CVE-2016-10200 PUBLISHED

Race condition in the L2TPv3 IP Encapsulation feature in the Linux kernel before 4.8.14 allows local users to gain privileges or cause a denial of service (use-after-free) by making multiple bind system calls without properly ascertaining whether a socket has the SOCK_ZAPPED status, related to net/l2tp/l2tp_ip.c and net/l2tp/l2tp_ip6.c.

EPSS 0.03% · 7.7th percentile

Risk Scores

EPSS Score
0.03%
7.7th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSlinux-raspi24.4.0-1040.47, 4.4.0-1038.45, 4.4.0-1034.41
Ubuntu:16.04:LTSlinux-hwe4.8.0-36.36~16.04.1, 0
Ubuntu:14.04:LTSlinux3.13.0-11.31, 3.13.0-12.32, 3.13.0-13.33
Ubuntu:16.04:LTSlinux-snapdragon0, 4.4.0-1013.14, 4.4.0-1012.12
Ubuntu:16.04:LTSlinux-aws0, 4.4.0-1001.10
Ubuntu:16.04:LTSlinux4.4.0-14.30, 4.4.0-15.31, 4.4.0-16.32
Ubuntu:14.04:LTSlinux-lts-xenial4.4.0-18.34~14.04.1, 4.4.0-15.31~14.04.1, 4.4.0-14.30~14.04.2

Timeline

References

Open in Interactive Console →