VDB

DEBIAN-CVE-2016-4913

DEBIAN-CVE-2016-4913 PUBLISHED CVSS 7.800000190734863 HIGH

The get_rock_ridge_filename function in fs/isofs/rock.c in the Linux kernel before 4.5.5 mishandles NM (aka alternate name) entries containing \0 characters, which allows local users to obtain sensitive information from kernel memory or possibly have unspecified other impact via a crafted isofs filesystem.

Risk Scores

CVSS v3.1
7.800000190734863
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Affected Products

VendorProductVersions
Debian:13linux0, 0, 0
Debian:11linux0, 0, 0
Debian:12linux0, 0, 0
Debian:14linux0, 0, 0

Timeline

  • May 23, 2016 CVE Published
  • Apr 28, 2026 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›