CVE-2016-5195
High KEV — Actively ExploitedRace condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by leveraging incorrect handling of a copy-on-write (COW) feature to write to a read-only memory mapping, as exploited in the wild in October 2016, aka "Dirty COW."
CVSS 3.1 score
7.0
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Weakness type
CWE-362CVE-2016-5195 is a Race Condition vulnerability
What is Race Condition?
The product contains a code sequence that can run concurrently with other code, creating unexpected states. Learn more on MITRE CWE
References
The following references provide additional information about CVE-2016-5195 including vendor advisories, patch commits, exploit details, and third-party analysis. Links are sourced from the NIST NVD database.
-
Fortiguardhttp://fortiguard.com/advisory/FG-IR-16-063Third Party Advisory
-
Third Party Advisory
-
Third Party Advisory
-
Third Party Advisory
-
Mailing List
-
Mailing List
-
Mailing List
-
Mailing List
-
Mailing List
-
Mailing List
-
Mailing List
-
Mailing List
-
Mailing List
-
Mailing List
-
Mailing List
-
Mailing List
-
Mailing List
-
Mailing List
-
Mailing List
-
Mailing List
-
Mailing List
-
Mailing List
-
Mailing List
-
Mailing List
-
Mailing List
-
Mailing List
-
Mailing List
-
Mailing List
-
Mailing List
-
Mailing List
-
Third Party Advisory
-
Packet Stormhttp://packetstormsecurity.com/files/139277/Kernel-Live-Patch-Security-Notice-LSN-0012-1.htmlExploit Third Party Advisory VDB Entry
-
Exploit Third Party Advisory VDB Entry
-
Exploit Third Party Advisory VDB Entry
-
Packet Stormhttp://packetstormsecurity.com/files/139922/Linux-Kernel-Dirty-COW-PTRACE_POKEDATA-Privilege-Escalation.htmlExploit Third Party Advisory VDB Entry
-
Packet Stormhttp://packetstormsecurity.com/files/139923/Linux-Kernel-Dirty-COW-PTRACE_POKEDATA-Privilege-Escalation.htmlExploit Third Party Advisory VDB Entry
-
Packet Stormhttp://packetstormsecurity.com/files/142151/Kernel-Live-Patch-Security-Notice-LSN-0021-1.htmlThird Party Advisory VDB Entry
-
Third Party Advisory
-
Third Party Advisory
-
Third Party Advisory
-
Third Party Advisory
-
Third Party Advisory
-
Third Party Advisory
-
Third Party Advisory
-
Third Party Advisory
-
Third Party Advisory
-
Third Party Advisory
-
Third Party Advisory
-
Third Party Advisory
-
Third Party Advisory
-
Third Party Advisory
-
Debian Securityhttp://www.debian.org/security/2016/dsa-3696Third Party Advisory
-
Third Party Advisory
-
Release Notes
-
Mailing List Third Party Advisory
-
Mailing List Third Party Advisory
-
Mailing List Third Party Advisory
-
Mailing List Third Party Advisory
-
Mailing List Third Party Advisory
-
Mailing List Third Party Advisory
-
Mailing List Third Party Advisory
-
Mailing List Third Party Advisory
-
Mailing List Third Party Advisory
-
Mailing List Third Party Advisory
-
Mailing List Third Party Advisory
-
Mailing List Third Party Advisory
-
Broken Link Third Party Advisory VDB Entry
-
Broken Link Third Party Advisory VDB Entry
-
Broken Link Third Party Advisory VDB Entry
-
Broken Link Third Party Advisory VDB Entry
-
Broken Link Third Party Advisory VDB Entry
-
Broken Link Third Party Advisory VDB Entry
-
Broken Link Third Party Advisory VDB Entry
-
Broken Link Third Party Advisory VDB Entry
-
Securityfocushttp://www.securityfocus.com/bid/93793Broken Link Third Party Advisory VDB Entry
-
Securitytrackerhttp://www.securitytracker.com/id/1037078Broken Link Third Party Advisory VDB Entry
-
Ubuntu Securityhttp://www.ubuntu.com/usn/USN-3104-1Third Party Advisory
-
Ubuntu Securityhttp://www.ubuntu.com/usn/USN-3104-2Third Party Advisory
-
Ubuntu Securityhttp://www.ubuntu.com/usn/USN-3105-1Third Party Advisory
-
Ubuntu Securityhttp://www.ubuntu.com/usn/USN-3105-2Third Party Advisory
