vulnerability
SUSE: CVE-2016-2547: SUSE Linux Security Advisory
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
5 | (AV:L/AC:M/Au:N/C:N/I:N/A:C) | Mar 30, 2016 | Apr 7, 2016 | Jun 21, 2018 |
Severity
5
CVSS
(AV:L/AC:M/Au:N/C:N/I:N/A:C)
Published
Mar 30, 2016
Added
Apr 7, 2016
Modified
Jun 21, 2018
Description
sound/core/timer.c in the Linux kernel before 4.4.1 employs a locking approach that does not consider slave timer instances, which allows local users to cause a denial of service (race condition, use-after-free, and system crash) via a crafted ioctl call.
Solution(s)
suse-upgrade-kernel-defaultsuse-upgrade-kernel-docs
References
- SUSE-SUSE-SU-2016:0911
- SUSE-SUSE-SU-2016:0911-1
- SUSE-SUSE-SU-2016:1102
- SUSE-SUSE-SU-2016:1102-1
- SUSE-SUSE-SU-2016:1203-1
- SUSE-SUSE-SU-2016:2074
- SUSE-SUSE-SU-2016:2074-1
- DEBIAN-DSA-3503
- BID-83378
- SECTRACK-1035298
- UBUNTU-USN-2929-1
- UBUNTU-USN-2929-2
- UBUNTU-USN-2930-1
- UBUNTU-USN-2930-2
- UBUNTU-USN-2930-3
- UBUNTU-USN-2931-1
- UBUNTU-USN-2932-1
- UBUNTU-USN-2967-1
- UBUNTU-USN-2967-2
- NVD-CVE-2016-2547

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.