CVE-2016-5828 PUBLISHED

The start_thread function in arch/powerpc/kernel/process.c in the Linux kernel through 4.6.3 on powerpc platforms mishandles transactional state, which allows local users to cause a denial of service (invalid process state or TM Bad Thing exception, and system crash) or possibly have unspecified other impact by starting and suspending a transaction before an exec system call.

EPSS 0.09% · 26.1th percentile

Risk Scores

EPSS Score
0.09%
26.1th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSlinux-snapdragon4.4.0-1022.25, 4.4.0-1020.23, 4.4.0-1019.22
Ubuntu:14.04:LTSlinux-lts-xenial4.4.0-34.53~14.04.1, 4.4.0-31.50~14.04.1, 4.4.0-28.47~14.04.1
Ubuntu:14.04:LTSlinux3.13.0-8.28, 3.13.0-10.30, 3.13.0-11.31
Ubuntu:14.04:LTSlinux-lts-vivid3.19.0-65.73~14.04.1, 3.19.0-66.74~14.04.1, 3.19.0-47.53~14.04.1
Ubuntu:16.04:LTSlinux4.4.0-18.34, 0, 4.2.0-16.19
Ubuntu:16.04:LTSlinux-raspi24.4.0-1010.13, 4.4.0-1012.16, 4.4.0-1016.22

Timeline

References

Open in Interactive Console →