imPC@ndo IT

Tracker / CVE-2016-4558

CVE-2016-4558

High 7.0

The BPF subsystem in the Linux kernel before 4.5.5 mishandles reference counts, which allows local users to cause a denial of service (use-after-free) or possibly have unspecified other impact via a crafted application on (1) a system with more than 32 Gb of memory, related to the program reference count or (2) a 1 Tb system, related to the map reference count.

Affected products and versions

canonical ubuntu_linux
linux linux_kernel · 4.4 → 4.4.11
linux linux_kernel · 4.5 → 4.5.5

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References