CVE-2016-9604
—CVSS 3.0
4.4 medium
EPSS
<1%p18
Published
()
Modified
Description
It was discovered in the Linux kernel before 4.11-rc8 that root can gain direct access to an internal keyring, such as '.dns_resolver' in RHEL-7 or '.builtin_trusted_keys' upstream, by joining it as its session keyring. This allows root to bypass module signature verification by adding a new public key of its own devising to the keyring.
- Vendors
- linux
- Products
- linux kernel
- Weakness
- CWE-732, CWE-347
- Vector
- CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:N
In the news0 stories
No ingested article mentions this CVE yet.