vulnerability

Oracle Linux: (CVE-2016-0723) ELSA-2016-3596: Unbreakable Enterprise kernel security update

Severity
6
CVSS
(AV:L/AC:L/Au:N/C:P/I:N/A:C)
Published
Feb 7, 2016
Added
Jul 1, 2017
Modified
Aug 6, 2024

Description

Race condition in the tty_ioctl function in drivers/tty/tty_io.c in the Linux kernel through 4.4.1 allows local users to obtain sensitive information from kernel memory or cause a denial of service (use-after-free and system crash) by making a TIOCGETD ioctl call during processing of a TIOCSETD ioctl call.

Solutions

oracle-linux-upgrade-dtrace-modulesoracle-linux-upgrade-kernel-uekoracle-linux-upgrade-kernel-uek-debugoracle-linux-upgrade-kernel-uek-debug-develoracle-linux-upgrade-kernel-uek-develoracle-linux-upgrade-kernel-uek-docoracle-linux-upgrade-kernel-uek-firmware
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.