1
PublicDateAtUSN: 2016-12-28
2
Candidate: CVE-2016-9755
5
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-9755
6
https://groups.google.com/forum/#!topic/syzkaller/GFbGpX7nTEo
7
https://www.spinics.net/lists/netdev/msg407525.html
8
https://usn.ubuntu.com/usn/usn-3359-1
9
https://usn.ubuntu.com/usn/usn-3361-1
11
The netfilter subsystem in the Linux kernel before 4.9 mishandles IPv6
12
reassembly, which allows local users to cause a denial of service (integer
13
overflow, out-of-bounds write, and GPF) or possibly have unspecified other
14
impact via a crafted application that makes socket, connect, and writev
15
system calls, related to net/ipv6/netfilter/nf_conntrack_reasm.c and
16
net/ipv6/netfilter/nf_defrag_ipv6_hooks.c.
18
Dmitry Vyukov, Andrey Konovalov, Florian Westphal, and Eric Dumazet
19
discovered that the netfiler subsystem in the Linux kernel mishandled IPv6
20
packet reassembly. A local user could use this to cause a denial of service
21
(system crash) or possibly execute arbitrary code.
23
jdstrand> android kernels (flo, goldfish, grouper, maguro, mako and manta) are
24
not supported on the Ubuntu Touch 14.10 and earlier preview kernels
25
jdstrand> linux-lts-saucy no longer receives official support
26
jdstrand> linux-lts-quantal no longer receives official support
29
Discovered-by: Dmitry Vyukov, Andrey Konovalov, Florian Westphal, Eric Dumazet
33
break-fix: 029f7f3b8701cc7aca8bdb31f0c7edd6a479e357 9b57da0630c9fd36ed7a20fc0f98dc82cc0777fa
34
upstream_linux: released (4.9~rc8)
35
precise_linux: not-affected
36
precise/esm_linux: not-affected
37
trusty_linux: not-affected
38
vivid/ubuntu-core_linux: not-affected
39
vivid/stable-phone-overlay_linux: DNE
40
xenial_linux: not-affected
41
yakkety_linux: released (4.8.0-59.64)
42
zesty_linux: not-affected (4.9.0-11.12)
43
devel_linux: not-affected (4.10.0-19.21)
45
Patches_linux-ti-omap4:
46
upstream_linux-ti-omap4: released (4.9~rc8)
47
precise_linux-ti-omap4: not-affected
48
precise/esm_linux-ti-omap4: DNE (precise was not-affected)
49
trusty_linux-ti-omap4: DNE
50
vivid/ubuntu-core_linux-ti-omap4: DNE
51
vivid/stable-phone-overlay_linux-ti-omap4: DNE
52
xenial_linux-ti-omap4: DNE
53
yakkety_linux-ti-omap4: DNE
54
zesty_linux-ti-omap4: DNE
55
devel_linux-ti-omap4: DNE
57
Patches_linux-linaro-omap:
58
upstream_linux-linaro-omap: released (4.9~rc8)
59
precise_linux-linaro-omap: ignored (abandoned)
60
precise/esm_linux-linaro-omap: DNE (precise was ignored [abandoned])
61
trusty_linux-linaro-omap: DNE
62
vivid/ubuntu-core_linux-linaro-omap: DNE
63
vivid/stable-phone-overlay_linux-linaro-omap: DNE
64
xenial_linux-linaro-omap: DNE
65
yakkety_linux-linaro-omap: DNE
66
zesty_linux-linaro-omap: DNE
67
devel_linux-linaro-omap: DNE
69
Patches_linux-linaro-shared:
70
upstream_linux-linaro-shared: released (4.9~rc8)
71
precise_linux-linaro-shared: ignored (abandoned)
72
precise/esm_linux-linaro-shared: DNE (precise was ignored [abandoned])
73
trusty_linux-linaro-shared: DNE
74
vivid/ubuntu-core_linux-linaro-shared: DNE
75
vivid/stable-phone-overlay_linux-linaro-shared: DNE
