CVE-2015-3288
published 2016-10-16CVE-2015-3288: mm/memory.c in the Linux kernel before 4.1.4 mishandles anonymous pages, which allows local users to gain privileges or cause a denial of service (page…
PriorityP335high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.48%
38.9th percentile
mm/memory.c in the Linux kernel before 4.1.4 mishandles anonymous pages, which allows local users to gain privileges or cause a denial of service (page tainting) via a crafted application that triggers writing to page zero.
Affected
15 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 4.2-1 (bookworm) | linux 4.2-1 (bookworm) |
| android | — | — | |
| linux | linux_kernel | < 3.2.71 | 3.2.71 |
| linux | linux_kernel | >= 0 < 4.2-1 | 4.2-1 |
| linux | linux_kernel | >= 0 < 4.2-1 | 4.2-1 |
| linux | linux_kernel | >= 0 < 4.2-1 | 4.2-1 |
| linux | linux_kernel | >= 0 < 4.2-1 | 4.2-1 |
| linux | linux_kernel | >= 0 < 3.13.0-101.148 | 3.13.0-101.148 |
| linux | linux_kernel | >= 3.10 < 3.10.86 | 3.10.86 |
| linux | linux_kernel | >= 3.12 < 3.12.47 | 3.12.47 |
| linux | linux_kernel | >= 3.14 < 3.14.50 | 3.14.50 |
| linux | linux_kernel | >= 3.16 < 3.16.35 | 3.16.35 |
| linux | linux_kernel | >= 3.18 < 3.18.52 | 3.18.52 |
| linux | linux_kernel | >= 3.4 < 3.4.111 | 3.4.111 |
| linux | linux_kernel | >= 4.1.0 < 4.1.4 | 4.1.4 |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.2HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
vendor_ubuntu7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Android
CVE-2015-3288: Android Security Bulletin 2017-01-01
CVE: CVE-2015-3288
Severity: CRITICAL
References: A-32460277
Upstream kernel
vendor_android·2017-01-01·CVSS 7.8
CVE-2015-3288 [HIGH] CVE-2015-3288: Android Security Bulletin 2017-01-01
CVE: CVE-2015-3288
Severity: CRITICAL
References: A-32460277
Upstream kernel
Android Security Bulletin 2017-01-01
CVE: CVE-2015-3288
Severity: CRITICAL
References: A-32460277
Upstream kernel
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2016-11-11·CVSS 7.8
CVE-2014-9904 [HIGH] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Several security issues were fixed in the kernel.
It was discovered that the compression handling code in the Advanced Linux
Sound Architecture (ALSA) subsystem in the Linux kernel did not properly
check for an integer overflow. A local attacker could use this to cause a
denial of service (system crash). (CVE-2014-9904)
Kirill A. Shutemov discovered that memory manager in the Linux kernel did
not properly handle anonymous pages. A local attacker could use this to
cause a denial of service or possibly gain administrative privileges.
(CVE-2015-3288)
Vitaly Kuznetsov discovered that the Linux kernel did not properly suppress
hugetlbfs support in X86 paravirtualized guests. An attacker in the guest
OS could cause a denial of service (guest syste
Ubuntu
Linux kernel (Trusty HWE) vulnerabilities
vendor_ubuntu·2016-11-11·CVSS 7.8
CVE-2014-9904 [HIGH] Linux kernel (Trusty HWE) vulnerabilities
Title: Linux kernel (Trusty HWE) vulnerabilities
Summary: Several security issues were fixed in the kernel.
USN-3127-1 fixed vulnerabilities in the Linux kernel for Ubuntu 14.04
LTS. This update provides the corresponding updates for the Linux
Hardware Enablement (HWE) kernel from Ubuntu 14.04 LTS for Ubuntu
12.04 LTS.
It was discovered that the compression handling code in the Advanced Linux
Sound Architecture (ALSA) subsystem in the Linux kernel did not properly
check for an integer overflow. A local attacker could use this to cause a
denial of service (system crash). (CVE-2014-9904)
Kirill A. Shutemov discovered that memory manager in the Linux kernel did
not properly handle anonymous pages. A local attacker could use this to
cause a denial of service or possibly gain administrative
Red Hat
kernel: zero page memory arbitrary modification
vendor_redhat·2015-07-06·CVSS 7.8
CVE-2015-3288 [HIGH] CWE-391 kernel: zero page memory arbitrary modification
kernel: zero page memory arbitrary modification
mm/memory.c in the Linux kernel before 4.1.4 mishandles anonymous pages, which allows local users to gain privileges or cause a denial of service (page tainting) via a crafted application that triggers writing to page zero.
