suse · CVE-2016-5195

Quick triage

Priority: high Published: 2021-05-30 13:43:10 UTC Updated: 2025-04-22 23:46:05 UTC

View at Official suse advisory, NVD, CVE.org · CVE detail

Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.

Tracker summary

CVE-2016-5195 severity important: SUSE including 297 source package names (cri-o-1.17.1-lp151.2.2, cri-o-kubeadm-criconfig-1.17.1-lp151.2.2, …), 732 product×package rows across 104 product lines (HPE Helion OpenStack 8, SUSE CaaS Platform 4.0, … (104 product lines)): Fixed 446, Known Not Affected 286.

Description:

Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by leveraging incorrect handling of a copy-on-write (COW) feature to write to a read-only memory mapping, as exploited in the wild in October 2016, aka "Dirty COW."

cvelogic Threat Intelligence