76
xenial_linux-linaro-shared: DNE
77
yakkety_linux-linaro-shared: DNE
78
zesty_linux-linaro-shared: DNE
79
devel_linux-linaro-shared: DNE
81
Patches_linux-linaro-vexpress:
82
upstream_linux-linaro-vexpress: released (4.9~rc8)
83
precise_linux-linaro-vexpress: ignored (abandoned)
84
precise/esm_linux-linaro-vexpress: DNE (precise was ignored [abandoned])
85
trusty_linux-linaro-vexpress: DNE
86
vivid/ubuntu-core_linux-linaro-vexpress: DNE
87
vivid/stable-phone-overlay_linux-linaro-vexpress: DNE
88
xenial_linux-linaro-vexpress: DNE
89
yakkety_linux-linaro-vexpress: DNE
90
zesty_linux-linaro-vexpress: DNE
91
devel_linux-linaro-vexpress: DNE
93
Patches_linux-qcm-msm:
94
upstream_linux-qcm-msm: released (4.9~rc8)
95
precise_linux-qcm-msm: ignored (abandoned)
96
precise/esm_linux-qcm-msm: DNE (precise was ignored [abandoned])
97
trusty_linux-qcm-msm: DNE
98
vivid/ubuntu-core_linux-qcm-msm: DNE
99
vivid/stable-phone-overlay_linux-qcm-msm: DNE
100
xenial_linux-qcm-msm: DNE
101
yakkety_linux-qcm-msm: DNE
102
zesty_linux-qcm-msm: DNE
103
devel_linux-qcm-msm: DNE
105
Tags_linux-armadaxp: not-ue
106
Patches_linux-armadaxp:
107
upstream_linux-armadaxp: released (4.9~rc8)
108
precise_linux-armadaxp: not-affected
109
precise/esm_linux-armadaxp: DNE (precise was not-affected)
110
trusty_linux-armadaxp: DNE
111
vivid/ubuntu-core_linux-armadaxp: DNE
112
vivid/stable-phone-overlay_linux-armadaxp: DNE
113
xenial_linux-armadaxp: DNE
114
yakkety_linux-armadaxp: DNE
115
zesty_linux-armadaxp: DNE
116
devel_linux-armadaxp: DNE
118
Tags_linux-lts-quantal: not-ue
119
Patches_linux-lts-quantal: DNE
120
upstream_linux-lts-quantal: released (4.9~rc8)
121
precise_linux-lts-quantal: ignored (end-of-life)
122
precise/esm_linux-lts-quantal: DNE (precise was ignored [end-of-life])
123
trusty_linux-lts-quantal: DNE
124
vivid/ubuntu-core_linux-lts-quantal: DNE
125
vivid/stable-phone-overlay_linux-lts-quantal: DNE
126
xenial_linux-lts-quantal: DNE
127
yakkety_linux-lts-quantal: DNE
128
zesty_linux-lts-quantal: DNE
129
devel_linux-lts-quantal: DNE
131
Patches_linux-lts-raring:
132
upstream_linux-lts-raring: released (4.9~rc8)
133
precise_linux-lts-raring: ignored (end-of-life)
134
precise/esm_linux-lts-raring: DNE (precise was ignored [end-of-life])
135
trusty_linux-lts-raring: DNE
136
vivid/ubuntu-core_linux-lts-raring: DNE
137
vivid/stable-phone-overlay_linux-lts-raring: DNE
138
xenial_linux-lts-raring: DNE
139
yakkety_linux-lts-raring: DNE
140
zesty_linux-lts-raring: DNE
141
devel_linux-lts-raring: DNE
143
Tags_linux-lts-saucy: not-ue
144
Patches_linux-lts-saucy:
145
upstream_linux-lts-saucy: released (4.9~rc8)
146
precise_linux-lts-saucy: ignored (end-of-life)
147
precise/esm_linux-lts-saucy: DNE (precise was ignored [end-of-life])
148
trusty_linux-lts-saucy: DNE
149
vivid/ubuntu-core_linux-lts-saucy: DNE
150
vivid/stable-phone-overlay_linux-lts-saucy: DNE
151
xenial_linux-lts-saucy: DNE
152
yakkety_linux-lts-saucy: DNE
153
zesty_linux-lts-saucy: DNE
154
devel_linux-lts-saucy: DNE
156
Patches_linux-lts-trusty:
157
