High severity7.1NVD Advisory· Published Jul 3, 2016· Updated May 6, 2026
CVE-2016-4998
CVE-2016-4998
Description
The IPT_SO_SET_REPLACE setsockopt implementation in the netfilter subsystem in the Linux kernel before 4.6 allows local users to cause a denial of service (out-of-bounds read) or possibly obtain sensitive information from kernel heap memory by leveraging in-container root access to provide a crafted offset value that leads to crossing a ruleset blob boundary.
Affected products
6cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:lts:*:*:*+ 3 more
- cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:lts:*:*:*
- cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*
- cpe:2.3:o:canonical:ubuntu_linux:15.10:*:*:*:*:*:*:*
- cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*
- cpe:2.3:o:oracle:linux:7:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
27- github.com/torvalds/linux/commit/6e94e0cfb0887e4013b3b930fa6ab1fe6bb6ba91nvdPatchVendor Advisory
- www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.htmlnvdThird Party Advisory
- www.ubuntu.com/usn/USN-3016-1nvdThird Party Advisory
- www.ubuntu.com/usn/USN-3016-2nvdThird Party Advisory
- www.ubuntu.com/usn/USN-3016-3nvdThird Party Advisory
- www.ubuntu.com/usn/USN-3016-4nvdThird Party Advisory
- www.ubuntu.com/usn/USN-3017-1nvdThird Party Advisory
- www.ubuntu.com/usn/USN-3017-2nvdThird Party Advisory
- www.ubuntu.com/usn/USN-3017-3nvdThird Party Advisory
- www.ubuntu.com/usn/USN-3018-1nvdThird Party Advisory
- www.ubuntu.com/usn/USN-3018-2nvdThird Party Advisory
- www.ubuntu.com/usn/USN-3019-1nvdThird Party Advisory
- www.ubuntu.com/usn/USN-3020-1nvdThird Party Advisory
- bugzilla.redhat.com/show_bug.cginvdIssue TrackingThird Party AdvisoryVDB Entry
- git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/nvd
- lists.opensuse.org/opensuse-security-announce/2016-08/msg00044.htmlnvd
- lists.opensuse.org/opensuse-security-announce/2016-08/msg00055.htmlnvd
- rhn.redhat.com/errata/RHSA-2016-1847.htmlnvd
- rhn.redhat.com/errata/RHSA-2016-1875.htmlnvd
- rhn.redhat.com/errata/RHSA-2016-1883.htmlnvd
- rhn.redhat.com/errata/RHSA-2017-0036.htmlnvd
- www.debian.org/security/2016/dsa-3607nvd
- www.openwall.com/lists/oss-security/2016/06/24/5nvd
- www.oracle.com/technetwork/topics/security/linuxbulletinoct2016-3090545.htmlnvd
- www.oracle.com/technetwork/topics/security/ovmbulletinoct2016-3090547.htmlnvd
- www.securityfocus.com/bid/91451nvd
- www.securitytracker.com/id/1036171nvd
News mentions
0No linked articles in our index yet.