The IPv6 stack in the Linux kernel before 4.3.3 mishandles options data, which allows local users to gain privileges or cause a denial of service (use-after-free and system crash) via a crafted sendmsg system call.
| Software | From | Fixed in |
|---|---|---|
| google / android | 6.0.1 | 6.0.1.x |
| linux / linux_kernel | 4.2 | 4.2.8 |
| linux / linux_kernel | 4.3 | 4.3.3 |
| linux / linux_kernel | - | 3.2.75 |
| linux / linux_kernel | 3.17 | 3.18.25 |
| linux / linux_kernel | 3.19 | 4.1.15 |
| linux / linux_kernel | 3.13 | 3.16.35 |
| linux / linux_kernel | 3.3 | 3.12.52 |