CVE-2015-7312 PUBLISHED

Multiple race conditions in the Advanced Union Filesystem (aufs) aufs3-mmap.patch and aufs4-mmap.patch patches for the Linux kernel 3.x and 4.x allow local users to cause a denial of service (use-after-free and BUG) or possibly gain privileges via a (1) madvise or (2) msync system call, related to mm/madvise.c and mm/msync.c.

EPSS 0.04% · 11.9th percentile

Risk Scores

EPSS Score
0.04%
11.9th percentile

Affected Products

VendorProductVersions
Ubuntu:14.04:LTSlinux-lts-vivid3.19.0-30.34~14.04.1, 3.19.0-30.33~14.04.1, 3.19.0-28.30~14.04.1
Ubuntu:14.04:LTSlinux3.13.0-1.16, 3.13.0-2.17, 3.13.0-3.18
Ubuntu:14.04:LTSlinux-lts-utopic3.16.0-34.47~14.04.1, 3.16.0-36.48~14.04.1, 3.16.0-37.49~14.04.1

Timeline

References

Open in Interactive Console →