Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by leveraging incorrect handling of a copy-on-write (COW) feature to write to a read-only memory mapping, as exploited in the wild in October 2016, aka "Dirty COW."
Is CVE-2016-5195 exploited?
Listed in the CISA KEV catalog on 2022-03-03.
Federal remediation due 2022-03-24.
Past that date by 1605 days.
EPSS puts exploitation in the next 30 days at 84%.
Public exploit code: functional.
Which products and versions are affected?
No affected package list recorded here yet.
Is there a patch?
No patch identifier recorded here yet.
What PlainSec published about CVE-2016-5195
PlainSec has not published a story about this CVE.