ubuntu · CVE-2016-9919

Quick triage

Priority: medium Published: 2016-12-08 00:00:00 UTC Updated: 2025-08-25 22:15:07 UTC

View at Official ubuntu advisory, NVD, CVE.org · CVE detail

Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.

Tracker summary

CVE-2016-9919 medium priority: Ubuntu including 83 source packages (linux, linux-armadaxp, …), 650 status rows across 11 suites (bionic, focal, jammy, noble, oracular, precise, trusty, upstream, xenial, yakkety, zesty): DNE 411, not-affected 132, released 90, ignored 17.

Description:

The icmp6_send function in net/ipv6/icmp.c in the Linux kernel through 4.8.12 omits a certain check of the dst data structure, which allows remote attackers to cause a denial of service (panic) via a fragmented IPv6 packet.

cvelogic Threat Intelligence