CVE
- Id
- 87539
- CVE No.
- CVE-2016-10044
- Status
- Candidate
- Description
- The aio_mount function in fs/aio.c in the Linux kernel before 4.7.7 does not properly restrict execute access, which makes it easier for local users to bypass intended SELinux W^X policy restrictions, and consequently gain privileges, via an io_setup system call.
- Phase
- Assigned (20161226)
- Votes
- None (candidate not yet proposed)
- Comments