CVE 2016-1237
nfsd in the Linux kernel through 4.6.3 allows local users to bypass intended file-permission restrictions by setting a POSIX ACL, related to nfs2acl.c, nfs3acl.c, and nfs4acl.c.
Related bugs and status
CVE-2016-1237 (Candidate) is related to these bugs:
Bug #1239087: Safely remove is not working (or broken) in Gnome Disks
Summary | In | Importance | Status | |||
---|---|---|---|---|---|---|
1239087 | Safely remove is not working (or broken) in Gnome Disks | gnome-disk-utility (Ubuntu) | Undecided | New |
Bug #1581871: CVE-2016-4794
Summary | In | Importance | Status | |||
---|---|---|---|---|---|---|
1581871 | CVE-2016-4794 | linux (Ubuntu) | Medium | Fix Released | ||
1581871 | CVE-2016-4794 | linux-ti-omap4 (Ubuntu) | Medium | Invalid | ||
1581871 | CVE-2016-4794 | linux-raspi2 (Ubuntu) | Medium | Fix Released | ||
1581871 | CVE-2016-4794 | linux (Ubuntu Yakkety) | Medium | Fix Released | ||
1581871 | CVE-2016-4794 | linux-raspi2 (Ubuntu Yakkety) | Medium | Fix Released | ||
1581871 | CVE-2016-4794 | linux-ti-omap4 (Ubuntu Yakkety) | Medium | Invalid | ||
1581871 | CVE-2016-4794 | linux (Ubuntu Xenial) | Medium | Fix Released | ||
1581871 | CVE-2016-4794 | linux-raspi2 (Ubuntu Xenial) | Medium | Fix Released | ||
1581871 | CVE-2016-4794 | linux-ti-omap4 (Ubuntu Xenial) | Medium | Invalid | ||
1581871 | CVE-2016-4794 | linux (Ubuntu Wily) | Medium | New | ||
1581871 | CVE-2016-4794 | linux-raspi2 (Ubuntu Wily) | Medium | New | ||
1581871 | CVE-2016-4794 | linux-ti-omap4 (Ubuntu Wily) | Medium | Invalid | ||
1581871 | CVE-2016-4794 | linux (Ubuntu Vivid) | Undecided | Fix Released | ||
1581871 | CVE-2016-4794 | linux-raspi2 (Ubuntu Vivid) | Undecided | Won't Fix | ||
1581871 | CVE-2016-4794 | linux-ti-omap4 (Ubuntu Vivid) | Undecided | Won't Fix | ||
1581871 | CVE-2016-4794 | linux (Ubuntu Trusty) | Medium | New | ||
1581871 | CVE-2016-4794 | linux-raspi2 (Ubuntu Trusty) | Medium | Invalid | ||
1581871 | CVE-2016-4794 | linux-ti-omap4 (Ubuntu Trusty) | Medium | Invalid | ||
1581871 | CVE-2016-4794 | linux (Ubuntu Precise) | Medium | Won't Fix | ||
1581871 | CVE-2016-4794 | linux-raspi2 (Ubuntu Precise) | Medium | Invalid | ||
1581871 | CVE-2016-4794 | linux-ti-omap4 (Ubuntu Precise) | Medium | Won't Fix | ||
1581871 | CVE-2016-4794 | linux-lts-trusty (Ubuntu) | Medium | Invalid | ||
1581871 | CVE-2016-4794 | linux-lts-trusty (Ubuntu Precise) | Medium | Won't Fix | ||
1581871 | CVE-2016-4794 | linux-lts-trusty (Ubuntu Trusty) | Medium | Invalid | ||
1581871 | CVE-2016-4794 | linux-lts-trusty (Ubuntu Vivid) | Undecided | Won't Fix | ||
1581871 | CVE-2016-4794 | linux-lts-trusty (Ubuntu Wily) | Medium | Invalid | ||
1581871 | CVE-2016-4794 | linux-lts-trusty (Ubuntu Xenial) | Medium | Invalid | ||
1581871 | CVE-2016-4794 | linux-lts-trusty (Ubuntu Yakkety) | Medium | Invalid | ||
1581871 | CVE-2016-4794 | linux-armadaxp (Ubuntu) | Medium | Invalid | ||
1581871 | CVE-2016-4794 | linux-armadaxp (Ubuntu Precise) | Medium | Won't Fix | ||
1581871 | CVE-2016-4794 | linux-armadaxp (Ubuntu Trusty) | Medium | Invalid | ||
1581871 | CVE-2016-4794 | linux-armadaxp (Ubuntu Vivid) | Undecided | Won't Fix | ||
1581871 | CVE-2016-4794 | linux-armadaxp (Ubuntu Wily) | Medium | Invalid | ||
1581871 | CVE-2016-4794 | linux-armadaxp (Ubuntu Xenial) | Medium | Invalid | ||
1581871 | CVE-2016-4794 | linux-armadaxp (Ubuntu Yakkety) | Medium | Invalid | ||
1581871 | CVE-2016-4794 | linux-lts-xenial (Ubuntu) | Medium | Invalid | ||
1581871 | CVE-2016-4794 | linux-lts-xenial (Ubuntu Precise) | Medium | Invalid | ||
1581871 | CVE-2016-4794 | linux-lts-xenial (Ubuntu Trusty) | Medium | Fix Released | ||
1581871 | CVE-2016-4794 | linux-lts-xenial (Ubuntu Vivid) | Undecided | New | ||
1581871 | CVE-2016-4794 | linux-lts-xenial (Ubuntu Wily) | Medium | Invalid | ||
1581871 | CVE-2016-4794 | linux-lts-xenial (Ubuntu Xenial) | Medium | Invalid | ||
1581871 | CVE-2016-4794 | linux-lts-xenial (Ubuntu Yakkety) | Medium | Invalid | ||
1581871 | CVE-2016-4794 | linux-lts-vivid (Ubuntu) | Medium | Invalid | ||
1581871 | CVE-2016-4794 | linux-lts-vivid (Ubuntu Precise) | Medium | Invalid | ||
1581871 | CVE-2016-4794 | linux-lts-vivid (Ubuntu Trusty) | Medium | Fix Released | ||
1581871 | CVE-2016-4794 | linux-lts-vivid (Ubuntu Vivid) | Undecided | Won't Fix | ||
1581871 | CVE-2016-4794 | linux-lts-vivid (Ubuntu Wily) | Medium | Invalid | ||
1581871 | CVE-2016-4794 | linux-lts-vivid (Ubuntu Xenial) | Medium | Invalid | ||
1581871 | CVE-2016-4794 | linux-lts-vivid (Ubuntu Yakkety) | Medium | Invalid | ||
1581871 | CVE-2016-4794 | linux-goldfish (Ubuntu) | Medium | New |
Bug #1583738: arm64: statically link rtc-efi
Summary | In | Importance | Status | |||
---|---|---|---|---|---|---|
1583738 | arm64: statically link rtc-efi | linux (Ubuntu) | High | Fix Released | ||
1583738 | arm64: statically link rtc-efi | linux (Ubuntu Yakkety) | High | Fix Released | ||
1583738 | arm64: statically link rtc-efi | linux (Ubuntu Vivid) | Undecided | Fix Released | ||
1583738 | arm64: statically link rtc-efi | linux (Ubuntu Xenial) | Undecided | Fix Released | ||
1583738 | arm64: statically link rtc-efi | linux (Ubuntu Wily) | Undecided | Won't Fix |
Bug #1586418: exercising ptys causes a kernel oops
Summary | In | Importance | Status | |||
---|---|---|---|---|---|---|
1586418 | exercising ptys causes a kernel oops | linux (Ubuntu) | Medium | Fix Released | ||
1586418 | exercising ptys causes a kernel oops | linux (Ubuntu Trusty) | Undecided | Fix Released | ||
1586418 | exercising ptys causes a kernel oops | linux (Ubuntu Wily) | Undecided | Won't Fix | ||
1586418 | exercising ptys causes a kernel oops | linux (Ubuntu Yakkety) | Medium | Fix Released | ||
1586418 | exercising ptys causes a kernel oops | linux (Ubuntu Xenial) | Medium | Fix Released | ||
1586418 | exercising ptys causes a kernel oops | linux (Ubuntu Vivid) | Undecided | Fix Released |
Bug #1589036: CVE-2016-5243
Summary | In | Importance | Status | |||
---|---|---|---|---|---|---|
1589036 | CVE-2016-5243 | linux (Ubuntu) | Medium | Fix Released | ||
1589036 | CVE-2016-5243 | linux-ti-omap4 (Ubuntu) | Medium | Invalid | ||
1589036 | CVE-2016-5243 | linux-raspi2 (Ubuntu) | Medium | Fix Released | ||
1589036 | CVE-2016-5243 | linux (Ubuntu Yakkety) | Medium | Fix Released | ||
1589036 | CVE-2016-5243 | linux-raspi2 (Ubuntu Yakkety) | Medium | Fix Released | ||
1589036 | CVE-2016-5243 | linux-ti-omap4 (Ubuntu Yakkety) | Medium | Invalid | ||
1589036 | CVE-2016-5243 | linux (Ubuntu Xenial) | Medium | Fix Released | ||
1589036 | CVE-2016-5243 | linux-raspi2 (Ubuntu Xenial) | Medium | Fix Released | ||
1589036 | CVE-2016-5243 | linux-ti-omap4 (Ubuntu Xenial) | Medium | Invalid | ||
1589036 | CVE-2016-5243 | linux (Ubuntu Wily) | Medium | New | ||
1589036 | CVE-2016-5243 | linux-raspi2 (Ubuntu Wily) | Medium | New | ||
1589036 | CVE-2016-5243 | linux-ti-omap4 (Ubuntu Wily) | Medium | Invalid | ||
1589036 | CVE-2016-5243 | linux (Ubuntu Vivid) | Undecided | Fix Released | ||
1589036 | CVE-2016-5243 | linux-raspi2 (Ubuntu Vivid) | Undecided | Won't Fix | ||
1589036 | CVE-2016-5243 | linux-ti-omap4 (Ubuntu Vivid) | Undecided | New | ||
1589036 | CVE-2016-5243 | linux (Ubuntu Trusty) | Medium | Fix Released | ||
1589036 | CVE-2016-5243 | linux-raspi2 (Ubuntu Trusty) | Medium | Invalid | ||
1589036 | CVE-2016-5243 | linux-ti-omap4 (Ubuntu Trusty) | Medium | Invalid | ||
1589036 | CVE-2016-5243 | linux (Ubuntu Precise) | Medium | Fix Released | ||
1589036 | CVE-2016-5243 | linux-raspi2 (Ubuntu Precise) | Medium | Invalid | ||
1589036 | CVE-2016-5243 | linux-ti-omap4 (Ubuntu Precise) | Medium | Fix Released | ||
1589036 | CVE-2016-5243 | linux-lts-trusty (Ubuntu) | Medium | Invalid | ||
1589036 | CVE-2016-5243 | linux-lts-trusty (Ubuntu Precise) | Medium | Fix Released | ||
1589036 | CVE-2016-5243 | linux-lts-trusty (Ubuntu Trusty) | Medium | Invalid | ||
1589036 | CVE-2016-5243 | linux-lts-trusty (Ubuntu Vivid) | Undecided | New | ||
1589036 | CVE-2016-5243 | linux-lts-trusty (Ubuntu Wily) | Medium | Invalid | ||
1589036 | CVE-2016-5243 | linux-lts-trusty (Ubuntu Xenial) | Medium | Invalid | ||
1589036 | CVE-2016-5243 | linux-lts-trusty (Ubuntu Yakkety) | Medium | Invalid | ||
1589036 | CVE-2016-5243 | linux-armadaxp (Ubuntu) | Medium | Invalid | ||
1589036 | CVE-2016-5243 | linux-armadaxp (Ubuntu Precise) | Medium | Fix Released | ||
1589036 | CVE-2016-5243 | linux-armadaxp (Ubuntu Trusty) | Medium | Invalid | ||
1589036 | CVE-2016-5243 | linux-armadaxp (Ubuntu Vivid) | Undecided | New | ||
1589036 | CVE-2016-5243 | linux-armadaxp (Ubuntu Wily) | Medium | Invalid | ||
1589036 | CVE-2016-5243 | linux-armadaxp (Ubuntu Xenial) | Medium | Invalid | ||
1589036 | CVE-2016-5243 | linux-armadaxp (Ubuntu Yakkety) | Medium | Invalid | ||
1589036 | CVE-2016-5243 | linux-lts-xenial (Ubuntu) | Medium | Invalid | ||
1589036 | CVE-2016-5243 | linux-lts-xenial (Ubuntu Precise) | Medium | Invalid | ||
1589036 | CVE-2016-5243 | linux-lts-xenial (Ubuntu Trusty) | Medium | Fix Released | ||
1589036 | CVE-2016-5243 | linux-lts-xenial (Ubuntu Vivid) | Undecided | New | ||
1589036 | CVE-2016-5243 | linux-lts-xenial (Ubuntu Wily) | Medium | Invalid | ||
1589036 | CVE-2016-5243 | linux-lts-xenial (Ubuntu Xenial) | Medium | Invalid | ||
1589036 | CVE-2016-5243 | linux-lts-xenial (Ubuntu Yakkety) | Medium | Invalid | ||
1589036 | CVE-2016-5243 | linux-lts-vivid (Ubuntu) | Medium | Invalid | ||
1589036 | CVE-2016-5243 | linux-lts-vivid (Ubuntu Precise) | Medium | Invalid | ||
1589036 | CVE-2016-5243 | linux-lts-vivid (Ubuntu Trusty) | Medium | Fix Released | ||
1589036 | CVE-2016-5243 | linux-lts-vivid (Ubuntu Vivid) | Undecided | New | ||
1589036 | CVE-2016-5243 | linux-lts-vivid (Ubuntu Wily) | Medium | Invalid | ||
1589036 | CVE-2016-5243 | linux-lts-vivid (Ubuntu Xenial) | Medium | Invalid | ||
1589036 | CVE-2016-5243 | linux-lts-vivid (Ubuntu Yakkety) | Medium | Invalid | ||
1589036 | CVE-2016-5243 | linux-goldfish (Ubuntu) | Medium | New |
Bug #1595803: [i915_bpo][SKL] Display core init/uninit updates
Summary | In | Importance | Status | |||
---|---|---|---|---|---|---|
1595803 | [i915_bpo][SKL] Display core init/uninit updates | linux (Ubuntu) | Critical | Fix Released | ||
1595803 | [i915_bpo][SKL] Display core init/uninit updates | linux (Ubuntu Vivid) | Undecided | Fix Released | ||
1595803 | [i915_bpo][SKL] Display core init/uninit updates | HWE Next | Undecided | Fix Released |
Bug #1597564: the kernel hangs when reboot or shutdown on a lenovo baytrail-m based machine
Summary | In | Importance | Status | |||
---|---|---|---|---|---|---|
1597564 | the kernel hangs when reboot or shutdown on a lenovo baytrail-m based machine | linux (Ubuntu) | Critical | Fix Released | ||
1597564 | the kernel hangs when reboot or shutdown on a lenovo baytrail-m based machine | HWE Next | Critical | Fix Released | ||
1597564 | the kernel hangs when reboot or shutdown on a lenovo baytrail-m based machine | linux (Ubuntu Vivid) | Critical | Fix Released |
Bug #1599562: linux: Homogenize changelog format across releases
Summary | In | Importance | Status | |||
---|---|---|---|---|---|---|
1599562 | linux: Homogenize changelog format across releases | linux (Ubuntu) | Undecided | Fix Released | ||
1599562 | linux: Homogenize changelog format across releases | linux (Ubuntu Vivid) | Undecided | Fix Released | ||
1599562 | linux: Homogenize changelog format across releases | linux (Ubuntu Xenial) | Undecided | Fix Released | ||
1599562 | linux: Homogenize changelog format across releases | linux (Ubuntu Wily) | Undecided | Won't Fix | ||
1599562 | linux: Homogenize changelog format across releases | linux (Ubuntu Yakkety) | Undecided | Fix Released | ||
1599562 | linux: Homogenize changelog format across releases | linux (Ubuntu Precise) | Undecided | Fix Released | ||
1599562 | linux: Homogenize changelog format across releases | linux (Ubuntu Trusty) | Undecided | Fix Released |
Bug #1601831: qeth: delete napi struct when removing a qeth device
Summary | In | Importance | Status | |||
---|---|---|---|---|---|---|
1601831 | qeth: delete napi struct when removing a qeth device | linux (Ubuntu) | Undecided | Fix Released | ||
1601831 | qeth: delete napi struct when removing a qeth device | linux (Ubuntu Xenial) | Undecided | Fix Released | ||
1601831 | qeth: delete napi struct when removing a qeth device | linux (Ubuntu Precise) | Undecided | Fix Released | ||
1601831 | qeth: delete napi struct when removing a qeth device | linux (Ubuntu Yakkety) | Undecided | Fix Released | ||
1601831 | qeth: delete napi struct when removing a qeth device | linux (Ubuntu Trusty) | Undecided | Fix Released | ||
1601831 | qeth: delete napi struct when removing a qeth device | Ubuntu on IBM z Systems | High | Fix Released | ||
1601831 | qeth: delete napi struct when removing a qeth device | linux (Ubuntu Vivid) | Undecided | Fix Released |
Bug #1604153: linux: 3.19.0-66.74 -proposed tracker
Summary | In | Importance | Status | |||
---|---|---|---|---|---|---|
1604153 | linux: 3.19.0-66.74 -proposed tracker | linux (Ubuntu) | Undecided | Invalid | ||
1604153 | linux: 3.19.0-66.74 -proposed tracker | linux (Ubuntu Vivid) | Medium | Fix Released | ||
1604153 | linux: 3.19.0-66.74 -proposed tracker | Kernel SRU Workflow | Medium | Fix Released | ||
1604153 | linux: 3.19.0-66.74 -proposed tracker | Kernel SRU Workflow automated-testing | Medium | Fix Released | ||
1604153 | linux: 3.19.0-66.74 -proposed tracker | Kernel SRU Workflow certification-testing | Medium | Fix Released | ||
1604153 | linux: 3.19.0-66.74 -proposed tracker | Kernel SRU Workflow prepare-package | Medium | Fix Released | ||
1604153 | linux: 3.19.0-66.74 -proposed tracker | Kernel SRU Workflow prepare-package-meta | Medium | Fix Released | ||
1604153 | linux: 3.19.0-66.74 -proposed tracker | Kernel SRU Workflow prepare-package-signed | Medium | Fix Released | ||
1604153 | linux: 3.19.0-66.74 -proposed tracker | Kernel SRU Workflow promote-to-proposed | Medium | Fix Released | ||
1604153 | linux: 3.19.0-66.74 -proposed tracker | Kernel SRU Workflow promote-to-security | Medium | Fix Released | ||
1604153 | linux: 3.19.0-66.74 -proposed tracker | Kernel SRU Workflow promote-to-updates | Medium | Fix Released | ||
1604153 | linux: 3.19.0-66.74 -proposed tracker | Kernel SRU Workflow regression-testing | Medium | Fix Released | ||
1604153 | linux: 3.19.0-66.74 -proposed tracker | Kernel SRU Workflow security-signoff | Medium | Fix Released | ||
1604153 | linux: 3.19.0-66.74 -proposed tracker | Kernel SRU Workflow verification-testing | Medium | Fix Released |
Bug #1604159: linux-lts-vivid: 3.19.0-66.74~14.04.1 -proposed tracker
Summary | In | Importance | Status | |||
---|---|---|---|---|---|---|
1604159 | linux-lts-vivid: 3.19.0-66.74~14.04.1 -proposed tracker | linux-lts-vivid (Ubuntu) | Undecided | Invalid | ||
1604159 | linux-lts-vivid: 3.19.0-66.74~14.04.1 -proposed tracker | linux-lts-vivid (Ubuntu Trusty) | Medium | Fix Released | ||
1604159 | linux-lts-vivid: 3.19.0-66.74~14.04.1 -proposed tracker | Kernel SRU Workflow | Medium | Fix Released | ||
1604159 | linux-lts-vivid: 3.19.0-66.74~14.04.1 -proposed tracker | Kernel SRU Workflow automated-testing | Medium | Fix Released | ||
1604159 | linux-lts-vivid: 3.19.0-66.74~14.04.1 -proposed tracker | Kernel SRU Workflow certification-testing | Medium | Invalid | ||
1604159 | linux-lts-vivid: 3.19.0-66.74~14.04.1 -proposed tracker | Kernel SRU Workflow prepare-package | Medium | Fix Released | ||
1604159 | linux-lts-vivid: 3.19.0-66.74~14.04.1 -proposed tracker | Kernel SRU Workflow prepare-package-meta | Medium | Fix Released | ||
1604159 | linux-lts-vivid: 3.19.0-66.74~14.04.1 -proposed tracker | Kernel SRU Workflow prepare-package-signed | Medium | Fix Released | ||
1604159 | linux-lts-vivid: 3.19.0-66.74~14.04.1 -proposed tracker | Kernel SRU Workflow promote-to-proposed | Medium | Fix Released | ||
1604159 | linux-lts-vivid: 3.19.0-66.74~14.04.1 -proposed tracker | Kernel SRU Workflow promote-to-security | Medium | Fix Released | ||
1604159 | linux-lts-vivid: 3.19.0-66.74~14.04.1 -proposed tracker | Kernel SRU Workflow promote-to-updates | Medium | Fix Released | ||
1604159 | linux-lts-vivid: 3.19.0-66.74~14.04.1 -proposed tracker | Kernel SRU Workflow regression-testing | Medium | Fix Released | ||
1604159 | linux-lts-vivid: 3.19.0-66.74~14.04.1 -proposed tracker | Kernel SRU Workflow security-signoff | Medium | Fix Released | ||
1604159 | linux-lts-vivid: 3.19.0-66.74~14.04.1 -proposed tracker | Kernel SRU Workflow verification-testing | Medium | Fix Released |
Bug #1604344: changelog: add CVEs as first class citizens
Summary | In | Importance | Status | |||
---|---|---|---|---|---|---|
1604344 | changelog: add CVEs as first class citizens | linux (Ubuntu) | High | Fix Released | ||
1604344 | changelog: add CVEs as first class citizens | linux (Ubuntu Precise) | High | Fix Released | ||
1604344 | changelog: add CVEs as first class citizens | linux (Ubuntu Vivid) | High | Fix Released | ||
1604344 | changelog: add CVEs as first class citizens | linux (Ubuntu Xenial) | High | Fix Released | ||
1604344 | changelog: add CVEs as first class citizens | linux (Ubuntu Trusty) | High | Fix Released |
Bug #792085: Automatic remount of safely removed USB 3.0 drive
Summary | In | Importance | Status | |||
---|---|---|---|---|---|---|
792085 | Automatic remount of safely removed USB 3.0 drive | linux (Fedora) | Undecided | Fix Released | ||
792085 | Automatic remount of safely removed USB 3.0 drive | linux (openSUSE) | Medium | Fix Released | ||
792085 | Automatic remount of safely removed USB 3.0 drive | linux (Ubuntu) | Medium | Fix Released | ||
792085 | Automatic remount of safely removed USB 3.0 drive | linux (Ubuntu Yakkety) | Medium | Fix Released | ||
792085 | Automatic remount of safely removed USB 3.0 drive | linux (Ubuntu Xenial) | Medium | Fix Released | ||
792085 | Automatic remount of safely removed USB 3.0 drive | linux (Ubuntu Trusty) | Medium | Triaged |
See the
CVE page on Mitre.org
for more details.