Use-after-free vulnerability in mm/percpu.c in the Linux kernel through 4.6 allows local users to cause a denial of service (BUG) or possibly have unspecified other impact via crafted use of the mmap and bpf system calls.
CPE | Name | Operator | Version |
---|---|---|---|
ubuntu_linux | eq | 16.04 | |
ubuntu_linux | eq | 14.04 | |
linux_kernel | ge | 3.19 | |
linux_kernel | lt | 4.1.28 | |
linux_kernel | ge | 3.18 | |
linux_kernel | lt | 3.18.37 | |
linux_kernel | ge | 4.2 | |
linux_kernel | lt | 4.4.16 | |
linux_kernel | ge | 4.5 | |
linux_kernel | lt | 4.6.5 |
rhn.redhat.com/errata/RHSA-2016-2574.html
rhn.redhat.com/errata/RHSA-2016-2584.html
www.openwall.com/lists/oss-security/2016/05/12/6
www.securityfocus.com/bid/90625
www.ubuntu.com/usn/USN-3053-1
www.ubuntu.com/usn/USN-3054-1
www.ubuntu.com/usn/USN-3055-1
www.ubuntu.com/usn/USN-3056-1
www.ubuntu.com/usn/USN-3057-1
bugzilla.redhat.com/show_bug.cgi?id=1335889
lkml.org/lkml/2016/4/17/125
source.android.com/security/bulletin/2016-12-01.html