CVE Database
/

CVE-2016-7042

Back to search

CVE-2016-7042

Published: Oct 16, 2016

Modified: Aug 6, 2024

PUBLISHED

Description

The proc_keys_show function in security/keys/proc.c in the Linux kernel through 4.8.2, when the GNU Compiler Collection (gcc) stack protector is enabled, uses an incorrect buffer size for certain timeout data, which allows local users to cause a denial of service (stack memory corruption and panic) by reading the /proc/keys file.

VendorProductVersions

n/a

n/a

affected
n/a

References

RHSA-2017:2669
vendor-advisory
x_refsource_REDHAT
RHSA-2017:0817
vendor-advisory
x_refsource_REDHAT
RHSA-2017:2077
vendor-advisory
x_refsource_REDHAT
RHSA-2017:1842
vendor-advisory
x_refsource_REDHAT
93544
vdb-entry
x_refsource_BID

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now