High severity7.8NVD Advisory· Published May 2, 2016· Updated May 6, 2026
CVE-2015-8019
CVE-2015-8019
Description
The skb_copy_and_csum_datagram_iovec function in net/core/datagram.c in the Linux kernel 3.14.54 and 3.18.22 does not accept a length argument, which allows local users to cause a denial of service (memory corruption) or possibly have unspecified other impact via a write system call followed by a recvmsg system call.
Affected products
2Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
9- lists.opensuse.org/opensuse-security-announce/2016-08/msg00003.htmlnvd
- lists.opensuse.org/opensuse-security-announce/2016-08/msg00008.htmlnvd
- lists.opensuse.org/opensuse-security-announce/2016-08/msg00009.htmlnvd
- lists.opensuse.org/opensuse-security-announce/2016-08/msg00018.htmlnvd
- lists.opensuse.org/opensuse-security-announce/2016-08/msg00021.htmlnvd
- patchwork.ozlabs.org/patch/530642/nvd
- www.openwall.com/lists/oss-security/2015/10/27/11nvd
- www.securityfocus.com/bid/77326nvd
- bugzilla.redhat.com/show_bug.cginvd
News mentions
0No linked articles in our index yet.