VDB

CVE-2015-7550

CVE-2015-7550 PUBLISHED

The keyctl_read_key function in security/keys/keyctl.c in the Linux kernel before 4.3.4 does not properly use a semaphore, which allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact via a crafted application that leverages a race condition between keyctl_revoke and keyctl_read calls.

EPSS 0.05% · 16.0th percentile

Risk Scores

EPSS Score
0.05%
16.0th percentile

Affected Products

VendorProductVersions
Ubuntu:20.04:LTSlinux-azure-fde0, *, *
Ubuntu:20.04:LTSlinux-gkeop5.4.0-1008.9, 5.4.0-1057.61, 5.4.0-1087.91
Ubuntu:22.04:LTSlinux-intel-iot-realtime0, 5.15.0-1073.75
Ubuntu:18.04:LTSlinux-hwe-edge*, 5.3.0-23.25~18.04.2, 5.3.0-19.20~18.04.2
Ubuntu:20.04:LTSlinux-riscv5.4.0-40.45, 5.4.0-27.31, 0
Ubuntu:18.04:LTSlinux-azure4.15.0-1031.32, *, *
Ubuntu:20.04:LTSlinux-gke5.4.0-1098.105, 5.4.0-1033.35, 5.4.0-1035.37
Ubuntu:14.04:LTSlinux-lts-utopic3.16.0-55.74~14.04.1, 3.16.0-53.72~14.04.1, 3.16.0-52.71~14.04.1
Ubuntu:14.04:LTSlinux-lts-wily4.2.0-18.22~14.04.1, 0, *
Ubuntu:14.04:LTSlinux-lts-vivid3.19.0-28.30~14.04.1, 3.19.0-30.33~14.04.1, 3.19.0-31.36~14.04.1
Ubuntu:20.04:LTSlinux-raspi25.3.0-1007.8, 5.3.0-1014.16, 5.3.0-1015.17
Ubuntu:22.04:LTSlinux-riscv5.15.0-1014.16, 5.15.0-1028.32, 5.15.0-1023.27
Ubuntu:18.04:LTSlinux-gcp0, *, 4.15.0-1040.42
Ubuntu:Pro:20.04:LTSlinux-azure-fde-5.155.15.0-1064.73~20.04.1.1, 0, 5.15.0-1019.24~20.04.1.1
Ubuntu:24.04:LTSlinux-realtime0, 6.8.1-1015.16
Ubuntu:24.04:LTSlinux-hwe-6.116.11.0-17.17~24.04.2, 6.11.0-19.19~24.04.1, 6.11.0-24.24~24.04.1
Ubuntu:24.04:LTSlinux-riscv6.8.0-31.31.1, 6.8.0-20.20.1, 6.5.0-9.9.1
Ubuntu:18.04:LTSlinux-hwe5.3.0-59.53~18.04.1, 5.3.0-53.47~18.04.1, 5.3.0-51.44~18.04.2
Ubuntu:24.04:LTSlinux-azure-6.116.11.0-1015.15~24.04.1, 6.11.0-1014.14~24.04.1, 6.11.0-1013.13~24.04.1
Ubuntu:14.04:LTSlinux3.13.0-19.39, 3.13.0-19.40, 3.13.0-20.42

…and 4 more

Timeline

  • Dec 30, 2015 CVE Published
  • Feb 4, 2022 EPSS Score
  • Mar 29, 2022 EPSS Score
  • May 20, 2022 EPSS Score
  • Jul 12, 2022 EPSS Score
  • Sep 3, 2022 EPSS Score
  • Oct 26, 2022 EPSS Score
  • Dec 18, 2022 EPSS Score
  • Feb 8, 2023 EPSS Score
  • Mar 7, 2023 EPSS Score
  • Apr 2, 2023 EPSS Score
  • May 25, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›