Upstream information

CVE-2016-4581 at MITRE

Description

fs/pnode.c in the Linux kernel before 4.5.4 does not properly traverse a mount propagation tree in a certain case involving a slave mount, which allows local users to cause a denial of service (NULL pointer dereference and OOPS) via a crafted series of mount system calls.

SUSE information

CVSS v2 Scores
  National Vulnerability Database SUSE
Base Score 4.94 4.68
Vector AV:L/AC:L/Au:N/C:N/I:N/A:C AV:L/AC:M/Au:N/C:N/I:N/A:C
Access Vector Local Local
Access Complexity Low Medium
Authentication None None
Confidentiality Impact None None
Integrity Impact None None
Availability Impact Complete Complete
CVSS v3 Scores
  National Vulnerability Database
Base Score 5.5
Vector AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Access Vector Local
Access Complexity Low
Privileges Required Low
User Interaction None
Scope Unchanged
Confidentiality Impact None
Integrity Impact None
Availability Impact High
SUSE Bugzilla entry: 979913 [RESOLVED / FIXED]

SUSE Security Advisories:

List of released packages

Product(s) Fixed package version(s) References
openSUSE 13.2
  • bbswitch >= 0.8-3.20.3
  • bbswitch-debugsource >= 0.8-3.20.3
  • bbswitch-kmp-default >= 0.8_k3.16.7_42-3.20.3
  • bbswitch-kmp-default-debuginfo >= 0.8_k3.16.7_42-3.20.3
  • bbswitch-kmp-desktop >= 0.8_k3.16.7_42-3.20.3
  • bbswitch-kmp-desktop-debuginfo >= 0.8_k3.16.7_42-3.20.3
  • bbswitch-kmp-pae >= 0.8_k3.16.7_42-3.20.3
  • bbswitch-kmp-pae-debuginfo >= 0.8_k3.16.7_42-3.20.3
  • bbswitch-kmp-xen >= 0.8_k3.16.7_42-3.20.3
  • bbswitch-kmp-xen-debuginfo >= 0.8_k3.16.7_42-3.20.3
  • cloop >= 2.639-14.20.3
  • cloop-debuginfo >= 2.639-14.20.3
  • cloop-debugsource >= 2.639-14.20.3
  • cloop-kmp-default >= 2.639_k3.16.7_42-14.20.3
  • cloop-kmp-default-debuginfo >= 2.639_k3.16.7_42-14.20.3
  • cloop-kmp-desktop >= 2.639_k3.16.7_42-14.20.3
  • cloop-kmp-desktop-debuginfo >= 2.639_k3.16.7_42-14.20.3
  • cloop-kmp-pae >= 2.639_k3.16.7_42-14.20.3
  • cloop-kmp-pae-debuginfo >= 2.639_k3.16.7_42-14.20.3
  • cloop-kmp-xen >= 2.639_k3.16.7_42-14.20.3
  • cloop-kmp-xen-debuginfo >= 2.639_k3.16.7_42-14.20.3
  • crash >= 7.0.8-20.3
  • crash-debuginfo >= 7.0.8-20.3
  • crash-debugsource >= 7.0.8-20.3
  • crash-devel >= 7.0.8-20.3
  • crash-doc >= 7.0.8-20.3
  • crash-eppic >= 7.0.8-20.3
  • crash-eppic-debuginfo >= 7.0.8-20.3
  • crash-gcore >= 7.0.8-20.3
  • crash-gcore-debuginfo >= 7.0.8-20.3
  • crash-kmp-default >= 7.0.8_k3.16.7_42-20.3
  • crash-kmp-default-debuginfo >= 7.0.8_k3.16.7_42-20.3
  • crash-kmp-desktop >= 7.0.8_k3.16.7_42-20.3
  • crash-kmp-desktop-debuginfo >= 7.0.8_k3.16.7_42-20.3
  • crash-kmp-pae >= 7.0.8_k3.16.7_42-20.3
  • crash-kmp-pae-debuginfo >= 7.0.8_k3.16.7_42-20.3
  • crash-kmp-xen >= 7.0.8_k3.16.7_42-20.3
  • crash-kmp-xen-debuginfo >= 7.0.8_k3.16.7_42-20.3
  • hdjmod >= 1.28-18.21.3
  • hdjmod-debugsource >= 1.28-18.21.3
