Description
The nfnetlink_rcv_batch function in net/netfilter/nfnetlink.c in the Linux kernel before 4.5 does not check whether a batch message's length field is large enough, which allows local users to obtain sensitive information from kernel memory or cause a denial of service (infinite loop or out-of-bounds read) by leveraging the CAP_NET_ADMIN capability.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2016-8766 | The nfnetlink_rcv_batch function in net/netfilter/nfnetlink.c in the Linux kernel before 4.5 does not check whether a batch message's length field is large enough, which allows local users to obtain sensitive information from kernel memory or cause a denial of service (infinite loop or out-of-bounds read) by leveraging the CAP_NET_ADMIN capability. |
Ubuntu USN |
USN-3312-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-3312-2 | Linux kernel (Xenial HWE) vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: google_android
Published:
Updated: 2024-08-06T02:13:20.955Z
Reserved: 2016-09-09T00:00:00.000Z
Link: CVE-2016-7917
No data.
Status : Modified
Published: 2016-11-16T05:59:11.970
Modified: 2026-05-06T22:30:45.220
Link: CVE-2016-7917
OpenCVE Enrichment
No data.
EUVD
Ubuntu USN