UBUNTU-CVE-2016-7042
The proc_keys_show function in security/keys/proc.c in the Linux kernel through 4.8.2, when the GNU Compiler Collection (gcc) stack protector is enabled, uses an incorrect buffer size for certain timeout data, which allows local users to cause a denial of service (stack memory corruption and panic) by reading the /proc/keys file.
02 / AFFECTED SOFTWARE
Affected packages
99 explicit affected versions
34 explicit affected versions
15 explicit affected versions
35 explicit affected versions
17 explicit affected versions
11 explicit affected versions
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
The proc_keys_show function in security/keys/proc.c in the Linux kernel through 4.8.2, when the GNU Compiler Collection (gcc) stack protector is enabled, uses an incorrect buffer size for certain timeout data, which allows local users to cause a denial of service (stack memory corruption and panic) by reading the /proc/keys file.
05 / REFERENCES
Further evidence
- http://www.openwall.com/lists/oss-security/2016/10/13/5
- https://bugzilla.redhat.com/show_bug.cgi?id=1373499
- https://bugzilla.redhat.com/show_bug.cgi?id=1373966
- https://ubuntu.com/security/CVE-2016-7042
- https://ubuntu.com/security/notices/USN-3126-1
- https://ubuntu.com/security/notices/USN-3126-2
- https://ubuntu.com/security/notices/USN-3127-1
- https://ubuntu.com/security/notices/USN-3127-2
- https://ubuntu.com/security/notices/USN-3128-1
- https://ubuntu.com/security/notices/USN-3128-2
- https://ubuntu.com/security/notices/USN-3128-3
- https://ubuntu.com/security/notices/USN-3129-1
- https://ubuntu.com/security/notices/USN-3129-2
- https://ubuntu.com/security/notices/USN-3161-3
- https://www.cve.org/CVERecord?id=CVE-2016-7042