Statement: This issue affects the Linux kernel packages as shipped with Red Hat Enterprise Linux 5. This has been rated as having Low security impact and is not currently planned to be addressed in future updates. For additional information, refer to the Red Hat Enterprise Linux Life Cycle: https://access.redhat.com/support/policy/updates/errata/.
This issue affects the Linux kernel packages as shipped with Red Hat Enterprise Linux 6, 7 and MRG-2. Future Linux kernel updates for the respective releases might address this
Debian
CVE-2015-3288: linux - mm/memory.c in the Linux kernel before 4.1.4 mishandles anonymous pages, which a...
vendor_debian·2015·CVSS 7.8
CVE-2015-3288 [HIGH] CVE-2015-3288: linux - mm/memory.c in the Linux kernel before 4.1.4 mishandles anonymous pages, which a...
mm/memory.c in the Linux kernel before 4.1.4 mishandles anonymous pages, which allows local users to gain privileges or cause a denial of service (page tainting) via a crafted application that triggers writing to page zero.
Scope: local
bookworm: resolved (fixed in 4.2-1)
bullseye: resolved (fixed in 4.2-1)
forky: resolved (fixed in 4.2-1)
sid: resolved (fixed in 4.2-1)
trixie: resolved (fixed in 4.2-1)
GHSA
GHSA-5955-pxfc-3cm3: mm/memory
ghsa_unreviewed·2022-05-17
CVE-2015-3288 [HIGH] CWE-20 GHSA-5955-pxfc-3cm3: mm/memory
mm/memory.c in the Linux kernel before 4.1.4 mishandles anonymous pages, which allows local users to gain privileges or cause a denial of service (page tainting) via a crafted application that triggers writing to page zero.
OSV
linux vulnerabilities
osv·2016-11-11·CVSS 7.8
CVE-2014-9904 [HIGH] linux vulnerabilities
linux vulnerabilities
It was discovered that the compression handling code in the Advanced Linux
Sound Architecture (ALSA) subsystem in the Linux kernel did not properly
check for an integer overflow. A local attacker could use this to cause a
denial of service (system crash). (CVE-2014-9904)
Kirill A. Shutemov discovered that memory manager in the Linux kernel did
not properly handle anonymous pages. A local attacker could use this to
cause a denial of service or possibly gain administrative privileges.
(CVE-2015-3288)
Vitaly Kuznetsov discovered that the Linux kernel did not properly suppress
hugetlbfs support in X86 paravirtualized guests. An attacker in the guest
OS could cause a denial of service (guest system crash). (CVE-2016-3961)
Ondrej Kozina discovered that the keyring inter
OSV
CVE-2015-3288: mm/memory
osv·2016-10-16·CVSS 7.8
CVE-2015-3288 [HIGH] CVE-2015-3288: mm/memory
mm/memory.c in the Linux kernel before 4.1.4 mishandles anonymous pages, which allows local users to gain privileges or cause a denial of service (page tainting) via a crafted application that triggers writing to page zero.
No detection rules found.
No public exploits indexed.
http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=6b7339f4c31ad69c8e9c0b2859276e22cf72176dhttp://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.1.4http://www.securityfocus.com/bid/93591https://bugzilla.redhat.com/show_bug.cgi?id=1333830https://github.com/torvalds/linux/commit/6b7339f4c31ad69c8e9c0b2859276e22cf72176dhttps://security-tracker.debian.org/tracker/CVE-2015-3288https://source.android.com/security/bulletin/2017-01-01.htmlhttp://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=6b7339f4c31ad69c8e9c0b2859276e22cf72176dhttp://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.1.4http://www.securityfocus.com/bid/93591https://bugzilla.redhat.com/show_bug.cgi?id=1333830https://github.com/torvalds/linux/commit/6b7339f4c31ad69c8e9c0b2859276e22cf72176dhttps://security-tracker.debian.org/tracker/CVE-2015-3288https://source.android.com/security/bulletin/2017-01-01.html
2016-10-16
Published