CVE-2016-7545

SELinux policycoreutils allows local users to execute arbitrary commands outside of the sandbox via a crafted TIOCSTI ioctl call.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
8.8 HIGH
LOCAL
LOW
LOW
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 21%
Affected Products (NVD)
VendorProductVersion
selinux_projectselinux
-
redhatenterprise_linux_desktop
6.0
redhatenterprise_linux_desktop
7.0
redhatenterprise_linux_hpc_node
6.0
redhatenterprise_linux_hpc_node
7.0
redhatenterprise_linux_server
6.0
redhatenterprise_linux_server
7.0
redhatenterprise_linux_server_tus
7.3
redhatenterprise_linux_workstation
6.0
redhatenterprise_linux_workstation
7.0
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
policycoreutils
bookworm
3.4-1
fixed
bullseye
3.1-3
fixed
jessie
not-affected
sid
3.7-2
fixed
trixie
3.7-2
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
policycoreutils
artful
ignored
bionic
not-affected
cosmic
not-affected
disco
not-affected
eoan
not-affected
precise
ignored
trusty
not-affected
xenial
not-affected
yakkety
ignored
zesty
ignored
openSUSE logo
openSUSE / SLES Releases
openSUSE Product
Release
policycoreutils
suse enterprise desktop 15
2.6-3.12
fixed
suse enterprise desktop 15 SP1
2.8-9.19
fixed
suse enterprise desktop 15 SP2
3.0-1.20
fixed
suse enterprise desktop 15 SP3
3.0-1.20
fixed
suse enterprise desktop 15 SP4
3.1-150400.1.5
fixed
suse enterprise desktop 15 SP5
3.1-150400.1.5
fixed
suse enterprise desktop 15 SP6
3.5-150600.1.50
fixed
suse enterprise desktop 15 SP7
3.5-150600.1.50
fixed
suse enterprise sap 12 SP1
2.3-3.3.1
fixed
suse enterprise sap 12 SP2
2.5-6.1
fixed
suse enterprise sap 12 SP5
2.5-10.3.1
fixed
suse enterprise sap 15
2.6-3.12
fixed
suse enterprise sap 15 SP1
2.8-9.19
fixed
suse enterprise sap 15 SP2
3.0-1.20
fixed
suse enterprise sap 15 SP3
3.0-1.20
fixed
suse enterprise sap 15 SP4
3.1-150400.1.5
fixed
suse enterprise sap 15 SP5
3.1-150400.1.5
fixed
suse enterprise sap 15 SP6
3.5-150600.1.50
fixed
suse enterprise sap 15 SP7
3.5-150600.1.50
fixed
suse enterprise server 12 SP1
2.3-3.3.1
fixed
suse enterprise server 12 SP2
2.5-6.1
fixed
suse enterprise server 12 SP5
2.5-10.3.1
fixed
suse enterprise server 15
2.6-3.12
fixed
suse enterprise server 15 SP1
2.8-9.19
fixed
suse enterprise server 15 SP2
3.0-1.20
fixed
suse enterprise server 15 SP3
3.0-1.20
fixed
suse enterprise server 15 SP4
3.1-150400.1.5
fixed
suse enterprise server 15 SP5
3.1-150400.1.5
fixed
suse enterprise server 15 SP6
3.5-150600.1.50
fixed
suse enterprise server 15 SP7
3.5-150600.1.50
fixed
policycoreutils-lang
suse enterprise desktop 15
2.6-3.12
fixed
suse enterprise desktop 15 SP1
2.8-9.19
fixed
suse enterprise desktop 15 SP2
3.0-1.20
fixed
suse enterprise desktop 15 SP3
3.0-1.20
fixed
suse enterprise desktop 15 SP4
3.1-150400.1.5
fixed
suse enterprise desktop 15 SP5
3.1-150400.1.5
fixed
suse enterprise desktop 15 SP6
3.5-150600.1.50
fixed
suse enterprise desktop 15 SP7
3.5-150600.1.50
fixed
suse enterprise sap 15
2.6-3.12
fixed
suse enterprise sap 15 SP1
2.8-9.19
fixed
suse enterprise sap 15 SP2
3.0-1.20
fixed
suse enterprise sap 15 SP3
3.0-1.20
fixed
suse enterprise sap 15 SP4
3.1-150400.1.5
fixed
suse enterprise sap 15 SP5
3.1-150400.1.5
fixed
suse enterprise sap 15 SP6
3.5-150600.1.50
fixed
suse enterprise sap 15 SP7
3.5-150600.1.50
fixed
suse enterprise server 15
2.6-3.12
fixed
suse enterprise server 15 SP1
2.8-9.19
fixed
suse enterprise server 15 SP2
3.0-1.20
fixed
suse enterprise server 15 SP3
3.0-1.20
fixed
suse enterprise server 15 SP4
3.1-150400.1.5
fixed
suse enterprise server 15 SP5
3.1-150400.1.5
fixed
suse enterprise server 15 SP6
3.5-150600.1.50
fixed
suse enterprise server 15 SP7
3.5-150600.1.50
fixed
policycoreutils-newrole