  • hdjmod-kmp-default >= 1.28_k3.16.7_42-18.21.3
  • hdjmod-kmp-default-debuginfo >= 1.28_k3.16.7_42-18.21.3
  • hdjmod-kmp-desktop >= 1.28_k3.16.7_42-18.21.3
  • hdjmod-kmp-desktop-debuginfo >= 1.28_k3.16.7_42-18.21.3
  • hdjmod-kmp-pae >= 1.28_k3.16.7_42-18.21.3
  • hdjmod-kmp-pae-debuginfo >= 1.28_k3.16.7_42-18.21.3
  • hdjmod-kmp-xen >= 1.28_k3.16.7_42-18.21.3
  • hdjmod-kmp-xen-debuginfo >= 1.28_k3.16.7_42-18.21.3
  • ipset >= 6.23-20.3
  • ipset-debuginfo >= 6.23-20.3
  • ipset-debugsource >= 6.23-20.3
  • ipset-devel >= 6.23-20.3
  • ipset-kmp-default >= 6.23_k3.16.7_42-20.3
  • ipset-kmp-default-debuginfo >= 6.23_k3.16.7_42-20.3
  • ipset-kmp-desktop >= 6.23_k3.16.7_42-20.3
  • ipset-kmp-desktop-debuginfo >= 6.23_k3.16.7_42-20.3
  • ipset-kmp-pae >= 6.23_k3.16.7_42-20.3
  • ipset-kmp-pae-debuginfo >= 6.23_k3.16.7_42-20.3
  • ipset-kmp-xen >= 6.23_k3.16.7_42-20.3
  • ipset-kmp-xen-debuginfo >= 6.23_k3.16.7_42-20.3
  • kernel-debug >= 3.16.7-42.1
  • kernel-debug-base >= 3.16.7-42.1
  • kernel-debug-base-debuginfo >= 3.16.7-42.1
  • kernel-debug-debuginfo >= 3.16.7-42.1
  • kernel-debug-debugsource >= 3.16.7-42.1
  • kernel-debug-devel >= 3.16.7-42.1
  • kernel-debug-devel-debuginfo >= 3.16.7-42.1
  • kernel-default >= 3.16.7-42.1
  • kernel-default-base >= 3.16.7-42.1
  • kernel-default-base-debuginfo >= 3.16.7-42.1
  • kernel-default-debuginfo >= 3.16.7-42.1
  • kernel-default-debugsource >= 3.16.7-42.1
  • kernel-default-devel >= 3.16.7-42.1
  • kernel-desktop >= 3.16.7-42.1
  • kernel-desktop-base >= 3.16.7-42.1
  • kernel-desktop-base-debuginfo >= 3.16.7-42.1
  • kernel-desktop-debuginfo >= 3.16.7-42.1
  • kernel-desktop-debugsource >= 3.16.7-42.1
  • kernel-desktop-devel >= 3.16.7-42.1
  • kernel-devel >= 3.16.7-42.1
  • kernel-docs >= 3.16.7-42.2
  • kernel-ec2 >= 3.16.7-42.1
  • kernel-ec2-base >= 3.16.7-42.1
  • kernel-ec2-base-debuginfo >= 3.16.7-42.1
  • kernel-ec2-debuginfo >= 3.16.7-42.1
  • kernel-ec2-debugsource >= 3.16.7-42.1
  • kernel-ec2-devel >= 3.16.7-42.1
  • kernel-macros >= 3.16.7-42.1
  • kernel-obs-build >= 3.16.7-42.2
  • kernel-obs-build-debugsource >= 3.16.7-42.2
  • kernel-obs-qa >= 3.16.7-42.1
  • kernel-obs-qa-xen >= 3.16.7-42.1
  • kernel-pae >= 3.16.7-42.1
  • kernel-pae-base >= 3.16.7-42.1
  • kernel-pae-base-debuginfo >= 3.16.7-42.1
  • kernel-pae-debuginfo >= 3.16.7-42.1
  • kernel-pae-debugsource >= 3.16.7-42.1
  • kernel-pae-devel >= 3.16.7-42.1
  • kernel-source >= 3.16.7-42.1
  • kernel-source-vanilla >= 3.16.7-42.1
  • kernel-syms >= 3.16.7-42.1
  • kernel-vanilla >= 3.16.7-42.1
  • kernel-vanilla-debuginfo >= 3.16.7-42.1
  • kernel-vanilla-debugsource >= 3.16.7-42.1
  • kernel-vanilla-devel >= 3.16.7-42.1
  • kernel-xen >= 3.16.7-42.1
  • kernel-xen-base >= 3.16.7-42.1
  • kernel-xen-base-debuginfo >= 3.16.7-42.1
  • kernel-xen-debuginfo >= 3.16.7-42.1
  • kernel-xen-debugsource >= 3.16.7-42.1
