CVE-2015-8966
published 2016-12-08CVE-2015-8966: arch/arm/kernel/sys_oabi-compat.c in the Linux kernel before 4.4 allows local users to gain privileges via a crafted (1) F_OFD_GETLK, (2) F_OFD_SETLK, or (3)…
PriorityP340high7.8CVSS 3.0
AVLACLPRLUINSUCHIHAH
EPSS
0.53%
41.5th percentile
arch/arm/kernel/sys_oabi-compat.c in the Linux kernel before 4.4 allows local users to gain privileges via a crafted (1) F_OFD_GETLK, (2) F_OFD_SETLK, or (3) F_OFD_SETLKW command in an fcntl64 system call.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 4.4.2-1 (bookworm) | linux 4.4.2-1 (bookworm) |
| android | — | — | |
| linux | linux_kernel | <= 4.3.6 | — |
| linux | linux_kernel | >= 0 < 4.4.2-1 | 4.4.2-1 |
| linux | linux_kernel | >= 0 < 4.4.2-1 | 4.4.2-1 |
| linux | linux_kernel | >= 0 < 4.4.2-1 | 4.4.2-1 |
| linux | linux_kernel | >= 0 < 4.4.2-1 | 4.4.2-1 |
| linux | linux_kernel | >= 0 < 3.13.0-125.174 | 3.13.0-125.174 |
CVSS provenance
nvdv3.07.8HIGHCVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.2HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
vendor_ubuntu5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-r3c5-r7c9-5vw5: arch/arm/kernel/sys_oabi-compat
ghsa_unreviewed·2022-05-17
CVE-2015-8966 [HIGH] GHSA-r3c5-r7c9-5vw5: arch/arm/kernel/sys_oabi-compat
arch/arm/kernel/sys_oabi-compat.c in the Linux kernel before 4.4 allows local users to gain privileges via a crafted (1) F_OFD_GETLK, (2) F_OFD_SETLK, or (3) F_OFD_SETLKW command in an fcntl64 system call.
OSV
linux vulnerabilities
osv·2017-07-21·CVSS 5.5
CVE-2014-9900 [MEDIUM] linux vulnerabilities
linux vulnerabilities
It was discovered that the Linux kernel did not properly initialize a Wake-
on-Lan data structure. A local attacker could use this to expose sensitive
information (kernel memory). (CVE-2014-9900)
It was discovered that the Linux kernel did not properly restrict access to
/proc/iomem. A local attacker could use this to expose sensitive
information. (CVE-2015-8944)
It was discovered that a use-after-free vulnerability existed in the
performance events and counters subsystem of the Linux kernel for ARM64. A
local attacker could use this to cause a denial of service (system crash)
or possibly execute arbitrary code. (CVE-2015-8955)
It was discovered that the SCSI generic (sg) driver in the Linux kernel
contained a double-free vulnerability. A local attacker could use
OSV
CVE-2015-8966: arch/arm/kernel/sys_oabi-compat
osv·2016-12-08·CVSS 7.8
CVE-2015-8966 [HIGH] CVE-2015-8966: arch/arm/kernel/sys_oabi-compat
arch/arm/kernel/sys_oabi-compat.c in the Linux kernel before 4.4 allows local users to gain privileges via a crafted (1) F_OFD_GETLK, (2) F_OFD_SETLK, or (3) F_OFD_SETLKW command in an fcntl64 system call.
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2017-07-21·CVSS 5.5
CVE-2014-9900 [MEDIUM] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Several security issues were fixed in the Linux kernel.
It was discovered that the Linux kernel did not properly initialize a Wake-
on-Lan data structure. A local attacker could use this to expose sensitive
information (kernel memory). (CVE-2014-9900)
It was discovered that the Linux kernel did not properly restrict access to
/proc/iomem. A local attacker could use this to expose sensitive
information. (CVE-2015-8944)
It was discovered that a use-after-free vulnerability existed in the
performance events and counters subsystem of the Linux kernel for ARM64. A
local attacker could use this to cause a denial of service (system crash)
or possibly execute arbitrary code. (CVE-2015-8955)
It was discovered that the SCSI generic (sg) driver in the
Ubuntu
Linux kernel (Trusty HWE) vulnerabilities
vendor_ubuntu·2017-07-21·CVSS 5.5
CVE-2014-9900 [MEDIUM] Linux kernel (Trusty HWE) vulnerabilities
Title: Linux kernel (Trusty HWE) vulnerabilities
Summary: Several security issues were fixed in the Linux kernel.
