Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2016-6187

37
FAUCET Score

CVE-2016-6187 describes an off-by-one vulnerability in the AppArmor component of the Linux kernel versions prior to 4.6.5. This flaw allows a local attacker to gain elevated privileges by manipulating the apparmor_setprocattr function due to improper buffer size validation. With a CVSS score of 7.8 (High), successful exploitation grants full confidentiality, integrity, and availability impact. While not actively exploited in the wild (KEV: No), a Proof-of-Concept exploit (EDB-44301) exists, and the vulnerability has garnered significant community discussion and media coverage, indicating awareness among security researchers.

Impacted Technologies

VendorProductVersion(s)CPE
>= 4.5, < 4.6.5CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

7.8HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
Exploitability Score
1.8
Impact Score
5.9
CvssVersion
3.1

Exploit Intelligence

EPSS Score
2.40%
Probability of exploitation in next 30 days
EPSS Percentile
82.3%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
ExploitDB: EDB-44301 · Oct 16, 2016
This CVE's current EPSS score of 0.0240 is in the 97th percentile among its peer group of 17,070 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.

Media Mentions

The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (1)

github_advisorypatch availablevia nvd_reference
View patch

Vendor Advisories (1)

redhatCVE-2016-6187Important

kernel: apparmor: Potential privilege escalation via oops in apparmor_setprocattr()

Jul 8, 2016

References

git.kernel.org / cgit/linux/kernel/git/torvalds/linux.git/commit
Issue TrackingPatch
marc.info
Third Party Advisory
bugzilla.redhat.com / show_bug.cgi
Issue Tracking
github.com / torvalds/linux/commit/30a46a4647fd1df9cf52e43bf467f0d9265096ca
Issue TrackingPatch
kernel.org / pub/linux/kernel/v4.x/ChangeLog-4.6.5
Release Notes
openwall.com / lists/oss-security/2016/07/09/2
Mailing ListThird Party Advisory
securityfocus.com / bid/91696
Third Party AdvisoryVDB Entry