Beveiligingsadvies

CVE-2016-6136

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2016-08-06 20:00:00
Laatst bijgewerkt 2024-08-06 01:22:19
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

Race condition in the audit_log_single_execve_arg function in kernel/auditsc.c in the Linux kernel through 4.7 allows local users to bypass intended character-set restrictions or disrupt system-call auditing by changing a certain string, aka a "double fetch" vulnerability.