Use-after-free vulnerability in drivers/net/ppp/pppgeneric.c in the Linux kernel before 4.5.2 allows local users to cause a denial of service (memory corruption and system crash, or spinlock) or possibly have unspecified other impact by removing a network namespace, related to the pppregisternetchannel and pppunregisterchannel functions.
{ "vanir_signatures": [ { "id": "CVE-2016-4805-2c33ecd2", "digest": { "length": 769.0, "function_hash": "268489039552900925237336614566894826587" }, "source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@1f461dcdd296eecedaffffc6bae2bfa90bd7eb89", "signature_version": "v1", "target": { "function": "ppp_register_net_channel", "file": "drivers/net/ppp/ppp_generic.c" }, "deprecated": false, "signature_type": "Function" }, { "id": "CVE-2016-4805-3754e4bb", "digest": { "length": 564.0, "function_hash": "304111221710047894775264960631298518668" }, "source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@1f461dcdd296eecedaffffc6bae2bfa90bd7eb89", "signature_version": "v1", "target": { "function": "ppp_unregister_channel", "file": "drivers/net/ppp/ppp_generic.c" }, "deprecated": false, "signature_type": "Function" }, { "id": "CVE-2016-4805-3db2e721", "digest": { "length": 564.0, "function_hash": "304111221710047894775264960631298518668" }, "source": "https://github.com/torvalds/linux/commit/1f461dcdd296eecedaffffc6bae2bfa90bd7eb89", "signature_version": "v1", "target": { "function": "ppp_unregister_channel", "file": "drivers/net/ppp/ppp_generic.c" }, "deprecated": false, "signature_type": "Function" }, { "id": "CVE-2016-4805-5d718ba6", "digest": { "length": 769.0, "function_hash": "268489039552900925237336614566894826587" }, "source": "https://github.com/torvalds/linux/commit/1f461dcdd296eecedaffffc6bae2bfa90bd7eb89", "signature_version": "v1", "target": { "function": "ppp_register_net_channel", "file": "drivers/net/ppp/ppp_generic.c" }, "deprecated": false, "signature_type": "Function" }, { "id": "CVE-2016-4805-e73af93d", "digest": { "line_hashes": [ "276740740181310744008207797580252198544", "75203053842699934246592020417038481817", "62456537232803357708838787577532550467", "195117995679548269287909081307777577496", "282762324283491378052051516002553736896", "264822227861054771542282138003604495534", "293877568174774808858158762161442263634", "147801452175387302807573160407360907329" ], "threshold": 0.9 }, "source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@1f461dcdd296eecedaffffc6bae2bfa90bd7eb89", "signature_version": "v1", "target": { "file": "drivers/net/ppp/ppp_generic.c" }, "deprecated": false, "signature_type": "Line" }, { "id": "CVE-2016-4805-f72aaf98", "digest": { "line_hashes": [ "276740740181310744008207797580252198544", "75203053842699934246592020417038481817", "62456537232803357708838787577532550467", "195117995679548269287909081307777577496", "282762324283491378052051516002553736896", "264822227861054771542282138003604495534", "293877568174774808858158762161442263634", "147801452175387302807573160407360907329" ], "threshold": 0.9 }, "source": "https://github.com/torvalds/linux/commit/1f461dcdd296eecedaffffc6bae2bfa90bd7eb89", "signature_version": "v1", "target": { "file": "drivers/net/ppp/ppp_generic.c" }, "deprecated": false, "signature_type": "Line" } ] }