Back to Database
Status published
High
CVE-2016-10905
An issue was discovered in fs/gfs2/rgrp.c in the Linux kernel...
Vulnerability Description
An issue was discovered in fs/gfs2/rgrp.c in the Linux kernel before 4.8. A use-after-free is caused by the functions gfs2_clear_rgrpd and read_rindex_entry.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2016-10905
Credits & Attribution
No credits recorded in the NVD database.
References
- https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=36e4ad0316c017d5b271378ed9a1c9a4b77fab5f
- https://lists.debian.org/debian-lts-announce/2019/09/msg00025.html
- https://usn.ubuntu.com/4145-1/
- https://support.f5.com/csp/article/K31332013
- https://support.f5.com/csp/article/K31332013?utm_source=f5support&%3Butm_medium=RSS
- http://packetstormsecurity.com/files/154951/Kernel-Live-Patch-Security-Notice-LSN-0058-1.html
- https://seclists.org/bugtraq/2019/Nov/11
- http://packetstormsecurity.com/files/155212/Slackware-Security-Advisory-Slackware-14.2-kernel-Updates.html
More from linux
View All →CVE-2022-48619
An issue was discovered in drivers/input/input.c in the Linux kernel...
Unknown
0
CVE-2022-48502
An issue was discovered in the Linux kernel before 6.2....
High
7.1
CVE-2022-48425
In the Linux kernel through 6.2.7, fs/ntfs3/inode.c has an invalid...
Unknown
0
CVE-2022-48424
In the Linux kernel before 6.1.3, fs/ntfs3/inode.c does not validate...
Unknown
0
CVE-2022-48423
In the Linux kernel before 6.1.3, fs/ntfs3/record.c does not validate...
Unknown
0
Affected Vendor
linux
View all reports →Affected Software
linux kernel
Vulnerable Versions:
0, 3.4, 3.17, 4.5
Timeline
Official Publish:
August 19th, 2019
Last Modified:
August 6th, 2024
Added to House:
July 20th, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.