High severity7.8NVD Advisory· Published Jan 5, 2017· Updated May 6, 2026
CVE-2016-9754
CVE-2016-9754
Description
The ring_buffer_resize function in kernel/trace/ring_buffer.c in the profiling subsystem in the Linux kernel before 4.6.1 mishandles certain integer calculations, which allows local users to gain privileges by writing to the /sys/kernel/debug/tracing/buffer_size_kb file.
Affected products
2Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5- github.com/torvalds/linux/commit/59643d1535eb220668692a5359de22545af579f6nvdPatchVendor Advisory
- git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/nvdExploitPatchVendor Advisory
- www.securityfocus.com/bid/95278nvdThird Party AdvisoryVDB Entry
- source.android.com/security/bulletin/2017-01-01.htmlnvdThird Party Advisory
- www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.6.1nvdRelease Notes
News mentions
0No linked articles in our index yet.