CVE-2016-7545
19.01.2017, 20:59
SELinux policycoreutils allows local users to execute arbitrary commands outside of the sandbox via a crafted TIOCSTI ioctl call.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| selinux_project | selinux | - |
| redhat | enterprise_linux_desktop | 6.0 |
| redhat | enterprise_linux_desktop | 7.0 |
| redhat | enterprise_linux_hpc_node | 6.0 |
| redhat | enterprise_linux_hpc_node | 7.0 |
| redhat | enterprise_linux_server | 6.0 |
| redhat | enterprise_linux_server | 7.0 |
| redhat | enterprise_linux_server_tus | 7.3 |
| redhat | enterprise_linux_workstation | 6.0 |
| redhat | enterprise_linux_workstation | 7.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
openSUSE / SLES Releases
openSUSE Product | |||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| policycoreutils |
| ||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
| policycoreutils-lang |
| ||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
| policycoreutils-newrole |
| ||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
| policycoreutils-python |
| ||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
| policycoreutils-python-utils |
| ||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
| python3-policycoreutils |
|
Red Hat Enterprise Linux Releases
Red Hat Product | |||||
|---|---|---|---|---|---|
| policycoreutils |
| ||||
| policycoreutils-devel |
| ||||
| policycoreutils-gui |
| ||||
| policycoreutils-newrole |
| ||||
| policycoreutils-python |
| ||||
| policycoreutils-restorecond |
| ||||
| policycoreutils-sandbox |
|
Common Weakness Enumeration
References