Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2016-0723

18
FAUCET Score

CVE-2016-0723 is a race condition vulnerability in the Linux kernel's tty_ioctl function (drivers/tty/tty_io.c) affecting versions up to 4.4.1. This flaw allows local users to trigger a use-after-free condition and system crash (denial of service) or potentially extract sensitive information from kernel memory. With a CVSS v3 score of 6.8 (Medium), it requires local access but has low attack complexity, impacting confidentiality and availability. There is no known active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage surrounding this vulnerability.

Impacted Technologies

VendorProductVersion(s)CPE
<= 4.4.1CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.0

6.8MEDIUM

CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:H

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
LOW
Integrity Impact
NONE
Availability Impact
HIGH
Exploitability Score
2.5
Impact Score
4.2
CvssVersion
3.0

Exploit Intelligence

EPSS Score
0.38%
Probability of exploitation in next 30 days
EPSS Percentile
30.8%
Percentile rank of EPSS score among Peer Group
As of 2026-07-24
Model: v2026.06.15
This CVE's current EPSS score of 0.0038 is in the 53rd percentile among its peer group of 3,048 CVEs.

Social Chatter

No social media mentions found for this CVE.

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Vendor Patches (5)

redhatend of lifevia redhat_api
Product: Red Hat Enterprise Linux 5Fixed in: kernel
redhatend of lifevia redhat_api
Product: Red Hat Enterprise Linux 6Fixed in: kernel
redhatend of lifevia redhat_api
Product: Red Hat Enterprise Linux 7Fixed in: kernel
redhatend of lifevia redhat_api
Product: Red Hat Enterprise Linux 7Fixed in: kernel-rt
redhatend of lifevia redhat_api
Product: Red Hat Enterprise MRG 2Fixed in: realtime-kernel

Vendor Advisories (1)

redhatCVE-2016-0723Moderate

kernel: Kernel memory disclosure and crash in tty layer

Nov 27, 2015

References

git.kernel.org / cgit/linux/kernel/git/torvalds/linux.git/commit
Vendor Advisory
lists.fedoraproject.org / pipermail/package-announce/2016-February/176464.html
lists.fedoraproject.org / pipermail/package-announce/2016-February/176484.html
lists.opensuse.org / opensuse-security-announce/2016-03/msg00094.html
lists.opensuse.org / opensuse-security-announce/2016-04/msg00015.html
lists.opensuse.org / opensuse-security-announce/2016-04/msg00045.html
lists.opensuse.org / opensuse-security-announce/2016-07/msg00005.html
lists.opensuse.org / opensuse-security-announce/2016-08/msg00038.html
bugzilla.redhat.com / show_bug.cgi
github.com / torvalds/linux/commit/5c17c861a357e9458001f021a7afa7aab9937439
source.android.com / security/bulletin/2016-07-01.html
security-tracker.debian.org / tracker/CVE-2016-0723
support.f5.com / csp/article/K43650115
debian.org / security/2016/dsa-3448
debian.org / security/2016/dsa-3503
oracle.com / technetwork/topics/security/linuxbulletinjul2016-3090544.html
oracle.com / technetwork/topics/security/ovmbulletinoct2016-3090547.html
securityfocus.com / bid/82950
securitytracker.com / id/1035695
ubuntu.com / usn/USN-2929-1
ubuntu.com / usn/USN-2929-2
ubuntu.com / usn/USN-2930-1
ubuntu.com / usn/USN-2930-2
ubuntu.com / usn/USN-2930-3
ubuntu.com / usn/USN-2932-1
ubuntu.com / usn/USN-2948-1
ubuntu.com / usn/USN-2948-2
ubuntu.com / usn/USN-2967-1
ubuntu.com / usn/USN-2967-2