CVE-2016-6187

The apparmor_setprocattr function in security/apparmor/lsm.c in the Linux kernel before 4.6.5 does not validate the buffer size, which allows local users to gain privileges by triggering an AppArmor setprocattr hook.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.8 HIGH
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 86%
VendorProductVersion
linuxlinux_kernel
4.5 ≤
𝑥
< 4.6.5
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
linux
bullseye
5.10.223-1
fixed
jessie
not-affected
wheezy
not-affected
bullseye (security)
5.10.226-1
fixed
bookworm
6.1.106-3
fixed
bookworm (security)
6.1.112-1
fixed
trixie
6.11.5-1
fixed
sid
6.11.6-1
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
linux
yakkety
not-affected
xenial
not-affected
wily
not-affected
trusty
not-affected
precise
not-affected
linux-armadaxp
yakkety
dne
xenial
dne
wily
dne
trusty
dne
precise
not-affected
linux-aws
yakkety
dne
xenial
not-affected
trusty
not-affected
precise
dne
linux-flo
yakkety
not-affected
xenial
not-affected
wily
not-affected
trusty
dne
precise
dne
linux-gke
yakkety
dne
xenial
not-affected
trusty
dne
precise
dne
linux-goldfish
yakkety
not-affected
xenial
not-affected
wily
not-affected
trusty
dne
precise
dne
linux-grouper
yakkety
dne
xenial
dne
wily
dne
trusty
dne
precise
dne
linux-hwe
yakkety
dne
xenial
not-affected
trusty
dne
precise
dne
linux-hwe-edge
yakkety
dne
xenial
not-affected
trusty
dne
precise
dne
linux-linaro-omap
yakkety
dne
xenial
dne
wily
dne
trusty
dne
precise
ignored
linux-linaro-shared
yakkety
dne
xenial
dne
wily
dne
trusty
dne
precise
ignored
linux-linaro-vexpress
yakkety
dne
xenial
dne
wily
dne
trusty
dne
precise
ignored
linux-lts-quantal
yakkety
dne
xenial
dne
wily
dne
trusty
dne
precise
ignored
linux-lts-raring
yakkety
dne
xenial
dne
wily
dne
trusty
dne
precise
ignored
linux-lts-saucy
yakkety
dne
xenial
dne
wily
dne
trusty
dne
precise
ignored
linux-lts-trusty
yakkety
dne
xenial
dne
wily
dne
trusty
dne
precise
not-affected
linux-lts-utopic
yakkety
dne
xenial
dne
wily
dne
trusty
dne
precise
dne
linux-lts-vivid
yakkety
dne
xenial
dne
wily
dne
trusty
dne
precise
dne
linux-lts-wily
yakkety
dne
xenial
dne
wily
dne
trusty
dne
precise
dne
linux-lts-xenial
yakkety
dne
xenial
dne
wily
dne
trusty
not-affected
precise
dne
linux-maguro
yakkety
dne
xenial
dne
wily
dne
trusty
dne
precise
dne
linux-mako
yakkety
not-affected
xenial
not-affected
wily
not-affected
trusty
dne
precise
dne
linux-manta
yakkety
dne
xenial
dne
wily
not-affected
trusty
dne
precise
dne
linux-qcm-msm
yakkety
dne
xenial
dne
wily
dne
trusty
dne
precise
ignored
linux-raspi2
yakkety
not-affected
xenial
not-affected
wily
not-affected
trusty
dne
precise
dne
linux-snapdragon
yakkety
not-affected
xenial
not-affected
wily
dne
trusty
dne
precise
dne
linux-ti-omap4
yakkety
dne
xenial
dne
wily
dne
trusty
dne
precise
not-affected