Vulnerability   
Search   
    Search 211766 CVE descriptions
and 97459 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2016-9576
Description:The blk_rq_map_user_iov function in block/blk-map.c in the Linux kernel before 4.8.14 does not properly restrict the type of iterator, which allows local users to read or write to arbitrary kernel memory locations or cause a denial of service (use-after-free) by leveraging access to a /dev/sg device.
Test IDs: 1.3.6.1.4.1.25623.1.0.851452   1.3.6.1.4.1.25623.1.0.851489   1.3.6.1.4.1.25623.1.0.851512   1.3.6.1.4.1.25623.1.1.2.2019.1491   1.3.6.1.4.1.25623.1.1.2.2019.1534   1.3.6.1.4.1.25623.1.1.4.2017.0333.1   1.3.6.1.4.1.25623.1.1.4.2017.0494.1   1.3.6.1.4.1.25623.1.1.4.2017.0437.1  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2016-9576
BugTraq ID: 94821
http://www.securityfocus.com/bid/94821
http://www.openwall.com/lists/oss-security/2016/12/08/19
RedHat Security Advisories: RHSA-2017:0817
http://rhn.redhat.com/errata/RHSA-2017-0817.html
RedHat Security Advisories: RHSA-2017:1842
https://access.redhat.com/errata/RHSA-2017:1842
RedHat Security Advisories: RHSA-2017:2077
https://access.redhat.com/errata/RHSA-2017:2077
RedHat Security Advisories: RHSA-2017:2669
https://access.redhat.com/errata/RHSA-2017:2669
SuSE Security Announcement: SUSE-SU-2016:3146 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2016-12/msg00062.html
SuSE Security Announcement: SUSE-SU-2016:3188 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2016-12/msg00072.html
SuSE Security Announcement: SUSE-SU-2016:3203 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2016-12/msg00075.html
SuSE Security Announcement: SUSE-SU-2016:3217 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2016-12/msg00081.html
SuSE Security Announcement: SUSE-SU-2016:3248 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2016-12/msg00088.html
SuSE Security Announcement: SUSE-SU-2016:3252 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2016-12/msg00091.html
SuSE Security Announcement: openSUSE-SU-2016:3085 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2016-12/msg00040.html
SuSE Security Announcement: openSUSE-SU-2016:3086 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2016-12/msg00041.html
SuSE Security Announcement: openSUSE-SU-2016:3118 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2016-12/msg00057.html




© 1998-2021 E-Soft Inc. All rights reserved.