FlawAtlas
Search the atlas
UBUNTU-CVE-2016-5696 Moderate

UBUNTU-CVE-2016-5696

net/ipv4/tcp_input.c in the Linux kernel before 4.7 does not properly determine the rate of challenge ACK segments, which makes it easier for remote attackers to hijack TCP sessions via a blind in-window attack.

Exploit probability Not scored
Published August 6, 2016
Required by Not available
Last source change April 22, 2026

02 / AFFECTED SOFTWARE

Affected packages

Ubuntu:14.04:LTS linux

95 explicit affected versions

Ubuntu:14.04:LTS linux-lts-vivid

30 explicit affected versions

Ubuntu:14.04:LTS linux-lts-xenial

11 explicit affected versions

Ubuntu:16.04:LTS linux

30 explicit affected versions

Ubuntu:16.04:LTS linux-raspi2

12 explicit affected versions

Ubuntu:16.04:LTS linux-snapdragon

7 explicit affected versions

03 / CONNECTIONS

Connected vulnerabilities

related USN-3071-2
related USN-3072-1
related USN-3072-2

04 / EVIDENCE

Source records

Open Source Vulnerabilities UBUNTU-CVE-2016-5696

net/ipv4/tcp_input.c in the Linux kernel before 4.7 does not properly determine the rate of challenge ACK segments, which makes it easier for remote attackers to hijack TCP sessions via a blind in-window attack.

View original source

05 / REFERENCES

Further evidence