Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2006-1522

15
FAUCET Score

CVE-2006-1522 describes a denial-of-service vulnerability in the Linux kernel (versions 2.6.16.1 and 2.6.17-rc1, and potentially earlier) affecting the keyring code. A local attacker can trigger an OOPS by making specific keyctl requests that lead to an invalid dereference. This vulnerability has a CVSS score of 4.9, indicating a low attack complexity and requiring local access to achieve a complete denial of service. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage.

Impacted Technologies

VendorProductVersion(s)CPE
2.6.16.1CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:2.6.16.1:*:*:*:*:*:*:*
2.6.17CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:2.6.17:rc1:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 2.0

4.9MEDIUM

AV:L/AC:L/Au:N/C:N/I:N/A:C

Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
COMPLETE
Access Vector
LOCAL
Access Complexity
LOW
Authentication
NONE
Exploitability Score
3.9
Impact Score
6.9
CvssVersion
2.0

Exploit Intelligence

EPSS Score
0.44%
Probability of exploitation in next 30 days
EPSS Percentile
35.9%
Percentile rank of EPSS score among Peer Group
As of 2026-07-28
Model: v2026.06.15
This CVE's current EPSS score of 0.0044 is in the 67th percentile among its peer group of 3,052 CVEs.

Social Chatter

No social media mentions found for this CVE.

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (2)

redhatpatch availablevia nvd_reference
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 4Fixed in: kernel-0:2.6.9-34.0.1.EL
View patch

Vendor Advisories (1)

redhatCVE-2006-1522Important

security flaw

Apr 10, 2006

References

kernel.org / pub/linux/kernel/v2.6/ChangeLog-2.6.16.3
lwn.net / Alerts/180820
bugzilla.redhat.com / bugzilla/show_bug.cgi
Patch
secunia.com / advisories/19573
PatchVendor Advisory
secunia.com / advisories/19735
Vendor Advisory
secunia.com / advisories/20157
Vendor Advisory
secunia.com / advisories/20237
Vendor Advisory
secunia.com / advisories/20716
Vendor Advisory
secunia.com / advisories/21745
Vendor Advisory
exchange.xforce.ibmcloud.com / vulnerabilities/25722
oval.cisecurity.org / repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9325
support.avaya.com / elmodocs2/security/ASA-2006-161.htm
Vendor Advisory
kernel.org / git
mandriva.com / security/advisories
osvdb.org / 24507
redhat.com / support/errata/RHSA-2006-0493.html
securityfocus.com / bid/17451
Patch
ubuntu.com / usn/usn-302-1
vupen.com / english/advisories/2006/1307
Vendor Advisory
vupen.com / english/advisories/2006/1475
Vendor Advisory