VYPR
Critical severity9.8NVD Advisory· Published Apr 4, 2017· Updated May 13, 2026

CVE-2016-10229

CVE-2016-10229

Description

udp.c in the Linux kernel before 4.5 allows remote attackers to execute arbitrary code via UDP traffic that triggers an unsafe second checksum calculation during execution of a recv system call with the MSG_PEEK flag.

Affected products

2
  • cpe:2.3:o:google:android:*:*:*:*:*:*:*:*
    Range: <=7.1.1
  • cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
    Range: >=3.2,<3.2.76

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

7

News mentions

0

No linked articles in our index yet.