Lucene search

K
redhatcveRedhat.comRH:CVE-2016-9576
HistoryDec 09, 2016 - 8:47 a.m.

CVE-2016-9576

2016-12-0908:47:27
redhat.com
access.redhat.com
28

0.0004 Low

EPSS

Percentile

10.1%

It was found that the blk_rq_map_user_iov() function in the Linux kernel’s block device implementation did not properly restrict the type of iterator, which could allow a local attacker to read or write to arbitrary kernel memory locations or cause a denial of service (use-after-free) by leveraging write access to a /dev/sg device.