ZeroHour

CVE-2016-8655

CVSS 3.1
7.8 high
EPSS
11%p96
Published
()
Modified
Description

Race condition in net/packet/af_packet.c in the Linux kernel through 4.8.12 allows local users to gain privileges or cause a denial of service (use-after-free) by leveraging the CAP_NET_RAW capability to change a socket version, related to the packet_set_ring and packet_setsockopt functions.

Vendors
linuxcanonical
Products
linux kernel, ubuntu linux
Weakness
CWE-362, CWE-416
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news