Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Jotik

#45237of 53,638
5.5Total CVSS
Vulnerabilities · 1
PT-2016-7431
5.5
2016-05-12
Linux · Linux Kernel · CVE-2016-7916
**Name of the Vulnerable Software and Affected Versions** Linux kernel versions prior to 4.5.4 **Description** A race condition exists in the `environ read` function, allowing local users to obtain sensitive information from kernel memory. This occurs when reading a `/proc/*/environ` file during a process-setup time interval in which environment-variable copying is incomplete. **Recommendations** For Linux kernel versions prior to 4.5.4, update to version 4.5.4 or later to resolve the issue.