Linux · Linux Kernel · CVE-2016-4578
**Name of the Vulnerable Software and Affected Versions**
Linux kernel versions prior to 4.7
**Description**
The issue allows local users to obtain sensitive information from kernel stack memory via crafted use of the ALSA timer interface. This is related to the `snd timer user ccallback` and `snd timer user tinterrupt` functions.
**Recommendations**
For Linux kernel versions prior to 4.7, update to version 4.7 or later to resolve the issue.