CVE-2016-10905
published 2019-08-19CVE-2016-10905: An issue was discovered in fs/gfs2/rgrp.c in the Linux kernel before 4.8. A use-after-free is caused by the functions gfs2_clear_rgrpd and read_rindex_entry.
PriorityP337high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.58%
44.3th percentile
An issue was discovered in fs/gfs2/rgrp.c in the Linux kernel before 4.8. A use-after-free is caused by the functions gfs2_clear_rgrpd and read_rindex_entry.
Affected
10 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 4.8.5-1 (bookworm) | linux 4.8.5-1 (bookworm) |
| linux | linux_kernel | < 4.8 | 4.8 |
| linux | linux_kernel | >= 0 < 4.8.5-1 | 4.8.5-1 |
| linux | linux_kernel | >= 0 < 4.8.5-1 | 4.8.5-1 |
| linux | linux_kernel | >= 0 < 4.8.5-1 | 4.8.5-1 |
| linux | linux_kernel | >= 0 < 4.8.5-1 | 4.8.5-1 |
| linux | linux_kernel | >= 0 < 4.4.0-165.193 | 4.4.0-165.193 |
| linux | linux_kernel | >= 3.17 < 4.4.191 | 4.4.191 |
| linux | linux_kernel | >= 3.4 < 3.16.74 | 3.16.74 |
| linux | linux_kernel | >= 4.5 < 4.8 | 4.8 |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvdv2.06.1MEDIUMAV:L/AC:L/Au:N/C:P/I:P/A:C
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
vendor_ubuntu7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-8gm5-39w5-qgqw: An issue was discovered in fs/gfs2/rgrp
ghsa_unreviewed·2022-05-24
CVE-2016-10905 [MEDIUM] CWE-416 GHSA-8gm5-39w5-qgqw: An issue was discovered in fs/gfs2/rgrp
An issue was discovered in fs/gfs2/rgrp.c in the Linux kernel before 4.8. A use-after-free is caused by the functions gfs2_clear_rgrpd and read_rindex_entry.
OSV
linux, linux-aws, linux-kvm, linux-raspi2, linux-snapdragon vulnerabilities
osv·2019-10-01·CVSS 7.8
CVE-2016-10905 [HIGH] linux, linux-aws, linux-kvm, linux-raspi2, linux-snapdragon vulnerabilities
linux, linux-aws, linux-kvm, linux-raspi2, linux-snapdragon vulnerabilities
It was discovered that a race condition existed in the GFS2 file system in
the Linux kernel. A local attacker could possibly use this to cause a
denial of service (system crash). (CVE-2016-10905)
It was discovered that the IPv6 implementation in the Linux kernel did not
properly validate socket options in some situations. A local attacker could
use this to cause a denial of service (system crash) or possibly execute
arbitrary code. (CVE-2017-18509)
It was discovered that the USB gadget Midi driver in the Linux kernel
contained a double-free vulnerability when handling certain error
conditions. A local attacker could use this to cause a denial of service
(system crash). (CVE-2018-20961)
It was discovered that th
OSV
CVE-2016-10905: An issue was discovered in fs/gfs2/rgrp
osv·2019-08-19·CVSS 7.8
CVE-2016-10905 [HIGH] CVE-2016-10905: An issue was discovered in fs/gfs2/rgrp
An issue was discovered in fs/gfs2/rgrp.c in the Linux kernel before 4.8. A use-after-free is caused by the functions gfs2_clear_rgrpd and read_rindex_entry.
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2019-10-01·CVSS 7.8
CVE-2016-10905 [HIGH] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Several security issues were fixed in the Linux kernel.
It was discovered that a race condition existed in the GFS2 file system in
the Linux kernel. A local attacker could possibly use this to cause a
denial of service (system crash). (CVE-2016-10905)
It was discovered that the IPv6 implementation in the Linux kernel did not
properly validate socket options in some situations. A local attacker could
use this to cause a denial of service (system crash) or possibly execute
arbitrary code. (CVE-2017-18509)
It was discovered that the USB gadget Midi driver in the Linux kernel
contained a double-free vulnerability when handling certain error
conditions. A local attacker could use this to cause a denial of service
(system crash). (CVE-2018-20961)
Red Hat
kernel: use-after-free in fs/gfs2/rgrp.c
vendor_redhat·2019-08-18·CVSS 7.8
CVE-2016-10905 [HIGH] CWE-416 kernel: use-after-free in fs/gfs2/rgrp.c
kernel: use-after-free in fs/gfs2/rgrp.c
An issue was discovered in fs/gfs2/rgrp.c in the Linux kernel before 4.8. A use-after-free is caused by the functions gfs2_clear_rgrpd and read_rindex_entry.
A flaw was found in the resource group management of the GFS2 filesystem. A local attacker can use this flaw to cause a use-after-free error, which can be used to crash the system, corrupt memory, or escalate privileges.
Mitigation: At this time there is no known mitigation for this flaw, but systems with updated kernels are not affected.
Package: kernel (Red Hat Enterprise Linux 5) - Not affected
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel (Red Hat Enterprise Linux 7) - Not affected
Package: kernel-alt (Red Hat Enterprise Linux 7) - Not affected
Package:
Debian
CVE-2016-10905: linux - An issue was discovered in fs/gfs2/rgrp.c in the Linux kernel before 4.8. A use-...
vendor_debian·2016·CVSS 7.8
CVE-2016-10905 [HIGH] CVE-2016-10905: linux - An issue was discovered in fs/gfs2/rgrp.c in the Linux kernel before 4.8. A use-...
An issue was discovered in fs/gfs2/rgrp.c in the Linux kernel before 4.8. A use-after-free is caused by the functions gfs2_clear_rgrpd and read_rindex_entry.
Scope: local
bookworm: resolved (fixed in 4.8.5-1)
bullseye: resolved (fixed in 4.8.5-1)
forky: resolved (fixed in 4.8.5-1)
sid: resolved (fixed in 4.8.5-1)
trixie: resolved (fixed in 4.8.5-1)
No detection rules found.
No public exploits indexed.
http://packetstormsecurity.com/files/154951/Kernel-Live-Patch-Security-Notice-LSN-0058-1.htmlhttp://packetstormsecurity.com/files/155212/Slackware-Security-Advisory-Slackware-14.2-kernel-Updates.htmlhttps://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=36e4ad0316c017d5b271378ed9a1c9a4b77fab5fhttps://lists.debian.org/debian-lts-announce/2019/09/msg00025.htmlhttps://seclists.org/bugtraq/2019/Nov/11https://support.f5.com/csp/article/K31332013https://support.f5.com/csp/article/K31332013?utm_source=f5support&%3Butm_medium=RSShttps://usn.ubuntu.com/4145-1/http://packetstormsecurity.com/files/154951/Kernel-Live-Patch-Security-Notice-LSN-0058-1.htmlhttp://packetstormsecurity.com/files/155212/Slackware-Security-Advisory-Slackware-14.2-kernel-Updates.htmlhttps://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=36e4ad0316c017d5b271378ed9a1c9a4b77fab5fhttps://lists.debian.org/debian-lts-announce/2019/09/msg00025.htmlhttps://seclists.org/bugtraq/2019/Nov/11https://support.f5.com/csp/article/K31332013https://support.f5.com/csp/article/K31332013?utm_source=f5support&%3Butm_medium=RSShttps://usn.ubuntu.com/4145-1/
2019-08-19
Published