cbcvebase.
CVE-2016-0758
published 2016-06-27

CVE-2016-0758: Integer overflow in lib/asn1_decoder.c in the Linux kernel before 4.6 allows local users to gain privileges via crafted ASN.1 data.

high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
Integer overflow in lib/asn1_decoder.c in the Linux kernel before 4.6 allows local users to gain privileges via crafted ASN.1 data.

Affected

19 ranges
VendorProductVersion rangeFixed in
canonicalubuntu_linux
debianlinux< linux 4.5.4-1 (bookworm)linux 4.5.4-1 (bookworm)
googleandroid
linuxlinux_kernel>= 0 < 4.5.4-14.5.4-1
linuxlinux_kernel>= 0 < 4.5.4-14.5.4-1
linuxlinux_kernel>= 0 < 4.5.4-14.5.4-1
linuxlinux_kernel>= 0 < 4.5.4-14.5.4-1
linuxlinux_kernel>= 0 < 4.4.0-22.404.4.0-22.40
linuxlinux_kernel>= 3.13 < 3.16.363.16.36
linuxlinux_kernel>= 3.17 < 3.18.543.18.54
linuxlinux_kernel>= 3.19 < 4.4.214.4.21
linuxlinux_kernel>= 3.7 < 3.12.603.12.60
redhatenterprise_linux_desktop
redhatenterprise_linux_hpc_node
redhatenterprise_linux_hpc_node_eus
redhatenterprise_linux_server
redhatenterprise_linux_server_aus
redhatenterprise_linux_server_eus
redhatenterprise_linux_workstation

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH