ZeroHour

CVE-2016-6187

CVSS 3.1
7.8 high
EPSS
2%p83
Published
()
Modified
Description

The apparmor_setprocattr function in security/apparmor/lsm.c in the Linux kernel before 4.6.5 does not validate the buffer size, which allows local users to gain privileges by triggering an AppArmor setprocattr hook.

Vendors
linux
Products
linux kernel
Weakness
CWE-119, CWE-264
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.