Medium severity5.1NVD Advisory· Published Aug 6, 2016· Updated May 6, 2026
CVE-2016-6480
CVE-2016-6480
Description
Race condition in the ioctl_send_fib function in drivers/scsi/aacraid/commctrl.c in the Linux kernel through 4.7 allows local users to cause a denial of service (out-of-bounds access or system crash) by changing a certain size value, aka a "double fetch" vulnerability.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
14- www.securityfocus.com/archive/1/539074/30/0/threadednvdThird Party AdvisoryVDB Entry
- bugzilla.redhat.com/show_bug.cginvdIssue TrackingThird Party AdvisoryVDB Entry
- lists.opensuse.org/opensuse-security-announce/2016-08/msg00048.htmlnvd
- lists.opensuse.org/opensuse-security-announce/2016-08/msg00049.htmlnvd
- lists.opensuse.org/opensuse-security-announce/2016-08/msg00050.htmlnvd
- lists.opensuse.org/opensuse-security-announce/2016-08/msg00051.htmlnvd
- lists.opensuse.org/opensuse-security-announce/2016-08/msg00052.htmlnvd
- lists.opensuse.org/opensuse-security-announce/2016-08/msg00053.htmlnvd
- lists.opensuse.org/opensuse-security-announce/2016-08/msg00054.htmlnvd
- lists.opensuse.org/opensuse-security-announce/2016-09/msg00001.htmlnvd
- rhn.redhat.com/errata/RHSA-2016-2574.htmlnvd
- rhn.redhat.com/errata/RHSA-2016-2584.htmlnvd
- rhn.redhat.com/errata/RHSA-2017-0817.htmlnvd
- www.securityfocus.com/bid/92214nvd
News mentions
0No linked articles in our index yet.