Return to CVE list

CVE-2016-8645

5.5
Medium

CVE-2016-8645

secalert@redhat.com
Modified

Description

The TCP stack in the Linux kernel before 4.8.10 mishandles skb truncation, which allows local users to cause a denial of service (system crash) via a crafted application that makes sendto system calls, related to net/ipv4/tcp_ipv4.c and net/ipv6/tcp_ipv6.c.

Exploits

No known exploits found for this CVE.

Search Exploit-DB

References

af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/bid/94264
af854a3a-2127-422b-91ae-364da2661108
http://www.securitytracker.com/id/1037285
af854a3a-2127-422b-91ae-364da2661108
https://access.redhat.com/errata/RHSA-2017:1842
af854a3a-2127-422b-91ae-364da2661108
https://access.redhat.com/errata/RHSA-2017:2077
af854a3a-2127-422b-91ae-364da2661108
https://access.redhat.com/errata/RHSA-2017:2669
af854a3a-2127-422b-91ae-364da2661108
https://bugzilla.redhat.com/show_bug.cgi?id=1393904