

Tracker / CVE-2016-5195

CVE-2016-5195

Exploited High 7.0

Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by leveraging incorrect handling of a copy-on-write (COW) feature to write to a read-only memory mapping, as exploited in the wild in October 2016, aka "Dirty COW."

Affected products and versions

canonical ubuntu_linux
debian debian_linux
fedoraproject fedora
linux linux_kernel · 2.6.22 → 3.2.83
linux linux_kernel · 3.11 → 3.12.66
linux linux_kernel · 3.13 → 3.16.38
linux linux_kernel · 3.17 → 3.18.44
linux linux_kernel · 3.19 → 4.1.35
linux linux_kernel · 3.3 → 3.4.113
linux linux_kernel · 3.5 → 3.10.104
linux linux_kernel · 4.2 → 4.4.26
linux linux_kernel · 4.5 → 4.7.9
linux linux_kernel · 4.8 → 4.8.3
netapp cloud_backup
netapp hci_storage_nodes
netapp oncommand_balance
netapp oncommand_performance_manager
netapp oncommand_unified_manager_for_clustered_data_ontap
netapp ontap_select_deploy_administration_utility
netapp snapprotect
netapp solidfire
paloaltonetworks pan-os · 5.1 → 7.0.14
paloaltonetworks pan-os · 7.1.0 → 7.1.8
redhat enterprise_linux
redhat enterprise_linux_aus
redhat enterprise_linux_eus
redhat enterprise_linux_long_life
redhat enterprise_linux_tus

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References