CVE-2016-9755

Description

The netfilter subsystem in the Linux kernel before 4.9 mishandles IPv6 reassembly, which allows local users to cause a denial of service (integer overflow, out-of-bounds write, and GPF) or possibly have unspecified other impact via a crafted application that makes socket, connect, and writev system calls, related to net/ipv6/netfilter/nf_conntrack_reasm.c and net/ipv6/netfilter/nf_defrag_ipv6_hooks.c.

Risk Information

Base Score
7.8
MODERATE
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
0.051

Associated Vulnerability

VulnerabilityOS Platform
Linux kernel (USN-3190-1) linux-image-generic_4.8.0.59.72_i386.debLinux
Linux kernel (USN-3190-1) linux-image-generic_4.8.0.59.72_amd64.debLinux
Linux kernel (USN-3190-1) linux-image-lowlatency_4.8.0.59.72_i386.debLinux
Linux kernel (USN-3190-1) linux-image-lowlatency_4.8.0.59.72_amd64.debLinux
Linux kernel (USN-3251-1) linux-image-generic_4.8.0.59.72_i386.debLinux
Linux kernel (USN-3251-1) linux-image-generic_4.8.0.59.72_amd64.debLinux
Linux kernel (USN-3251-1) linux-image-lowlatency_4.8.0.59.72_i386.debLinux
Linux kernel (USN-3251-1) linux-image-lowlatency_4.8.0.59.72_amd64.debLinux
Linux kernel (USN-3256-1) linux-image-generic_4.8.0.59.72_i386.debLinux
Linux kernel (USN-3256-1) linux-image-generic_4.8.0.59.72_amd64.debLinux
Linux kernel (USN-3256-1) linux-image-lowlatency_4.8.0.59.72_i386.debLinux
Linux kernel (USN-3256-1) linux-image-lowlatency_4.8.0.59.72_amd64.debLinux
Linux kernel (USN-3266-1) linux-image-generic_4.8.0.59.72_i386.debLinux
Linux kernel (USN-3266-1) linux-image-generic_4.8.0.59.72_amd64.debLinux
Linux kernel (USN-3266-1) linux-image-lowlatency_4.8.0.59.72_i386.debLinux
Linux kernel (USN-3266-1) linux-image-lowlatency_4.8.0.59.72_amd64.debLinux
Linux kernel (USN-3292-1) linux-image-generic_4.8.0.59.72_i386.debLinux
Linux kernel (USN-3292-1) linux-image-generic_4.8.0.59.72_amd64.debLinux
Linux kernel (USN-3292-1) linux-image-lowlatency_4.8.0.59.72_i386.debLinux
Linux kernel (USN-3292-1) linux-image-lowlatency_4.8.0.59.72_amd64.debLinux
Linux kernel (USN-3313-1) linux-image-generic_4.8.0.59.72_i386.debLinux
Linux kernel (USN-3313-1) linux-image-generic_4.8.0.59.72_amd64.debLinux
Linux kernel (USN-3313-1) linux-image-lowlatency_4.8.0.59.72_i386.debLinux
Linux kernel (USN-3313-1) linux-image-lowlatency_4.8.0.59.72_amd64.debLinux
Linux kernel (USN-3326-1) linux-image-generic_4.8.0.59.72_i386.debLinux
Linux kernel (USN-3326-1) linux-image-generic_4.8.0.59.72_amd64.debLinux
Linux kernel (USN-3326-1) linux-image-lowlatency_4.8.0.59.72_i386.debLinux
Linux kernel (USN-3326-1) linux-image-lowlatency_4.8.0.59.72_amd64.debLinux
Linux kernel (USN-3342-1) linux-image-generic_4.8.0.59.72_i386.debLinux
Linux kernel (USN-3342-1) linux-image-generic_4.8.0.59.72_amd64.debLinux
Linux kernel (USN-3342-1) linux-image-lowlatency_4.8.0.59.72_i386.debLinux
Linux kernel (USN-3342-1) linux-image-lowlatency_4.8.0.59.72_amd64.debLinux
Linux kernel (USN-3359-1) linux-image-generic_4.8.0.59.72_i386.debLinux
Linux kernel (USN-3359-1) linux-image-generic_4.8.0.59.72_amd64.debLinux
Linux kernel (USN-3359-1) linux-image-lowlatency_4.8.0.59.72_i386.debLinux
Linux kernel (USN-3359-1) linux-image-lowlatency_4.8.0.59.72_amd64.debLinux
Linux kernel (USN-3359-1) linux-image-4.8.0-59-generic_4.8.0-59.64_i386.debLinux
Linux kernel (USN-3359-1) linux-image-4.8.0-59-generic_4.8.0-59.64_amd64.debLinux
Linux kernel (USN-3359-1) linux-image-4.8.0-59-lowlatency_4.8.0-59.64_i386.debLinux
Linux kernel (USN-3359-1) linux-image-4.8.0-59-lowlatency_4.8.0-59.64_amd64.debLinux
Linux kernel (USN-3209-1) linux-image-generic_4.8.0.59.72_i386.debLinux
Linux kernel (USN-3209-1) linux-image-generic_4.8.0.59.72_amd64.debLinux
Linux kernel (USN-3209-1) linux-image-lowlatency_4.8.0.59.72_i386.debLinux
Linux kernel (USN-3209-1) linux-image-lowlatency_4.8.0.59.72_amd64.debLinux
Linux kernel (USN-3221-1) linux-image-generic_4.8.0.59.72_i386.debLinux
Linux kernel (USN-3221-1) linux-image-generic_4.8.0.59.72_amd64.debLinux
Linux kernel (USN-3221-1) linux-image-lowlatency_4.8.0.59.72_i386.debLinux
Linux kernel (USN-3221-1) linux-image-lowlatency_4.8.0.59.72_amd64.debLinux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234