CVE-2015-3290

Linux kernel <4.1.6 - Privilege Escalation

Title source: llm

Description

arch/x86/entry/entry_64.S in the Linux kernel before 4.1.6 on the x86_64 platform improperly relies on espfix64 during nested NMI processing, which allows local users to gain privileges by triggering an NMI within a certain instruction window.

Exploits (1)

exploitdb WORKING POC
by Andrew Lutomirski · clocallinux_x86-64
https://www.exploit-db.com/exploits/37722

Scores

EPSS 0.0029
EPSS Percentile 52.7%

Details

CWE
CWE-264
Status published
Products (1)
linux/linux_kernel < 3.12.47
Published Aug 31, 2015
Tracked Since Feb 18, 2026