Lucene search

K
ubuntucveUbuntu.comUB:CVE-2016-8655
HistoryDec 05, 2016 - 12:00 a.m.

CVE-2016-8655

2016-12-0500:00:00
ubuntu.com
ubuntu.com
27

7.2 High

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

7.8 High

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

0.0004 Low

EPSS

Percentile

9.5%

Race condition in net/packet/af_packet.c in the Linux kernel through 4.8.12
allows local users to gain privileges or cause a denial of service
(use-after-free) by leveraging the CAP_NET_RAW capability to change a
socket version, related to the packet_set_ring and packet_setsockopt
functions.

Bugs

Notes

Author Note
jdstrand android kernels (flo, goldfish, grouper, maguro, mako and manta) are not supported on the Ubuntu Touch 14.10 and earlier preview kernels linux-lts-saucy no longer receives official support linux-lts-quantal no longer receives official support
OSVersionArchitecturePackageVersionFilename
ubuntu12.04noarchlinux<ย 3.2.0-118.161UNKNOWN
ubuntu14.04noarchlinux<ย 3.13.0-105.152UNKNOWN
ubuntu16.04noarchlinux<ย 4.4.0-53.74UNKNOWN
ubuntu16.10noarchlinux<ย 4.8.0-30.32UNKNOWN
ubuntu12.04noarchlinux-armadaxp<ย 3.2.0-1680.107UNKNOWN
ubuntu12.04noarchlinux-lts-trusty<ย 3.13.0-105.152~precise1UNKNOWN
ubuntu14.04noarchlinux-lts-vivid<ย 3.19.0-77.85~14.04.1UNKNOWN
ubuntu14.04noarchlinux-lts-xenial<ย 4.4.0-53.74~14.04.1UNKNOWN
ubuntu16.04noarchlinux-raspi2<ย 4.4.0-1034.41UNKNOWN
ubuntu16.10noarchlinux-raspi2<ย 4.8.0-1020.23UNKNOWN
Rows per page:
1-10 of 131

7.2 High

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

7.8 High

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

0.0004 Low

EPSS

Percentile

9.5%