CVE-2016-4581
MEDIUMCanonical Ubuntu Linux < 4.5.3 - Denial of Service
Title source: ruleDescription
fs/pnode.c in the Linux kernel before 4.5.4 does not properly traverse a mount propagation tree in a certain case involving a slave mount, which allows local users to cause a denial of service (NULL pointer dereference and OOPS) via a crafted series of mount system calls.
References (22)
... and 2 more
Scores
CVSS v3
5.5
EPSS
0.0003
EPSS Percentile
8.3%
Attack Vector
LOCAL
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Classification
Status
draft
Affected Products (6)
canonical/ubuntu_linux
canonical/ubuntu_linux
canonical/ubuntu_linux
canonical/ubuntu_linux
linux/linux_kernel
< 4.5.3
oracle/linux
Timeline
Published
May 23, 2016
Tracked Since
Feb 18, 2026