CVE 2016-2550
The Linux kernel before 4.5 allows local users to bypass file-descriptor limits and cause a denial of service (memory consumption) by leveraging incorrect tracking of descriptor ownership and sending each descriptor over a UNIX socket before closing it. NOTE: this vulnerability exists because of an incorrect fix for CVE-2013-4312.
Related bugs and status
CVE-2016-2550 (Candidate) is related to these bugs:
Bug #1549203: CVE-2016-2550
Summary | In | Importance | Status | |||
---|---|---|---|---|---|---|
1549203 | CVE-2016-2550 | linux (Ubuntu) | Medium | Fix Released | ||
1549203 | CVE-2016-2550 | linux-ti-omap4 (Ubuntu) | Medium | Invalid | ||
1549203 | CVE-2016-2550 | linux-raspi2 (Ubuntu) | Medium | Invalid | ||
1549203 | CVE-2016-2550 | linux (Ubuntu Xenial) | Medium | Fix Committed | ||
1549203 | CVE-2016-2550 | linux-raspi2 (Ubuntu Xenial) | Medium | Invalid | ||
1549203 | CVE-2016-2550 | linux-ti-omap4 (Ubuntu Xenial) | Medium | Invalid | ||
1549203 | CVE-2016-2550 | linux (Ubuntu Wily) | Medium | Fix Released | ||
1549203 | CVE-2016-2550 | linux-raspi2 (Ubuntu Wily) | Medium | Fix Released | ||
1549203 | CVE-2016-2550 | linux-ti-omap4 (Ubuntu Wily) | Medium | Invalid | ||
1549203 | CVE-2016-2550 | linux (Ubuntu Vivid) | Undecided | Won't Fix | ||
1549203 | CVE-2016-2550 | linux-raspi2 (Ubuntu Vivid) | Undecided | Won't Fix | ||
1549203 | CVE-2016-2550 | linux-ti-omap4 (Ubuntu Vivid) | Undecided | Won't Fix | ||
1549203 | CVE-2016-2550 | linux (Ubuntu Trusty) | Medium | Fix Released | ||
1549203 | CVE-2016-2550 | linux-raspi2 (Ubuntu Trusty) | Medium | Invalid | ||
1549203 | CVE-2016-2550 | linux-ti-omap4 (Ubuntu Trusty) | Medium | Invalid | ||
1549203 | CVE-2016-2550 | linux (Ubuntu Precise) | Medium | Invalid | ||
1549203 | CVE-2016-2550 | linux-raspi2 (Ubuntu Precise) | Medium | Invalid | ||
1549203 | CVE-2016-2550 | linux-ti-omap4 (Ubuntu Precise) | Medium | Invalid | ||
1549203 | CVE-2016-2550 | linux-lts-trusty (Ubuntu) | Medium | Invalid | ||
1549203 | CVE-2016-2550 | linux-lts-trusty (Ubuntu Precise) | Medium | Fix Released | ||
1549203 | CVE-2016-2550 | linux-lts-trusty (Ubuntu Trusty) | Medium | Invalid | ||
1549203 | CVE-2016-2550 | linux-lts-trusty (Ubuntu Vivid) | Undecided | Won't Fix | ||
1549203 | CVE-2016-2550 | linux-lts-trusty (Ubuntu Wily) | Medium | Invalid | ||
1549203 | CVE-2016-2550 | linux-lts-trusty (Ubuntu Xenial) | Medium | Invalid | ||
1549203 | CVE-2016-2550 | linux-armadaxp (Ubuntu) | Medium | Invalid | ||
1549203 | CVE-2016-2550 | linux-armadaxp (Ubuntu Precise) | Medium | Invalid | ||
1549203 | CVE-2016-2550 | linux-armadaxp (Ubuntu Trusty) | Medium | Invalid | ||
1549203 | CVE-2016-2550 | linux-armadaxp (Ubuntu Vivid) | Undecided | Won't Fix | ||
1549203 | CVE-2016-2550 | linux-armadaxp (Ubuntu Wily) | Medium | Invalid | ||
1549203 | CVE-2016-2550 | linux-armadaxp (Ubuntu Xenial) | Medium | Invalid | ||
1549203 | CVE-2016-2550 | linux-lts-xenial (Ubuntu) | Medium | Invalid | ||
1549203 | CVE-2016-2550 | linux-lts-xenial (Ubuntu Precise) | Medium | Invalid | ||
1549203 | CVE-2016-2550 | linux-lts-xenial (Ubuntu Trusty) | Medium | Fix Committed | ||
1549203 | CVE-2016-2550 | linux-lts-xenial (Ubuntu Vivid) | Undecided | New | ||
1549203 | CVE-2016-2550 | linux-lts-xenial (Ubuntu Wily) | Medium | Invalid | ||
