CVE-2016-10044

Published
View on NVD ↗
CVSS v3
7.8
HIGH
CVSS v2
7.2
HIGH
Affected
1
PROJECT

Description

The aio_mount function in fs/aio.c in the Linux kernel before 4.7.7 does not properly restrict execute access, which makes it easier for local users to bypass intended SELinux W^X policy restrictions, and consequently gain privileges, via an io_setup system call.

Linux kernel source tree
GitHubGitHub
237K