CVE-2016-3156

The IPv4 implementation in the Linux kernel before 4.5.2 mishandles destruction of device objects, which allows guest OS users to cause a denial of service (host OS networking outage) by arranging for a large number of IP addresses.

Published : 2016-04-27 17:59 Updated : 2018-01-05 02:30

2.1
CVSS Score More info
Score 2.1 / 10
2.1
Vendor Product Version URI
Canonical Ubuntu Linux 12.04 cpe:/o:canonical:ubuntu_linux:12.04::~~lts~~~
Novell Suse Linux Enterprise Real Time Extension 11.0 cpe:/o:novell:suse_linux_enterprise_real_time_extension:11.0:sp4
Novell Suse Linux Enterprise Debuginfo 11.0 cpe:/o:novell:suse_linux_enterprise_debuginfo:11.0:sp4
Novell Suse Linux Enterprise Server 12.0 cpe:/o:novell:suse_linux_enterprise_server:12.0
Novell Suse Linux Enterprise Real Time Extension 12.0 cpe:/o:novell:suse_linux_enterprise_real_time_extension:12.0:sp1
Novell Suse Linux Enterprise Server 11.0 cpe:/o:novell:suse_linux_enterprise_server:11.0:extra
Novell Suse Linux Enterprise Server 11.0 cpe:/o:novell:suse_linux_enterprise_server:11.0:sp4
Novell Suse Linux Enterprise Live Patching 12.0 cpe:/o:novell:suse_linux_enterprise_live_patching:12.0
Novell Suse Linux Enterprise Workstation Extension 12.0 cpe:/o:novell:suse_linux_enterprise_workstation_extension:12.0
Novell Suse Linux Enterprise Module For Public Cloud 12.0 cpe:/o:novell:suse_linux_enterprise_module_for_public_cloud:12.0
Novell Suse Linux Enterprise Software Development Kit 11.0 cpe:/o:novell:suse_linux_enterprise_software_development_kit:11.0:sp4
Linux Linux Kernel 4.5.1 cpe:/o:linux:linux_kernel:4.5.1
Novell Suse Linux Enterprise Desktop 12.0 cpe:/o:novell:suse_linux_enterprise_desktop:12.0
Novell Suse Linux Enterprise Software Development Kit 12.0 cpe:/o:novell:suse_linux_enterprise_software_development_kit:12.0
  1. Novell (8) Search CVE
    1. Suse Linux Enterprise Module For Public Cloud (1) Search CVE
      1. 12.0
    2. Suse Linux Enterprise Live Patching (1) Search CVE
      1. 12.0
    3. Suse Linux Enterprise Real Time Extension (2) Search CVE
      1. 11.0
      2. 12.0
    4. Suse Linux Enterprise Workstation Extension (1) Search CVE
      1. 12.0
    5. Suse Linux Enterprise Software Development Kit (2) Search CVE
      1. 11.0
      2. 12.0
    6. Suse Linux Enterprise Debuginfo (1) Search CVE
      1. 11.0
    7. Suse Linux Enterprise Server (2) Search CVE
      1. 12.0
      2. 11.0
    8. Suse Linux Enterprise Desktop (1) Search CVE
      1. 12.0
  2. Canonical (1) Search CVE
    1. Ubuntu Linux (1) Search CVE
      1. 12.04
  3. Linux (1) Search CVE
    1. Linux Kernel (1) Search CVE
      1. 4.5.1

CWE

ID Name Description Links
CWE-399 Resource Management Errors Weaknesses in this category are related to improper management of system resources. CVE

References

Source Link
CONFIRM http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=fbd40ea0180a2d328c5adc61414dc8bab9335ce2
SUSE http://lists.opensuse.org/opensuse-security-announce/2016-04/msg00019.html
SUSE http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00060.html
SUSE http://lists.opensuse.org/opensuse-security-announce/2016-06/msg00052.html
SUSE http://lists.opensuse.org/opensuse-security-announce/2016-06/msg00054.html
SUSE http://lists.opensuse.org/opensuse-security-announce/2016-06/msg00059.html
SUSE http://lists.opensuse.org/opensuse-security-announce/2016-07/msg00005.html
SUSE http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00038.html
DEBIAN http://www.debian.org/security/2016/dsa-3607
MLIST http://www.openwall.com/lists/oss-security/2016/03/15/3
CONFIRM http://www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.html
CONFIRM http://www.oracle.com/technetwork/topics/security/ovmbulletinoct2016-3090547.html
BID http://www.securityfocus.com/bid/84428
UBUNTU http://www.ubuntu.com/usn/USN-2968-1
UBUNTU http://www.ubuntu.com/usn/USN-2968-2
UBUNTU http://www.ubuntu.com/usn/USN-2969-1
UBUNTU http://www.ubuntu.com/usn/USN-2970-1
UBUNTU http://www.ubuntu.com/usn/USN-2971-1
UBUNTU http://www.ubuntu.com/usn/USN-2971-2
UBUNTU http://www.ubuntu.com/usn/USN-2971-3
UBUNTU http://www.ubuntu.com/usn/USN-2996-1
UBUNTU http://www.ubuntu.com/usn/USN-2997-1
CONFIRM https://bugzilla.redhat.com/show_bug.cgi?id=1318172
CONFIRM https://github.com/torvalds/linux/commit/fbd40ea0180a2d328c5adc61414dc8bab9335ce2
REDHAT http://rhn.redhat.com/errata/RHSA-2016-2574.html
REDHAT http://rhn.redhat.com/errata/RHSA-2016-2584.html

History of changes