CVE-2016-8859 PUBLISHED

Multiple integer overflows in the TRE library and musl libc allow attackers to cause memory corruption via a large number of (1) states or (2) tags, which triggers an out-of-bounds write.

EPSS 0.77% · 73.3th percentile

Risk Scores

EPSS Score
0.77%
73.3th percentile

Affected Products

VendorProductVersions
Ubuntu:Pro:16.04:LTSmusl1.1.9-1, 0
Ubuntu:Pro:14.04:LTSmusl0.9.14-2, 0.9.14-2ubuntu1, 0
Ubuntu:14.04:LTStre0.8.0-3, 0.8.0-3ubuntu1, 0
Ubuntu:16.04:LTStre0, 0.8.0-4

Timeline

References

Open in Interactive Console →