vulnerability

Ubuntu: (Multiple Advisories) (CVE-2016-6130): Linux kernel vulnerabilities

Severity
2
CVSS
(AV:L/AC:M/Au:N/C:P/I:N/A:N)
Published
Jul 3, 2016
Added
Oct 11, 2016
Modified
Apr 14, 2025

Description

Vladimír Beneš discovered an unbounded recursion in the VLAN and TEB
Generic Receive Offload (GRO) processing implementations in the Linux
kernel, A remote attacker could use this to cause a stack corruption,
leading to a denial of service (system crash). (CVE-2016-7039)

Marco Grassi discovered a use-after-free condition could occur in the TCP
retransmit queue handling code in the Linux kernel. A local attacker could
use this to cause a denial of service (system crash) or possibly execute
arbitrary code. (CVE-2016-6828)

Pengfei Wang discovered a race condition in the s390 SCLP console driver
for the Linux kernel when handling ioctl()s. A local attacker could use
this to obtain sensitive information from kernel memory. (CVE-2016-6130)

Pengfei Wang discovered a race condition in the Adaptec AAC RAID controller
driver in the Linux kernel when handling ioctl()s. A local attacker could
use this to cause a denial of service (system crash). (CVE-2016-6480)

Solution(s)

ubuntu-upgrade-linux-image-4-4-0-42-genericubuntu-upgrade-linux-image-4-4-0-42-generic-lpaeubuntu-upgrade-linux-image-4-4-0-42-lowlatencyubuntu-upgrade-linux-image-4-4-0-42-powerpc-e500mcubuntu-upgrade-linux-image-4-4-0-42-powerpc-smpubuntu-upgrade-linux-image-4-4-0-42-powerpc64-embubuntu-upgrade-linux-image-4-4-0-42-powerpc64-smp
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.