Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2016-7916

Опубликовано: 16 нояб. 2016
Источник: nvd
CVSS3: 5.5
CVSS2: 4.7
EPSS Низкий

Описание

Race condition in the environ_read function in fs/proc/base.c in the Linux kernel before 4.5.4 allows local users to obtain sensitive information from kernel memory by reading a /proc/*/environ file during a process-setup time interval in which environment-variable copying is incomplete.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Версия до 4.5.3 (включая)

EPSS

Процентиль: 17%
0.00053
Низкий

5.5 Medium

CVSS3

4.7 Medium

CVSS2

Дефекты

CWE-362

Связанные уязвимости

CVSS3: 5.5
ubuntu
около 9 лет назад

Race condition in the environ_read function in fs/proc/base.c in the Linux kernel before 4.5.4 allows local users to obtain sensitive information from kernel memory by reading a /proc/*/environ file during a process-setup time interval in which environment-variable copying is incomplete.

CVSS3: 2.3
redhat
около 10 лет назад

Race condition in the environ_read function in fs/proc/base.c in the Linux kernel before 4.5.4 allows local users to obtain sensitive information from kernel memory by reading a /proc/*/environ file during a process-setup time interval in which environment-variable copying is incomplete.

CVSS3: 5.5
debian
около 9 лет назад

Race condition in the environ_read function in fs/proc/base.c in the L ...

CVSS3: 5.5
github
больше 3 лет назад

Race condition in the environ_read function in fs/proc/base.c in the Linux kernel before 4.5.4 allows local users to obtain sensitive information from kernel memory by reading a /proc/*/environ file during a process-setup time interval in which environment-variable copying is incomplete.

suse-cvrf
почти 9 лет назад

Security update for the Linux Kernel

EPSS

Процентиль: 17%
0.00053
Низкий

5.5 Medium

CVSS3

4.7 Medium

CVSS2

Дефекты

CWE-362