  • kernel-xen-devel >= 3.16.7-42.1
  • libipset3 >= 6.23-20.3
  • libipset3-debuginfo >= 6.23-20.3
  • pcfclock >= 0.44-260.20.2
  • pcfclock-debuginfo >= 0.44-260.20.2
  • pcfclock-debugsource >= 0.44-260.20.2
  • pcfclock-kmp-default >= 0.44_k3.16.7_42-260.20.2
  • pcfclock-kmp-default-debuginfo >= 0.44_k3.16.7_42-260.20.2
  • pcfclock-kmp-desktop >= 0.44_k3.16.7_42-260.20.2
  • pcfclock-kmp-desktop-debuginfo >= 0.44_k3.16.7_42-260.20.2
  • pcfclock-kmp-pae >= 0.44_k3.16.7_42-260.20.2
  • pcfclock-kmp-pae-debuginfo >= 0.44_k3.16.7_42-260.20.2
  • python-virtualbox >= 5.0.20-48.5
  • python-virtualbox-debuginfo >= 5.0.20-48.5
  • vhba-kmp >= 20140629-2.20.2
  • vhba-kmp-debugsource >= 20140629-2.20.2
  • vhba-kmp-default >= 20140629_k3.16.7_42-2.20.2
  • vhba-kmp-default-debuginfo >= 20140629_k3.16.7_42-2.20.2
  • vhba-kmp-desktop >= 20140629_k3.16.7_42-2.20.2
  • vhba-kmp-desktop-debuginfo >= 20140629_k3.16.7_42-2.20.2
  • vhba-kmp-pae >= 20140629_k3.16.7_42-2.20.2
  • vhba-kmp-pae-debuginfo >= 20140629_k3.16.7_42-2.20.2
  • vhba-kmp-xen >= 20140629_k3.16.7_42-2.20.2
  • vhba-kmp-xen-debuginfo >= 20140629_k3.16.7_42-2.20.2
  • virtualbox >= 5.0.20-48.5
  • virtualbox-debuginfo >= 5.0.20-48.5
  • virtualbox-debugsource >= 5.0.20-48.5
  • virtualbox-devel >= 5.0.20-48.5
  • virtualbox-guest-desktop-icons >= 5.0.20-48.5
  • virtualbox-guest-kmp-default >= 5.0.20_k3.16.7_42-48.5
  • virtualbox-guest-kmp-default-debuginfo >= 5.0.20_k3.16.7_42-48.5
  • virtualbox-guest-kmp-desktop >= 5.0.20_k3.16.7_42-48.5
  • virtualbox-guest-kmp-desktop-debuginfo >= 5.0.20_k3.16.7_42-48.5
  • virtualbox-guest-kmp-pae >= 5.0.20_k3.16.7_42-48.5
  • virtualbox-guest-kmp-pae-debuginfo >= 5.0.20_k3.16.7_42-48.5
  • virtualbox-guest-tools >= 5.0.20-48.5
  • virtualbox-guest-tools-debuginfo >= 5.0.20-48.5
  • virtualbox-guest-x11 >= 5.0.20-48.5
  • virtualbox-guest-x11-debuginfo >= 5.0.20-48.5
  • virtualbox-host-kmp-default >= 5.0.20_k3.16.7_42-48.5
  • virtualbox-host-kmp-default-debuginfo >= 5.0.20_k3.16.7_42-48.5
  • virtualbox-host-kmp-desktop >= 5.0.20_k3.16.7_42-48.5
  • virtualbox-host-kmp-desktop-debuginfo >= 5.0.20_k3.16.7_42-48.5
  • virtualbox-host-kmp-pae >= 5.0.20_k3.16.7_42-48.5
  • virtualbox-host-kmp-pae-debuginfo >= 5.0.20_k3.16.7_42-48.5
  • virtualbox-host-source >= 5.0.20-48.5
  • virtualbox-qt >= 5.0.20-48.5
  • virtualbox-qt-debuginfo >= 5.0.20-48.5
  • virtualbox-websrv >= 5.0.20-48.5
  • virtualbox-websrv-debuginfo >= 5.0.20-48.5
  • xen >= 4.4.4_02-46.2
  • xen-debugsource >= 4.4.4_02-46.2
  • xen-devel >= 4.4.4_02-46.2
  • xen-doc-html >= 4.4.4_02-46.2
  • xen-kmp-default >= 4.4.4_02_k3.16.7_42-46.2
  • xen-kmp-default-debuginfo >= 4.4.4_02_k3.16.7_42-46.2
  • xen-kmp-desktop >= 4.4.4_02_k3.16.7_42-46.2
  • xen-kmp-desktop-debuginfo >= 4.4.4_02_k3.16.7_42-46.2
  • xen-libs >= 4.4.4_02-46.2
  • xen-libs-32bit >= 4.4.4_02-46.2
  • xen-libs-debuginfo >= 4.4.4_02-46.2
