Tracker / CVE-2016-7117
CVE-2016-7117
Critical 9.8
Use-after-free vulnerability in the __sys_recvmmsg function in net/socket.c in the Linux kernel before 4.5.2 allows remote attackers to execute arbitrary code via vectors involving a recvmmsg system call that is mishandled during error processing.
Affected products and versions
| canonical | ubuntu_linux |
|---|---|
| debian | debian_linux |
| linux | linux_kernel · 2.6.33 → 3.2.80 |
| linux | linux_kernel · 3.11 → 3.12.59 |
| linux | linux_kernel · 3.13 → 3.14.67 |
| linux | linux_kernel · 3.15 → 3.16.35 |
| linux | linux_kernel · 3.17 → 3.18.37 |
| linux | linux_kernel · 3.19 → 4.1.28 |
| linux | linux_kernel · 3.3 → 3.4.113 |
| linux | linux_kernel · 3.5 → 3.10.102 |
| linux | linux_kernel · 4.2.0 → 4.4.8 |
| linux | linux_kernel · 4.5.0 → 4.5.2 |
Analysis
This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.