-
Ubuntu Securityhttp://www.ubuntu.com/usn/USN-3106-1Third Party Advisory
-
Ubuntu Securityhttp://www.ubuntu.com/usn/USN-3106-2Third Party Advisory
-
Ubuntu Securityhttp://www.ubuntu.com/usn/USN-3106-3Third Party Advisory
-
Ubuntu Securityhttp://www.ubuntu.com/usn/USN-3106-4Third Party Advisory
-
Ubuntu Securityhttp://www.ubuntu.com/usn/USN-3107-1Third Party Advisory
-
Ubuntu Securityhttp://www.ubuntu.com/usn/USN-3107-2Third Party Advisory
-
Broken Link Third Party Advisory
-
Third Party Advisory
-
Third Party Advisory
-
Permissions Required Third Party Advisory
-
Exploit Issue Tracking
-
Issue Tracking
-
Dirtycowhttps://dirtycow.ninjaThird Party Advisory
-
Third Party Advisory
-
Exploit Third Party Advisory
-
Third Party Advisory
-
H20566https://h20566.www2.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbgn03707en_usThird Party Advisory
-
H20566https://h20566.www2.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbgn03722en_usThird Party Advisory
-
H20566https://h20566.www2.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbgn03742en_usThird Party Advisory
-
H20566https://h20566.www2.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbgn03761en_usThird Party Advisory
-
Third Party Advisory
-
Third Party Advisory
-
Third Party Advisory
-
Broken Link Third Party Advisory
-
Broken Link Third Party Advisory
-
Broken Link Third Party Advisory
-
Broken Link Third Party Advisory
-
Release Notes
-
Release Notes
-
Release Notes
-
Third Party Advisory
-
Debian Securityhttps://security-tracker.debian.org/tracker/CVE-2016-5195Issue Tracking Third Party Advisory
-
Third Party Advisory
-
Third Party Advisory
-
Third Party Advisory
-
Third Party Advisory
-
Third Party Advisory
-
Aristahttps://www.arista.com/en/support/advisories-notices/security-advisories/1753-security-advisory-0026Third Party Advisory
-
Exploit-DBhttps://www.exploit-db.com/exploits/40611/Exploit Third Party Advisory VDB Entry
-
Exploit-DBhttps://www.exploit-db.com/exploits/40616/Exploit Third Party Advisory VDB Entry
-
Exploit-DBhttps://www.exploit-db.com/exploits/40839/Exploit Third Party Advisory VDB Entry
-
Exploit-DBhttps://www.exploit-db.com/exploits/40847/Third Party Advisory VDB Entry
-
Third Party Advisory US Government Resource
-
Mailing List Third Party Advisory
-
US Government Resource
-
PatchKernel patch commithttp://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=19be0eaffa3ac7d8eb6784ad9bdbc7d67ed8e619
-
PatchKernel patch commithttp://www.oracle.com/technetwork/security-advisory/cpujul2018-4258247.html
-
PatchKernel patch commithttps://github.com/torvalds/linux/commit/19be0eaffa3ac7d8eb6784ad9bdbc7d67ed8e619
Frequently asked questions
-
What is CVE-2016-5195?
CVE-2016-5195 is a High severity Linux kernel vulnerability with a CVSS score of 7.0 out of 10 , classified as a Race Condition flaw (CWE-362) . CVE-2016-5195 is listed in the CISA Known Exploited Vulnerabilities (KEV) catalog, confirming active exploitation in the wild.
-
What is the CVSS score for CVE-2016-5195?
CVE-2016-5195 has a CVSS score of 7.0 out of 10, rated High severity (CVSS 3.1). The vector string is
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H. -
Is there a patch available for CVE-2016-5195?
No patch is currently available for CVE-2016-5195. Monitor the NIST NVD and your Linux distribution's security advisories for updates.
-
Is CVE-2016-5195 actively exploited?
Yes — CVE-2016-5195 is listed in the CISA Known Exploited Vulnerabilities (KEV) catalog, confirming active exploitation in the wild. It carries a CVSS score of 7.0 (High severity).
-
What is Race Condition (CWE-362)?
The product contains a code sequence that can run concurrently with other code, creating unexpected states. View CWE-362 on MITRE CWE →