UBUNTU-CVE-2016-2063

Source
https://ubuntu.com/security/CVE-2016-2063
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2016/UBUNTU-CVE-2016-2063.json
JSON Data
https://api.osv.dev/v1/vulns/UBUNTU-CVE-2016-2063
Related
  • CVE-2016-2063
Withdrawn
2025-06-23T15:52:45Z
Published
2016-08-07T21:59:00Z
Modified
2026-02-04T03:12:00Z
Severity
  • 7.8 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
  • 9.8 (Critical) CVSS_V3 - CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

Stack-based buffer overflow in the supply_lm_input_write function in drivers/thermal/supply_lm_core.c in the MSM Thermal driver for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted application that sends a large amount of data through the debugfs interface.

References

Affected packages

Ubuntu:Pro:16.04:LTS / linux-flo

Package

Name
linux-flo
Purl
pkg:deb/ubuntu/linux-flo@3.4.0-5.23?arch=source&distro=esm-apps/xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected

Affected versions

3.*
3.4.0-5.19
3.4.0-5.22
3.4.0-5.23

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2016/UBUNTU-CVE-2016-2063.json"

Ubuntu:Pro:16.04:LTS / linux-goldfish

Package

Name
linux-goldfish
Purl
pkg:deb/ubuntu/linux-goldfish@3.4.0-4.27?arch=source&distro=esm-apps/xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected

Affected versions

3.*
3.4.0-4.24
3.4.0-4.26
3.4.0-4.27

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2016/UBUNTU-CVE-2016-2063.json"

Ubuntu:Pro:16.04:LTS / linux-mako

Package

Name
linux-mako
Purl
pkg:deb/ubuntu/linux-mako@3.4.0-7.44?arch=source&distro=esm-apps/xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected

Affected versions

3.*
3.4.0-7.39
3.4.0-7.40
3.4.0-7.41
3.4.0-7.44

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2016/UBUNTU-CVE-2016-2063.json"