View at Official suse advisory, NVD, CVE.org · CVE detail
Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.
CVE-2016-6197 severity moderate: SUSE including 36 source package names (kernel-default, kernel-default-4.4.21-69.1, …), 333 product×package rows across 79 product lines (SUSE CaaS Platform 4.0, SUSE CaaS Platform 4.5, … (79 product lines)): Known Not Affected 290, Fixed 43.
fs/overlayfs/dir.c in the OverlayFS filesystem implementation in the Linux kernel before 4.6 does not properly verify the upper dentry before proceeding with unlink and rename system-call processing, which allows local users to cause a denial of service (system crash) via a rename system call that specifies a self-hardlink.