cbcvebase.
CVE-2016-10044
published 2017-02-07

CVE-2016-10044: The aio_mount function in fs/aio.c in the Linux kernel before 4.7.7 does not properly restrict execute access, which makes it easier for local users to bypass…

PriorityP337high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.30%
22.3th percentile
The aio_mount function in fs/aio.c in the Linux kernel before 4.7.7 does not properly restrict execute access, which makes it easier for local users to bypass intended SELinux W^X policy restrictions, and consequently gain privileges, via an io_setup system call.

Affected

29 ranges· showing 25
VendorProductVersion rangeFixed in
debiandebian_linux
debianlinux< linux 4.7.8-1 (bookworm)linux 4.7.8-1 (bookworm)
debianlinux< linux 6.1.123-1 (bookworm)linux 6.1.123-1 (bookworm)
debianlinux-6.1< linux 6.1.123-1 (bookworm)linux 6.1.123-1 (bookworm)
googleandroid<= 7.1.1
googleandroid
linuxlinux
linuxlinux
linuxlinux>= 3.16.59 < 3.173.17
linuxlinux>= c8d78c1823f46519473949d33f0d1d33fe21ea16 < 0f910dbf2f2a4a7820ba4bac7b280f7108aa05b10f910dbf2f2a4a7820ba4bac7b280f7108aa05b1
linuxlinux>= c8d78c1823f46519473949d33f0d1d33fe21ea16 < 49d3a4ad57c57227c3b0fd6cd4188b2a5ebd617849d3a4ad57c57227c3b0fd6cd4188b2a5ebd6178
linuxlinux>= c8d78c1823f46519473949d33f0d1d33fe21ea16 < 3393fddbfa947c8e1fdcc4509226905ffffd8b893393fddbfa947c8e1fdcc4509226905ffffd8b89
linuxlinux>= c8d78c1823f46519473949d33f0d1d33fe21ea16 < ce14f38d6ee9e88e37ec28427b4b93a7c33c70d3ce14f38d6ee9e88e37ec28427b4b93a7c33c70d3
linuxlinux>= c8d78c1823f46519473949d33f0d1d33fe21ea16 < ea7e2d5e49c05e5db1922387b09ca74aa40f46e2ea7e2d5e49c05e5db1922387b09ca74aa40f46e2
linuxlinux_kernel< 3.16.433.16.43
linuxlinux_kernel< 6.1.1206.1.120
linuxlinux_kernel>= 0 < 4.7.8-14.7.8-1
linuxlinux_kernel>= 0 < 4.7.8-14.7.8-1
linuxlinux_kernel>= 0 < 6.1.123-16.1.123-1
linuxlinux_kernel>= 0 < 4.7.8-14.7.8-1
linuxlinux_kernel>= 0 < 6.11.2-16.11.2-1
linuxlinux_kernel>= 0 < 4.7.8-14.7.8-1
linuxlinux_kernel>= 0 < 6.11.2-16.11.2-1
linuxlinux_kernel>= 0 < 3.13.0-132.1813.13.0-132.181
linuxlinux_kernel>= 3.17 < 4.4.244.4.24

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.2HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
vendor_ubuntu7.8HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.