CVE-2016-5244 - CVE House
Back to Database
Status published High CVE-2016-5244

The rds_inc_info_copy function in net/rds/recv.c in the Linux kernel through...

Vulnerability Description

The rds_inc_info_copy function in net/rds/recv.c in the Linux kernel through 4.6.3 does not initialize a certain structure member, which allows remote attackers to obtain sensitive information from kernel stack memory by reading an RDS message.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2016-5244

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

fedoraproject

View all reports →

Affected Software

fedora, linux enterprise real time extension, linux enterprise debuginfo, linux enterprise server, enterprise linux, suse linux enterprise software development kit, linux enterprise workstation extension, linux enterprise desktop, opensuse leap, linux kernel, suse linux enterprise server
Vulnerable Versions:
23, 24, 22, 11, 12, 6.0, 5, 42.1, 0

Timeline

Official Publish: June 27th, 2016
Last Modified: August 6th, 2024
Added to House: July 20th, 2026

CVSS Vectors

V3: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.