suse enterprise desktop 15
2.6-3.12
fixed
suse enterprise desktop 15 SP1
2.8-9.19
fixed
suse enterprise desktop 15 SP2
3.0-1.20
fixed
suse enterprise desktop 15 SP3
3.0-1.20
fixed
suse enterprise desktop 15 SP4
3.1-150400.1.5
fixed
suse enterprise desktop 15 SP5
3.1-150400.1.5
fixed
suse enterprise desktop 15 SP6
3.5-150600.1.50
fixed
suse enterprise desktop 15 SP7
3.5-150600.1.50
fixed
suse enterprise sap 12 SP5
2.5-10.3.1
fixed
suse enterprise sap 15
2.6-3.12
fixed
suse enterprise sap 15 SP1
2.8-9.19
fixed
suse enterprise sap 15 SP2
3.0-1.20
fixed
suse enterprise sap 15 SP3
3.0-1.20
fixed
suse enterprise sap 15 SP4
3.1-150400.1.5
fixed
suse enterprise sap 15 SP5
3.1-150400.1.5
fixed
suse enterprise sap 15 SP6
3.5-150600.1.50
fixed
suse enterprise sap 15 SP7
3.5-150600.1.50
fixed
suse enterprise server 12 SP5
2.5-10.3.1
fixed
suse enterprise server 15
2.6-3.12
fixed
suse enterprise server 15 SP1
2.8-9.19
fixed
suse enterprise server 15 SP2
3.0-1.20
fixed
suse enterprise server 15 SP3
3.0-1.20
fixed
suse enterprise server 15 SP4
3.1-150400.1.5
fixed
suse enterprise server 15 SP5
3.1-150400.1.5
fixed
suse enterprise server 15 SP6
3.5-150600.1.50
fixed
suse enterprise server 15 SP7
3.5-150600.1.50
fixed
policycoreutils-python
suse enterprise sap 12 SP1
2.3-3.3.1
fixed
suse enterprise sap 12 SP2
2.5-6.1
fixed
suse enterprise sap 12 SP5
2.5-10.3.1
fixed
suse enterprise server 12 SP1
2.3-3.3.1
fixed
suse enterprise server 12 SP2
2.5-6.1
fixed
suse enterprise server 12 SP5
2.5-10.3.1
fixed
policycoreutils-python-utils
suse enterprise desktop 15 SP4
3.1-150400.1.5
fixed
suse enterprise desktop 15 SP5
3.1-150400.1.5
fixed
suse enterprise desktop 15 SP6
3.5-150600.1.50
fixed
suse enterprise desktop 15 SP7
3.5-150600.1.50
fixed
suse enterprise sap 15 SP4
3.1-150400.1.5
fixed
suse enterprise sap 15 SP5
3.1-150400.1.5
fixed
suse enterprise sap 15 SP6
3.5-150600.1.50
fixed
suse enterprise sap 15 SP7
3.5-150600.1.50
fixed
suse enterprise server 15 SP4
3.1-150400.1.5
fixed
suse enterprise server 15 SP5
3.1-150400.1.5
fixed
suse enterprise server 15 SP6
3.5-150600.1.50
fixed
suse enterprise server 15 SP7
3.5-150600.1.50
fixed
python3-policycoreutils
suse enterprise desktop 15 SP1
2.8-9.19
fixed
suse enterprise desktop 15 SP2
3.0-1.20
fixed
suse enterprise desktop 15 SP3
3.0-1.20
fixed
suse enterprise desktop 15 SP4
3.1-150400.1.5
fixed
suse enterprise desktop 15 SP5
3.1-150400.1.5
fixed
suse enterprise desktop 15 SP6
3.5-150600.1.50
fixed
suse enterprise desktop 15 SP7
3.5-150600.1.50
fixed
suse enterprise sap 15 SP1
2.8-9.19
fixed
suse enterprise sap 15 SP2
3.0-1.20
fixed
suse enterprise sap 15 SP3
3.0-1.20
fixed
suse enterprise sap 15 SP4
3.1-150400.1.5
fixed
suse enterprise sap 15 SP5
3.1-150400.1.5
fixed
suse enterprise sap 15 SP6
3.5-150600.1.50
fixed
suse enterprise sap 15 SP7
3.5-150600.1.50
fixed
suse enterprise server 15 SP1
2.8-9.19
fixed
suse enterprise server 15 SP2
3.0-1.20
fixed
suse enterprise server 15 SP3
3.0-1.20
fixed
suse enterprise server 15 SP4
3.1-150400.1.5
fixed
suse enterprise server 15 SP5
3.1-150400.1.5
fixed
suse enterprise server 15 SP6
3.5-150600.1.50
fixed
suse enterprise server 15 SP7
3.5-150600.1.50
fixed
Red Hat logo
Red Hat Enterprise Linux Releases
Red Hat Product
Release
policycoreutils
RHEL 6
0:2.0.83-30.1.el6_8
fixed
RHEL 7
0:2.5-9.el7
fixed
policycoreutils-devel
RHEL 7
0:2.5-9.el7
fixed
policycoreutils-gui
RHEL 6
0:2.0.83-30.1.el6_8
fixed
RHEL 7
0:2.5-9.el7
fixed
policycoreutils-newrole
RHEL 6
0:2.0.83-30.1.el6_8
fixed
RHEL 7
0:2.5-9.el7
fixed
policycoreutils-python
RHEL 6
0:2.0.83-30.1.el6_8
fixed
RHEL 7
0:2.5-9.el7
fixed
policycoreutils-restorecond
RHEL 7
0:2.5-9.el7
fixed
policycoreutils-sandbox
RHEL 6
0:2.0.83-30.1.el6_8
fixed
RHEL 7
0:2.5-9.el7
fixed