Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-7916

Опубликовано: 16 нояб. 2016
Источник: debian
EPSS Низкий

Описание

Race condition in the environ_read function in fs/proc/base.c in the Linux kernel before 4.5.4 allows local users to obtain sensitive information from kernel memory by reading a /proc/*/environ file during a process-setup time interval in which environment-variable copying is incomplete.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
linuxfixed4.5.4-1package
linuxfixed3.16.36-1jessiepackage
linuxfixed3.2.81-1wheezypackage

Примечания

  • Fixed by: https://git.kernel.org/linus/8148a73c9901a8794a50f950083c00ccf97d43b3 (v4.6-rc7)

EPSS

Процентиль: 17%
0.00053
Низкий

Связанные уязвимости

CVSS3: 5.5
ubuntu
около 9 лет назад

Race condition in the environ_read function in fs/proc/base.c in the Linux kernel before 4.5.4 allows local users to obtain sensitive information from kernel memory by reading a /proc/*/environ file during a process-setup time interval in which environment-variable copying is incomplete.

CVSS3: 2.3
redhat
около 10 лет назад

Race condition in the environ_read function in fs/proc/base.c in the Linux kernel before 4.5.4 allows local users to obtain sensitive information from kernel memory by reading a /proc/*/environ file during a process-setup time interval in which environment-variable copying is incomplete.

CVSS3: 5.5
nvd
около 9 лет назад

Race condition in the environ_read function in fs/proc/base.c in the Linux kernel before 4.5.4 allows local users to obtain sensitive information from kernel memory by reading a /proc/*/environ file during a process-setup time interval in which environment-variable copying is incomplete.

CVSS3: 5.5
github
больше 3 лет назад

Race condition in the environ_read function in fs/proc/base.c in the Linux kernel before 4.5.4 allows local users to obtain sensitive information from kernel memory by reading a /proc/*/environ file during a process-setup time interval in which environment-variable copying is incomplete.

suse-cvrf
почти 9 лет назад

Security update for the Linux Kernel

EPSS

Процентиль: 17%
0.00053
Низкий