CVE-2016-10044

Publication date

2017-02-07 07:02:00

Family

google_android

State

PUBLISHED

Description

The aio_mount function in fs/aio.c in the Linux kernel before 4.7.7 does not properly restrict execute access, which makes it easier for local users to bypass intended SELinux W^X policy restrictions, and consequently gain privileges, via an io_setup system call.