1549203 | CVE-2016-2550 | linux-lts-xenial (Ubuntu Xenial) | Medium | Invalid | ||
1549203 | CVE-2016-2550 | linux-lts-wily (Ubuntu) | Medium | Invalid | ||
1549203 | CVE-2016-2550 | linux-lts-wily (Ubuntu Precise) | Medium | Invalid | ||
1549203 | CVE-2016-2550 | linux-lts-wily (Ubuntu Trusty) | Medium | Fix Released | ||
1549203 | CVE-2016-2550 | linux-lts-wily (Ubuntu Vivid) | Undecided | New | ||
1549203 | CVE-2016-2550 | linux-lts-wily (Ubuntu Wily) | Medium | Invalid | ||
1549203 | CVE-2016-2550 | linux-lts-wily (Ubuntu Xenial) | Medium | Invalid | ||
1549203 | CVE-2016-2550 | linux-goldfish (Ubuntu) | Medium | New | ||
1549203 | CVE-2016-2550 | linux-goldfish (Ubuntu Precise) | Medium | Invalid | ||
1549203 | CVE-2016-2550 | linux-goldfish (Ubuntu Trusty) | Medium | Invalid | ||
1549203 | CVE-2016-2550 | linux-goldfish (Ubuntu Vivid) | Undecided | Won't Fix | ||
1549203 | CVE-2016-2550 | linux-goldfish (Ubuntu Wily) | Medium | New | ||
1549203 | CVE-2016-2550 | linux-goldfish (Ubuntu Xenial) | Medium | New | ||
1549203 | CVE-2016-2550 | linux-lts-saucy (Ubuntu) | Medium | Invalid | ||
1549203 | CVE-2016-2550 | linux-lts-saucy (Ubuntu Precise) | Medium | Invalid | ||
1549203 | CVE-2016-2550 | linux-lts-saucy (Ubuntu Trusty) | Medium | Invalid | ||
1549203 | CVE-2016-2550 | linux-lts-saucy (Ubuntu Vivid) | Undecided | New | ||
1549203 | CVE-2016-2550 | linux-lts-saucy (Ubuntu Wily) | Medium | Invalid | ||
1549203 | CVE-2016-2550 | linux-lts-saucy (Ubuntu Xenial) | Medium | Invalid | ||
1549203 | CVE-2016-2550 | linux-lts-quantal (Ubuntu) | Medium | Invalid | ||
1549203 | CVE-2016-2550 | linux-lts-quantal (Ubuntu Precise) | Medium | Invalid | ||
1549203 | CVE-2016-2550 | linux-lts-quantal (Ubuntu Trusty) | Medium | Invalid | ||
1549203 | CVE-2016-2550 | linux-lts-quantal (Ubuntu Vivid) | Undecided | Won't Fix | ||
1549203 | CVE-2016-2550 | linux-lts-quantal (Ubuntu Wily) | Medium | Invalid | ||
1549203 | CVE-2016-2550 | linux-lts-quantal (Ubuntu Xenial) | Medium | Invalid | ||
1549203 | CVE-2016-2550 | linux-lts-vivid (Ubuntu) | Medium | Invalid | ||
1549203 | CVE-2016-2550 | linux-lts-vivid (Ubuntu Precise) | Medium | Invalid | ||
1549203 | CVE-2016-2550 | linux-lts-vivid (Ubuntu Trusty) | Medium | Fix Released | ||
1549203 | CVE-2016-2550 | linux-lts-vivid (Ubuntu Vivid) | Undecided | Won't Fix | ||
1549203 | CVE-2016-2550 | linux-lts-vivid (Ubuntu Wily) | Medium | Invalid | ||
1549203 | CVE-2016-2550 | linux-lts-vivid (Ubuntu Xenial) | Medium | Invalid | ||
1549203 | CVE-2016-2550 | linux-mako (Ubuntu) | Medium | New | ||
1549203 | CVE-2016-2550 | linux-mako (Ubuntu Precise) | Medium | Invalid | ||
1549203 | CVE-2016-2550 | linux-mako (Ubuntu Trusty) | Medium | Invalid | ||
1549203 | CVE-2016-2550 | linux-mako (Ubuntu Vivid) | Undecided | Won't Fix | ||
1549203 | CVE-2016-2550 | linux-mako (Ubuntu Wily) | Medium | New | ||
1549203 | CVE-2016-2550 | linux-mako (Ubuntu Xenial) | Medium | New | ||
1549203 | CVE-2016-2550 | linux-lts-utopic (Ubuntu) | Medium | Invalid | ||
1549203 | CVE-2016-2550 | linux-lts-utopic (Ubuntu Precise) | Medium | Invalid | ||
1549203 | CVE-2016-2550 | linux-lts-utopic (Ubuntu Trusty) | Medium | Fix Released |
See the
CVE page on Mitre.org
for more details.