UBUNTU-CVE-2016-2067

Source
https://ubuntu.com/security/CVE-2016-2067
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2016/UBUNTU-CVE-2016-2067.json
JSON Data
https://api.osv.dev/v1/vulns/UBUNTU-CVE-2016-2067
Related
  • CVE-2016-2067
Withdrawn
2025-06-23T15:52:45Z
Published
2016-07-11T01:59:00Z
Modified
2026-02-04T04:08:47Z
Severity
  • 7.8 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H CVSS Calculator
  • 7.8 (High) CVSS_V3 - CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

drivers/gpu/msm/kgsl.c in the MSM graphics driver (aka GPU driver) for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, mishandles the KGSL_MEMFLAGS_GPUREADONLY flag, which allows attackers to gain privileges by leveraging accidental read-write mappings, aka Qualcomm internal bug CR988993.

References

Affected packages

Ubuntu:Pro:16.04:LTS / linux-flo

Package

Name
linux-flo
Purl
pkg:deb/ubuntu/linux-flo@3.4.0-5.23?arch=source&distro=esm-apps/xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected

Affected versions

3.*
3.4.0-5.19
3.4.0-5.22
3.4.0-5.23

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2016/UBUNTU-CVE-2016-2067.json"

Ubuntu:Pro:16.04:LTS / linux-goldfish

Package

Name
linux-goldfish
Purl
pkg:deb/ubuntu/linux-goldfish@3.4.0-4.27?arch=source&distro=esm-apps/xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected

Affected versions

3.*
3.4.0-4.24
3.4.0-4.26
3.4.0-4.27

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2016/UBUNTU-CVE-2016-2067.json"

Ubuntu:Pro:16.04:LTS / linux-mako

Package

Name
linux-mako
Purl
pkg:deb/ubuntu/linux-mako@3.4.0-7.44?arch=source&distro=esm-apps/xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected

Affected versions

3.*
3.4.0-7.39
3.4.0-7.40
3.4.0-7.41
3.4.0-7.44

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2016/UBUNTU-CVE-2016-2067.json"