CVE-2015-5706 PUBLISHED

Use-after-free vulnerability in the path_openat function in fs/namei.c in the Linux kernel 3.x and 4.x before 4.0.4 allows local users to cause a denial of service or possibly have unspecified other impact via O_TMPFILE filesystem operations that leverage a duplicate cleanup operation.

EPSS 0.06% · 18.1th percentile

Risk Scores

EPSS Score
0.06%
18.1th percentile

Affected Products

VendorProductVersions
Ubuntu:14.04:LTSlinux-lts-utopic0, 3.16.0-25.33~14.04.2, 3.16.0-26.35~14.04.1
Ubuntu:14.04:LTSlinux3.13.0-8.28, 3.13.0-10.30, 3.13.0-11.31
Ubuntu:14.04:LTSlinux-lts-vivid0, 3.19.0-18.18~14.04.1, 3.19.0-20.20~14.04.1

Timeline

References

Open in Interactive Console →