USN-3360-1 fixed vulnerabilities in the Linux kernel for Ubuntu 14.04
LTS. This update provides the corresponding updates for the Linux
Hardware Enablement (HWE) kernel from Ubuntu 14.04 LTS for Ubuntu
12.04 ESM.
It was discovered that the Linux kernel did not properly initialize a Wake-
on-Lan data structure. A local attacker could use this to expose sensitive
information (kernel memory). (CVE-2014-9900)
It was discovered that the Linux kernel did not properly restrict access to
/proc/iomem. A local attacker could use this to expose sensitive
information. (CVE-2015-8944)
It was discovered that a use-after-free vulnerability existed in the
performance events and counters s
Android
CVE-2015-8966: Android Security Bulletin 2016-12-01
CVE: CVE-2015-8966
Severity: CRITICAL
References: A-31435731
Upstream kernel
vendor_android·2016-12-01·CVSS 7.8
CVE-2015-8966 [HIGH] CVE-2015-8966: Android Security Bulletin 2016-12-01
CVE: CVE-2015-8966
Severity: CRITICAL
References: A-31435731
Upstream kernel
Android Security Bulletin 2016-12-01
CVE: CVE-2015-8966
Severity: CRITICAL
References: A-31435731
Upstream kernel
Red Hat
kernel: Local privileges escalation via crafted F_OFD_GETLK/F_OFD_SETLK/F_OFD_SETLKW commands
vendor_redhat·2015-12-29·CVSS 7.8
CVE-2015-8966 [HIGH] CWE-284 kernel: Local privileges escalation via crafted F_OFD_GETLK/F_OFD_SETLK/F_OFD_SETLKW commands
kernel: Local privileges escalation via crafted F_OFD_GETLK/F_OFD_SETLK/F_OFD_SETLKW commands
arch/arm/kernel/sys_oabi-compat.c in the Linux kernel before 4.4 allows local users to gain privileges via a crafted (1) F_OFD_GETLK, (2) F_OFD_SETLK, or (3) F_OFD_SETLKW command in an fcntl64 system call.
arch/arm/kernel/sys_oabi-compat.c in the Linux kernel before 4.4 allows local users to gain privileges via a crafted (1) F_OFD_GETLK, (2) F_OFD_SETLK, or (3) F_OFD_SETLKW command in an fcntl64 system call.
Statement: This issue does not affect the Linux kernel packages as shipped with Red Hat Enterprise Linux 5, 6, 7 and Red Hat Enterprise MRG-2 as the code with the flaw is not built in the products listed.
Package: kernel (Red Hat Enterprise Linux 5) - Not affected
Package: kernel (Red Hat
Debian
CVE-2015-8966: linux - arch/arm/kernel/sys_oabi-compat.c in the Linux kernel before 4.4 allows local us...
vendor_debian·2015·CVSS 7.8
CVE-2015-8966 [HIGH] CVE-2015-8966: linux - arch/arm/kernel/sys_oabi-compat.c in the Linux kernel before 4.4 allows local us...
arch/arm/kernel/sys_oabi-compat.c in the Linux kernel before 4.4 allows local users to gain privileges via a crafted (1) F_OFD_GETLK, (2) F_OFD_SETLK, or (3) F_OFD_SETLKW command in an fcntl64 system call.
Scope: local
bookworm: resolved (fixed in 4.4.2-1)
bullseye: resolved (fixed in 4.4.2-1)
forky: resolved (fixed in 4.4.2-1)
sid: resolved (fixed in 4.4.2-1)
trixie: resolved (fixed in 4.4.2-1)
No detection rules found.
No public exploits indexed.
http://source.android.com/security/bulletin/2016-12-01.htmlhttp://www.securityfocus.com/bid/94673https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=76cc404bfdc0d419c720de4daaf2584542734f42https://github.com/torvalds/linux/commit/76cc404bfdc0d419c720de4daaf2584542734f42http://source.android.com/security/bulletin/2016-12-01.htmlhttp://www.securityfocus.com/bid/94673https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=76cc404bfdc0d419c720de4daaf2584542734f42https://github.com/torvalds/linux/commit/76cc404bfdc0d419c720de4daaf2584542734f42
2016-12-08
Published