CVE-2016-5195
high · 7Actively exploitedOn the CISA Known Exploited Vulnerabilities catalog
Apply updates per vendor instructions.
Added 2022-03-03Remediation due 2022-03-24
Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by leveraging incorrect handling of a copy-on-write (COW) feature to write to a read-only memory mapping, as exploited in the wild in October 2016, aka "Dirty COW."
7
CVSS
83.5%
EPSS (exploit prob.)
100th
EPSS percentile
2016-11-10
Published
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Weaknesses
CWE-362
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| canonical | ubuntu_linux | 12.04 |
| canonical | ubuntu_linux | 14.04 |
| canonical | ubuntu_linux | 16.04 |
| canonical | ubuntu_linux | 16.10 |
| linux | linux_kernel | >= 2.6.22, < 3.2.83 |
| linux | linux_kernel | >= 3.3, < 3.4.113 |
| linux | linux_kernel | >= 3.5, < 3.10.104 |
| linux | linux_kernel | >= 3.11, < 3.12.66 |
| linux | linux_kernel | >= 3.13, < 3.16.38 |
| linux | linux_kernel | >= 3.17, < 3.18.44 |
| linux | linux_kernel | >= 3.19, < 4.1.35 |
| linux | linux_kernel | >= 4.2, < 4.4.26 |
| linux | linux_kernel | >= 4.5, < 4.7.9 |
| linux | linux_kernel | >= 4.8, < 4.8.3 |
| redhat | enterprise_linux | 5 |
| redhat | enterprise_linux | 6.0 |
| redhat | enterprise_linux | 7.0 |
| redhat | enterprise_linux_aus | 6.2 |
| redhat | enterprise_linux_aus | 6.4 |
| redhat | enterprise_linux_aus | 6.5 |
| redhat | enterprise_linux_eus | 6.6 |
| redhat | enterprise_linux_eus | 6.7 |
| redhat | enterprise_linux_eus | 7.1 |
| redhat | enterprise_linux_long_life | 5.6 |
| redhat | enterprise_linux_long_life | 5.9 |
| redhat | enterprise_linux_tus | 6.5 |
| debian | debian_linux | 7.0 |
| debian | debian_linux | 8.0 |
| fedoraproject | fedora | 23 |
| fedoraproject | fedora | 24 |
| fedoraproject | fedora | 25 |
| paloaltonetworks | pan-os | >= 5.1, < 7.0.14 |
| paloaltonetworks | pan-os | >= 7.1.0, < 7.1.8 |
| netapp | cloud_backup | all versions |
| netapp | hci_storage_nodes | all versions |
| netapp | oncommand_balance | all versions |
| netapp | oncommand_performance_manager | all versions |
| netapp | oncommand_unified_manager_for_clustered_data_ontap | all versions |
| netapp | ontap_select_deploy_administration_utility | all versions |
| netapp | snapprotect | all versions |
Check a specific version with /api/v1/cve/match.
References
- http://fortiguard.com/advisory/FG-IR-16-063
- http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=19be0eaffa3ac7d8eb6784ad9bdbc7d67ed8e619
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10770
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10774
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10807
- http://lists.opensuse.org/opensuse-security-announce/2016-10/msg00034.html
- http://lists.opensuse.org/opensuse-security-announce/2016-10/msg00035.html
- http://lists.opensuse.org/opensuse-security-announce/2016-10/msg00036.html
- http://lists.opensuse.org/opensuse-security-announce/2016-10/msg00038.html
- http://lists.opensuse.org/opensuse-security-announce/2016-10/msg00039.html
- http://lists.opensuse.org/opensuse-security-announce/2016-10/msg00040.html
- http://lists.opensuse.org/opensuse-security-announce/2016-10/msg00045.html
- http://lists.opensuse.org/opensuse-security-announce/2016-10/msg00048.html
- http://lists.opensuse.org/opensuse-security-announce/2016-10/msg00049.html
- http://lists.opensuse.org/opensuse-security-announce/2016-10/msg00050.html
- http://lists.opensuse.org/opensuse-security-announce/2016-10/msg00051.html
- http://lists.opensuse.org/opensuse-security-announce/2016-10/msg00052.html
- http://lists.opensuse.org/opensuse-security-announce/2016-10/msg00053.html
- http://lists.opensuse.org/opensuse-security-announce/2016-10/msg00054.html
- http://lists.opensuse.org/opensuse-security-announce/2016-10/msg00055.html
- http://lists.opensuse.org/opensuse-security-announce/2016-10/msg00056.html
- http://lists.opensuse.org/opensuse-security-announce/2016-10/msg00057.html
- http://lists.opensuse.org/opensuse-security-announce/2016-10/msg00058.html
- http://lists.opensuse.org/opensuse-security-announce/2016-10/msg00063.html
- http://lists.opensuse.org/opensuse-security-announce/2016-10/msg00064.html
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2016-5195