CVE-2016-8645

MEDIUM
New! CVE Severity Now Using CVSS v3

The calculated severity for CVEs has been updated to use CVSS v3 by default. CVEs that do not have a CVSS v3 score will fall back CVSS v2 for calculating severity. Severity display preferences can be toggled in the settings dropdown.

Description

The TCP stack in the Linux kernel before 4.8.10 mishandles skb truncation, which allows local users to cause a denial of service (system crash) via a crafted application that makes sendto system calls, related to net/ipv4/tcp_ipv4.c and net/ipv6/tcp_ipv6.c.

References

http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=ac6e780070e30e4c35bd395acfe9191e6268bdd3

http://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.8.10

http://www.openwall.com/lists/oss-security/2016/11/11/3

http://www.openwall.com/lists/oss-security/2016/11/30/3

http://www.securityfocus.com/bid/94264

http://www.securitytracker.com/id/1037285

https://access.redhat.com/errata/RHSA-2017:1842

https://access.redhat.com/errata/RHSA-2017:2077

https://access.redhat.com/errata/RHSA-2017:2669

https://bugzilla.redhat.com/show_bug.cgi?id=1393904

https://github.com/torvalds/linux/commit/ac6e780070e30e4c35bd395acfe9191e6268bdd3

Details

Source: MITRE

Published: 2016-11-28

Updated: 2018-01-05

Type: CWE-284

Risk Information

CVSS v2

Base Score: 4.9

Vector: AV:L/AC:L/Au:N/C:N/I:N/A:C

Impact Score: 6.9

Exploitability Score: 3.9

Severity: MEDIUM

CVSS v3

Base Score: 5.5

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Impact Score: 3.6

Exploitability Score: 1.8

Severity: MEDIUM

Vulnerable Software

Configuration 1

OR

cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* versions up to 4.8.9 (inclusive)

Tenable Plugins

View all (35 total)

IDNameProductFamilySeverity
124819EulerOS Virtualization 3.0.1.0 : kernel (EulerOS-SA-2019-1496)NessusHuawei Local Security Checks
critical
124814EulerOS Virtualization for ARM 64 3.0.1.0 : kernel (EulerOS-SA-2019-1490)NessusHuawei Local Security Checks
medium
103046RHEL 6 : MRG (RHSA-2017:2669)NessusRed Hat Local Security Checks
high
102734CentOS 7 : kernel (CESA-2017:1842) (Stack Clash)NessusCentOS Local Security Checks
high
102645Scientific Linux Security Update : kernel on SL7.x x86_64 (20170801)NessusScientific Linux Local Security Checks
high
102511Oracle Linux 7 : kernel (ELSA-2017-1842-1) (Stack Clash)NessusOracle Linux Local Security Checks
critical
102281Oracle Linux 7 : kernel (ELSA-2017-1842) (Stack Clash)NessusOracle Linux Local Security Checks
high
102151RHEL 7 : kernel-rt (RHSA-2017:2077)NessusRed Hat Local Security Checks
high
102143RHEL 7 : kernel (RHSA-2017:1842) (Stack Clash)NessusRed Hat Local Security Checks
high
100251Ubuntu 14.04 LTS : linux vulnerability (USN-3290-1)NessusUbuntu Local Security Checks
medium
100238OracleVM 3.2 : Unbreakable / etc (OVMSA-2017-0106)NessusOracleVM Local Security Checks
critical
100235Oracle Linux 6 : Unbreakable Enterprise kernel (ELSA-2017-3567)NessusOracle Linux Local Security Checks
critical
99164OracleVM 3.2 : Unbreakable / etc (OVMSA-2017-0058)NessusOracleVM Local Security Checks
high
99163OracleVM 3.3 : Unbreakable / etc (OVMSA-2017-0057) (Dirty COW)NessusOracleVM Local Security Checks
critical
99162OracleVM 3.4 : Unbreakable / etc (OVMSA-2017-0056)NessusOracleVM Local Security Checks
critical
99161Oracle Linux 6 : Unbreakable Enterprise kernel (ELSA-2017-3535)NessusOracle Linux Local Security Checks
high
99160Oracle Linux 6 / 7 : Unbreakable Enterprise kernel (ELSA-2017-3534)NessusOracle Linux Local Security Checks
high
99159Oracle Linux 6 / 7 : Unbreakable Enterprise kernel (ELSA-2017-3533)NessusOracle Linux Local Security Checks
critical
97979Virtuozzo 7 : readykernel-patch (VZA-2017-007)NessusVirtuozzo Local Security Checks
high
97274openSUSE Security Update : the Linux Kernel (openSUSE-2017-245)NessusSuSE Local Security Checks
critical
97205SUSE SLES12 Security Update : kernel (SUSE-SU-2017:0471-1)NessusSuSE Local Security Checks
high
97189SUSE SLED12 / SLES12 Security Update : kernel (SUSE-SU-2017:0464-1)NessusSuSE Local Security Checks
high
97138openSUSE Security Update : the Linux Kernel (openSUSE-2017-246)NessusSuSE Local Security Checks
critical
96603SUSE SLED12 / SLES12 Security Update : kernel (SUSE-SU-2017:0181-1)NessusSuSE Local Security Checks
high
96188Debian DLA-772-1 : linux security updateNessusDebian Local Security Checks
critical
96000Ubuntu 16.10 : linux-raspi2 vulnerabilities (USN-3162-2)NessusUbuntu Local Security Checks
critical
95999Ubuntu 16.10 : linux vulnerabilities (USN-3162-1)NessusUbuntu Local Security Checks
critical
95998Ubuntu 16.04 LTS : linux-snapdragon vulnerabilities (USN-3161-4)NessusUbuntu Local Security Checks
critical
95997Ubuntu 16.04 LTS : linux-raspi2 vulnerabilities (USN-3161-3)NessusUbuntu Local Security Checks
critical
95996Ubuntu 14.04 LTS : linux-lts-xenial vulnerabilities (USN-3161-2)NessusUbuntu Local Security Checks
critical
95995Ubuntu 16.04 LTS : linux vulnerabilities (USN-3161-1)NessusUbuntu Local Security Checks
critical
95609Amazon Linux AMI : kernel (ALAS-2016-772)NessusAmazon Linux Local Security Checks
high
95308Fedora 23 : kernel (2016-ee3a114958)NessusFedora Local Security Checks
high
95037Fedora 24 : kernel (2016-3548475bca)NessusFedora Local Security Checks
medium
94993Fedora 25 : kernel (2016-29cde72f15)NessusFedora Local Security Checks
medium