CVE-2016-5195 KEV EXPLOIT
7.0
HIGH · CVSS 3.1 · EPSS 83.5% (pctl 100)
Patch first
On CISA KEV — known exploited in the wild, due 2022-03-24.
Description
Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by leveraging incorrect handling of a copy-on-write (COW) feature to write to a read-only memory mapping, as exploited in the wild in October 2016, aka "Dirty COW."
Scoring
| CVSS | 7.0 (HIGH, v3.1) |
|---|---|
| Vector | CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 83.52% — more likely to be exploited than 100% of all CVEs |
| Weakness | CWE-362 |
| On CISA KEV | yes — remediate by 2022-03-24 |
| Public exploit | yes |
| Published | 2016-11-10 |
| Last modified | 2026-06-17 |
CISA KEV
| Name | Linux Kernel Race Condition Vulnerability |
|---|---|
| Added | 2022-03-03 |
| Due | 2022-03-24 |
| Vendor / product | Linux / Kernel |
| Ransomware use | none reported |
Affected (18)
| Vendor | Product |
|---|---|
| canonical | ubuntu linux |
| debian | debian linux |
| fedoraproject | fedora |
| linux | linux kernel |
| netapp | cloud backup |
| netapp | hci storage nodes |
| netapp | oncommand balance |
| netapp | oncommand performance manager |
| netapp | oncommand unified manager for clustered data ontap |
| netapp | ontap select deploy administration utility |
| netapp | snapprotect |
| netapp | solidfire |
| paloaltonetworks | pan-os |
| redhat | enterprise linux |
| redhat | enterprise linux aus |
| redhat | enterprise linux eus |
| redhat | enterprise linux long life |
| redhat | enterprise linux tus |
Public exploits
References
- http://fortiguard.com/advisory/FG-IR-16-063
- http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=19be0eaffa3ac7d8eb6784ad9bdbc7d67ed8e619
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10770
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10774
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10807
- http://lists.opensuse.org/opensuse-security-announce/2016-10/msg00034.html
- http://lists.opensuse.org/opensuse-security-announce/2016-10/msg00035.html
- http://lists.opensuse.org/opensuse-security-announce/2016-10/msg00036.html
- http://lists.opensuse.org/opensuse-security-announce/2016-10/msg00038.html
- http://lists.opensuse.org/opensuse-security-announce/2016-10/msg00039.html
- http://lists.opensuse.org/opensuse-security-announce/2016-10/msg00040.html
- http://lists.opensuse.org/opensuse-security-announce/2016-10/msg00045.html
- http://lists.opensuse.org/opensuse-security-announce/2016-10/msg00048.html
- http://lists.opensuse.org/opensuse-security-announce/2016-10/msg00049.html
- http://lists.opensuse.org/opensuse-security-announce/2016-10/msg00050.html
- http://lists.opensuse.org/opensuse-security-announce/2016-10/msg00051.html
- http://lists.opensuse.org/opensuse-security-announce/2016-10/msg00052.html
- http://lists.opensuse.org/opensuse-security-announce/2016-10/msg00053.html
- http://lists.opensuse.org/opensuse-security-announce/2016-10/msg00054.html
- http://lists.opensuse.org/opensuse-security-announce/2016-10/msg00055.html
→ the Explorer · watch your stack · NVD