CVE-2016-6136

Published on: 08/06/2016 12:00:00 AM UTC

Last Modified on: 03/23/2021 11:27:12 PM UTC

CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:H/A:N

Certain versions of Linux Kernel from Linux contain the following vulnerability:

Race condition in the audit_log_single_execve_arg function in kernel/auditsc.c in the Linux kernel through 4.7 allows local users to bypass intended character-set restrictions or disrupt system-call auditing by changing a certain string, aka a "double fetch" vulnerability.

  • CVE-2016-6136 has been assigned by [email protected] to track the vulnerability - currently rated as MEDIUM severity.

CVSS3 Score: 4.7 - MEDIUM

Attack
Vector
Attack
Complexity
Privileges
Required
User
Interaction
LOCAL HIGH LOW NONE
Scope Confidentiality
Impact
Integrity
Impact
Availability
Impact
UNCHANGED NONE HIGH NONE

CVSS2 Score: 1.9 - LOW

Access
Vector
Access
Complexity
Authentication
LOCAL MEDIUM NONE
Confidentiality
Impact
Integrity
Impact
Availability
Impact
NONE PARTIAL NONE

CVE References

Description Tags Link
SecurityFocus Third Party Advisory
VDB Entry
www.securityfocus.com
text/html
URL Logo BUGTRAQ 20160704 [CVE-2016-6136] Double-Fetch Vulnerability in Linux-4.6/kernel/auditsc.c
Bug 1353533 – CVE-2016-6136 kernel: Race condition vulnerability in execve argv arguments Issue Tracking
bugzilla.redhat.com
text/html
URL Logo CONFIRM bugzilla.redhat.com/show_bug.cgi?id=1353533
Android Security Bulletin—November 2016 | Android Open Source Project source.android.com
text/html
URL Logo CONFIRM source.android.com/security/bulletin/2016-11-01.html
Linux Kernel CVE-2016-6136 Local Information Disclosure Vulnerability cve.report (archive)
text/html
URL Logo BID 91558
audit: fix a double fetch in audit_log_single_execve_arg() · torvalds/[email protected] · GitHub Issue Tracking
Patch
github.com
text/html
URL Logo CONFIRM github.com/torvalds/linux/commit/43761473c254b45883a64441dd0bc85a42f3645c
Red Hat Customer Portal web.archive.org
text/html
Inactive LinkNot Archived
URL Logo REDHAT RHSA-2017:0307
Red Hat Customer Portal web.archive.org
text/html
Inactive LinkNot Archived
URL Logo REDHAT RHSA-2016:2574
BUG: fix double fetch in audit_log_single_execve_arg() · Issue #18 · linux-audit/audit-kernel · GitHub Issue Tracking
Patch
github.com
text/html
URL Logo CONFIRM github.com/linux-audit/audit-kernel/issues/18
kernel/git/torvalds/linux.git - Linux kernel source tree Issue Tracking
Patch
git.kernel.org
text/html
URL Logo CONFIRM git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=43761473c254b45883a64441dd0bc85a42f3645c
120681 – Double-Fetch bug in Linux-4.6/kernel/auditsc.c Issue Tracking
bugzilla.kernel.org
text/html
URL Logo CONFIRM bugzilla.kernel.org/show_bug.cgi?id=120681
Red Hat Customer Portal web.archive.org
text/html
Inactive LinkNot Archived
URL Logo REDHAT RHSA-2016:2584

Known Affected Configurations (CPE V2.3)

Type Vendor Product Version Update Edition Language
Operating
System
LinuxLinux KernelAllAllAllAll
  • cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*: