UBUNTU-CVE-2015-5706

Advisory lineage Upstream: 1 Downstream: 3
Published: 03 Aug 2015, 00:00
Last modified:22 Apr 2026, 10:14

Vulnerability Summary

Overall Risk (default)
minimal
0/100
CVSS Score
No data
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

03 Aug 2015, 00:00
Published
Vulnerability first disclosed
22 Apr 2026, 10:14
Last Modified
Vulnerability information updated

Description

Use-after-free vulnerability in the path_openat function in fs/namei.c in the Linux kernel 3.x and 4.x before 4.0.4 allows local users to cause a denial of service or possibly have unspecified other impact via O_TMPFILE filesystem operations that leverage a duplicate cleanup operation.

Affected Systems

  • ubuntulinux

    < 3.13.0-58.97

  • ubuntulinux-lts-utopic

    < 3.16.0-43.58~14.04.1

  • ubuntulinux-lts-vivid

    < 3.19.0-22.22~14.04.1

References (9)