Vulnerability Description
The get_rock_ridge_filename function in fs/isofs/rock.c in the Linux kernel before 4.5.5 mishandles NM (aka alternate name) entries containing \0 characters, which allows local users to obtain sensitive information from kernel memory or possibly have unspecified other impact via a crafted isofs filesystem.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Canonical | Ubuntu Linux | 12.04 |
| Linux | Linux Kernel | < 3.2.81 |
| Oracle | Linux | 6 |
| Novell | Suse Linux Enterprise Software Development Kit | 11.0 |
| Novell | Suse Linux Enterprise Debuginfo | 11.0 |
| Novell | Suse Linux Enterprise Server | 11.0 |
Related Weaknesses (CWE)
References
- http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=99d825Vendor Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-06/msg00052.htmlThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00007.htmlMailing ListThird Party Advisory
- http://www.debian.org/security/2016/dsa-3607Third Party Advisory
- http://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.5.5Vendor Advisory
- http://www.openwall.com/lists/oss-security/2016/05/18/3Mailing ListPatchThird Party Advisory
- http://www.openwall.com/lists/oss-security/2016/05/18/5Mailing ListPatchThird Party Advisory
- http://www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.hThird Party Advisory
- http://www.oracle.com/technetwork/topics/security/ovmbulletinoct2016-3090547.htmThird Party Advisory
- http://www.securityfocus.com/bid/90730Third Party AdvisoryVDB Entry
- http://www.ubuntu.com/usn/USN-3016-1Third Party Advisory
- http://www.ubuntu.com/usn/USN-3016-2Third Party Advisory
- http://www.ubuntu.com/usn/USN-3016-3Third Party Advisory
- http://www.ubuntu.com/usn/USN-3016-4Third Party Advisory
- http://www.ubuntu.com/usn/USN-3017-1Third Party Advisory
FAQ
What is CVE-2016-4913?
CVE-2016-4913 is a vulnerability with a CVSS score of 7.8 (HIGH). The get_rock_ridge_filename function in fs/isofs/rock.c in the Linux kernel before 4.5.5 mishandles NM (aka alternate name) entries containing \0 characters, which allows local users to obtain sensiti...
How severe is CVE-2016-4913?
CVE-2016-4913 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2016-4913?
Check the references section above for vendor advisories and patch information. Affected products include: Canonical Ubuntu Linux, Linux Linux Kernel, Oracle Linux, Novell Suse Linux Enterprise Software Development Kit, Novell Suse Linux Enterprise Debuginfo.