CVE-2016-9755 describes an integer overflow and out-of-bounds write vulnerability in the netfilter subsystem of the Linux kernel, affecting versions prior to 4.9. A local attacker can exploit this flaw by crafting specific system calls related to IPv6 reassembly, leading to a denial of service (GPF) or potentially other unspecified impacts. With a CVSS v3 score of 7.8 (High), this vulnerability has a low attack complexity and requires local privileges, allowing for high impact on confidentiality, integrity, and availability. There is no known public exploit code, Metasploit modules, or significant community discussion or media coverage surrounding this CVE, indicating a low likelihood of active exploitation.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 4.8.15CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.