  • xen-libs-debuginfo-32bit >= 4.4.4_02-46.2
  • xen-tools >= 4.4.4_02-46.2
  • xen-tools-debuginfo >= 4.4.4_02-46.2
  • xen-tools-domU >= 4.4.4_02-46.2
  • xen-tools-domU-debuginfo >= 4.4.4_02-46.2
  • xtables-addons >= 2.6-22.3
  • xtables-addons-debuginfo >= 2.6-22.3
  • xtables-addons-debugsource >= 2.6-22.3
  • xtables-addons-kmp-default >= 2.6_k3.16.7_42-22.3
  • xtables-addons-kmp-default-debuginfo >= 2.6_k3.16.7_42-22.3
  • xtables-addons-kmp-desktop >= 2.6_k3.16.7_42-22.3
  • xtables-addons-kmp-desktop-debuginfo >= 2.6_k3.16.7_42-22.3
  • xtables-addons-kmp-pae >= 2.6_k3.16.7_42-22.3
  • xtables-addons-kmp-pae-debuginfo >= 2.6_k3.16.7_42-22.3
  • xtables-addons-kmp-xen >= 2.6_k3.16.7_42-22.3
  • xtables-addons-kmp-xen-debuginfo >= 2.6_k3.16.7_42-22.3
Patchnames:
openSUSE-2016-1015
openSUSE Leap 42.1
  • kernel-debug >= 4.1.26-21.1
  • kernel-debug-base >= 4.1.26-21.1
  • kernel-debug-base-debuginfo >= 4.1.26-21.1
  • kernel-debug-debuginfo >= 4.1.26-21.1
  • kernel-debug-debugsource >= 4.1.26-21.1
  • kernel-debug-devel >= 4.1.26-21.1
  • kernel-debug-devel-debuginfo >= 4.1.26-21.1
  • kernel-default >= 4.1.26-21.1
  • kernel-default-base >= 4.1.26-21.1
  • kernel-default-base-debuginfo >= 4.1.26-21.1
  • kernel-default-debuginfo >= 4.1.26-21.1
  • kernel-default-debugsource >= 4.1.26-21.1
  • kernel-default-devel >= 4.1.26-21.1
  • kernel-devel >= 4.1.26-21.1
  • kernel-docs >= 4.1.26-21.2
  • kernel-docs-html >= 4.1.26-21.2
  • kernel-docs-pdf >= 4.1.26-21.2
  • kernel-ec2 >= 4.1.26-21.1
  • kernel-ec2-base >= 4.1.26-21.1
  • kernel-ec2-base-debuginfo >= 4.1.26-21.1
  • kernel-ec2-debuginfo >= 4.1.26-21.1
  • kernel-ec2-debugsource >= 4.1.26-21.1
  • kernel-ec2-devel >= 4.1.26-21.1
  • kernel-macros >= 4.1.26-21.1
  • kernel-obs-build >= 4.1.26-21.1
  • kernel-obs-build-debugsource >= 4.1.26-21.1
  • kernel-obs-qa >= 4.1.26-21.1
  • kernel-obs-qa-xen >= 4.1.26-21.1
  • kernel-pae >= 4.1.26-21.1
  • kernel-pae-base >= 4.1.26-21.1
  • kernel-pae-base-debuginfo >= 4.1.26-21.1
  • kernel-pae-debuginfo >= 4.1.26-21.1
  • kernel-pae-debugsource >= 4.1.26-21.1
  • kernel-pae-devel >= 4.1.26-21.1
  • kernel-pv >= 4.1.26-21.1
  • kernel-pv-base >= 4.1.26-21.1
  • kernel-pv-base-debuginfo >= 4.1.26-21.1
  • kernel-pv-debuginfo >= 4.1.26-21.1
  • kernel-pv-debugsource >= 4.1.26-21.1
  • kernel-pv-devel >= 4.1.26-21.1
  • kernel-source >= 4.1.26-21.1
  • kernel-source-vanilla >= 4.1.26-21.1
  • kernel-syms >= 4.1.26-21.1
  • kernel-vanilla >= 4.1.26-21.1
  • kernel-vanilla-debuginfo >= 4.1.26-21.1
  • kernel-vanilla-debugsource >= 4.1.26-21.1
  • kernel-vanilla-devel >= 4.1.26-21.1
  • kernel-xen >= 4.1.26-21.1
  • kernel-xen-base >= 4.1.26-21.1
  • kernel-xen-base-debuginfo >= 4.1.26-21.1
  • kernel-xen-debuginfo >= 4.1.26-21.1
  • kernel-xen-debugsource >= 4.1.26-21.1
  • kernel-xen-devel >= 4.1.26-21.1
Patchnames:
openSUSE-2016-753