CVE-2016-5011 describes a denial-of-service vulnerability in the libblkid library (util-linux) affecting products like IBM, Linux kernel, and Red Hat. A physically proximate attacker can exploit this by crafting an MSDOS partition table with a specific extended partition boot record, leading to excessive memory consumption. Rated Medium severity (CVSS 4.6), it requires physical access and has a high impact on availability, but no known active exploits, public exploit code, or significant community discussion have been identified.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 2.28CPE matchmatch criteria | cpe:2.3:a:kernel:util-linux:*:*:*:*:*:*:*:* | ||
7.0CPE matchmatch criteria | cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:* | ||
7.3CPE matchmatch criteria | cpe:2.3:o:redhat:enterprise_linux_eus:7.3:*:*:*:*:*:*:* | ||
7.4CPE matchmatch criteria | cpe:2.3:o:redhat:enterprise_linux_eus:7.4:*:*:*:*:*:*:* | ||
7.5CPE matchmatch criteria | cpe:2.3:o:redhat:enterprise_linux_eus:7.5:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.2 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.