CVE-2015-3290
Linux kernel <4.1.6 - Privilege Escalation
Title source: llmDescription
arch/x86/entry/entry_64.S in the Linux kernel before 4.1.6 on the x86_64 platform improperly relies on espfix64 during nested NMI processing, which allows local users to gain privileges by triggering an NMI within a certain instruction window.
Exploits (1)
exploitdb
WORKING POC
by Andrew Lutomirski · clocallinux_x86-64
https://www.exploit-db.com/exploits/37722
References (15)
Scores
EPSS
0.0029
EPSS Percentile
52.7%
Details
CWE
CWE-264
Status
published
Products (1)
linux/linux_kernel
< 3.12.47
Published
Aug 31, 2015
Tracked Since
Feb 18, 2026