CVE-2016-2548

CVSS v3.0 6.2 (Medium)
62% Progress
CVSS v2.0 4.9 (Medium)
49% Progress
EPSS 0.18 % (56th)
0.18% Progress
Affected Products 1
Advisories 16

sound/core/timer.c in the Linux kernel before 4.4.1 retains certain linked lists after a close or stop action, which allows local users to cause a denial of service (system crash) via a crafted ioctl call, related to the (1) snd_timer_close and (2) _snd_timer_stop functions.

Weaknesses
CWE-20
Improper Input Validation
Related CVEs
CVE Status
PUBLISHED
CNA
MITRE
Published Date
2016-04-27 17:59:18
(8 years ago)
Updated Date
2017-09-07 01:29:02
(7 years ago)

Affected Products

Loading...
Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Linux Kernel 4.4 and prior versions cpe:2.3:o:linux:linux_kernel <= 4.4
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...