CVE-2016-5195
10.11.2016, 21:59
Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by leveraging incorrect handling of a copy-on-write (COW) feature to write to a read-only memory mapping, as exploited in the wild in October 2016, aka "Dirty COW."
| Vendor | Product | Version |
|---|---|---|
| canonical | ubuntu_linux | 12.04 |
| canonical | ubuntu_linux | 14.04 |
| canonical | ubuntu_linux | 16.04 |
| canonical | ubuntu_linux | 16.10 |
| linux | linux_kernel | 2.6.22 ≤ 𝑥 < 3.2.83 |
| linux | linux_kernel | 3.3 ≤ 𝑥 < 3.4.113 |
| linux | linux_kernel | 3.5 ≤ 𝑥 < 3.10.104 |
| linux | linux_kernel | 3.11 ≤ 𝑥 < 3.12.66 |
| linux | linux_kernel | 3.13 ≤ 𝑥 < 3.16.38 |
| linux | linux_kernel | 3.17 ≤ 𝑥 < 3.18.44 |
| linux | linux_kernel | 3.19 ≤ 𝑥 < 4.1.35 |
| linux | linux_kernel | 4.2 ≤ 𝑥 < 4.4.26 |
| linux | linux_kernel | 4.5 ≤ 𝑥 < 4.7.9 |
| linux | linux_kernel | 4.8 ≤ 𝑥 < 4.8.3 |
| redhat | enterprise_linux | 6.0 |
| redhat | enterprise_linux | 7.0 |
| redhat | enterprise_linux_aus | 6.2 |
| redhat | enterprise_linux_aus | 6.4 |
| redhat | enterprise_linux_aus | 6.5 |
| redhat | enterprise_linux_eus | 6.6 |
| redhat | enterprise_linux_eus | 6.7 |
| redhat | enterprise_linux_eus | 7.1 |
| redhat | enterprise_linux_long_life | 5.6 |
| redhat | enterprise_linux_long_life | 5.9 |
| redhat | enterprise_linux_tus | 6.5 |
| debian | debian_linux | 7.0 |
| debian | debian_linux | 8.0 |
| paloaltonetworks | pan-os | 5.1 ≤ 𝑥 < 7.0.14 |
| paloaltonetworks | pan-os | 7.1.0 ≤ 𝑥 < 7.1.8 |
| netapp | cloud_backup | - |
| netapp | hci_storage_nodes | - |
| netapp | oncommand_balance | - |
| netapp | oncommand_performance_manager | - |
| netapp | oncommand_unified_manager_for_clustered_data_ontap | - |
| netapp | ontap_select_deploy_administration_utility | - |
| netapp | snapprotect | - |
| netapp | solidfire | - |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|
| linux |
| ||||||||||
| linux-armadaxp |
| ||||||||||
| linux-aws |
| ||||||||||
| linux-flo |
| ||||||||||
| linux-gke |
| ||||||||||
| linux-goldfish |
| ||||||||||
| linux-grouper |
| ||||||||||
| linux-hwe |
| ||||||||||
| linux-hwe-edge |
| ||||||||||
| linux-linaro-omap |
| ||||||||||
| linux-linaro-shared |
| ||||||||||
| linux-linaro-vexpress |
| ||||||||||
| linux-lts-quantal |
| ||||||||||
| linux-lts-raring |
| ||||||||||
| linux-lts-saucy |
| ||||||||||
| linux-lts-trusty |
| ||||||||||
| linux-lts-utopic |
| ||||||||||
| linux-lts-vivid |
| ||||||||||
| linux-lts-wily |
| ||||||||||
| linux-lts-xenial |
| ||||||||||
| linux-maguro |
| ||||||||||
| linux-mako |
| ||||||||||
| linux-manta |
| ||||||||||
| linux-qcm-msm |
| ||||||||||
| linux-raspi2 |
| ||||||||||
| linux-snapdragon |
| ||||||||||
| linux-ti-omap4 |
|