upstream_linux-lts-trusty: released (4.9~rc8)
158
precise_linux-lts-trusty: not-affected
159
precise/esm_linux-lts-trusty: not-affected
160
trusty_linux-lts-trusty: DNE
161
vivid/ubuntu-core_linux-lts-trusty: DNE
162
vivid/stable-phone-overlay_linux-lts-trusty: DNE
163
xenial_linux-lts-trusty: DNE
164
yakkety_linux-lts-trusty: DNE
165
zesty_linux-lts-trusty: DNE
166
devel_linux-lts-trusty: DNE
168
Patches_linux-goldfish:
169
upstream_linux-goldfish: released (4.9~rc8)
170
precise_linux-goldfish: DNE
171
precise/esm_linux-goldfish: DNE
172
trusty_linux-goldfish: ignored
173
vivid/ubuntu-core_linux-goldfish: DNE
174
vivid/stable-phone-overlay_linux-goldfish: DNE
175
xenial_linux-goldfish: not-affected
176
yakkety_linux-goldfish: not-affected
177
zesty_linux-goldfish: not-affected
178
devel_linux-goldfish: DNE
180
Patches_linux-grouper:
181
upstream_linux-grouper: released (4.9~rc8)
182
precise_linux-grouper: DNE
183
precise/esm_linux-grouper: DNE
184
trusty_linux-grouper: ignored
185
vivid/ubuntu-core_linux-grouper: DNE
186
vivid/stable-phone-overlay_linux-grouper: DNE
187
xenial_linux-grouper: DNE
188
yakkety_linux-grouper: DNE
189
zesty_linux-grouper: DNE
190
devel_linux-grouper: DNE
192
Patches_linux-maguro:
193
upstream_linux-maguro: released (4.9~rc8)
194
precise_linux-maguro: DNE
195
precise/esm_linux-maguro: DNE
196
trusty_linux-maguro: ignored
197
vivid/ubuntu-core_linux-maguro: DNE
198
vivid/stable-phone-overlay_linux-maguro: DNE
199
xenial_linux-maguro: DNE
200
yakkety_linux-maguro: DNE
201
zesty_linux-maguro: DNE
202
devel_linux-maguro: DNE
205
upstream_linux-mako: released (4.9~rc8)
206
precise_linux-mako: DNE
207
precise/esm_linux-mako: DNE
208
trusty_linux-mako: ignored
209
vivid/ubuntu-core_linux-mako: DNE
210
vivid/stable-phone-overlay_linux-mako: not-affected
211
xenial_linux-mako: not-affected
212
yakkety_linux-mako: not-affected
213
zesty_linux-mako: DNE
214
devel_linux-mako: DNE
217
upstream_linux-manta: released (4.9~rc8)
218
precise_linux-manta: DNE
219
precise/esm_linux-manta: DNE
220
trusty_linux-manta: ignored
221
vivid/ubuntu-core_linux-manta: DNE
222
vivid/stable-phone-overlay_linux-manta: DNE
223
xenial_linux-manta: DNE
224
yakkety_linux-manta: DNE
225
zesty_linux-manta: DNE
226
devel_linux-manta: DNE
229
upstream_linux-flo: released (4.9~rc8)
230
precise_linux-flo: DNE
231
precise/esm_linux-flo: DNE
232
trusty_linux-flo: ignored
233
vivid/ubuntu-core_linux-flo: DNE
234
vivid/stable-phone-overlay_linux-flo: not-affected
235
xenial_linux-flo: not-affected
236
yakkety_linux-flo: not-affected
240
Patches_linux-raspi2:
241
upstream_linux-raspi2: released (4.9~rc8)
242
precise_linux-raspi2: DNE
243
precise/esm_linux-raspi2: DNE
244
trusty_linux-raspi2: DNE
245
vivid/ubuntu-core_linux-raspi2: not-affected
246
vivid/stable-phone-overlay_linux-raspi2: DNE
247
xenial_linux-raspi2: not-affected
248
yakkety_linux-raspi2: released (4.8.0-1043.47)
249
zesty_linux-raspi2: not-affected (4.10.0-1001.3)
250
devel_linux-raspi2: not-affected (4.10.0-1004.6)
252
Patches_linux-lts-utopic:
253
upstream_linux-lts-utopic: released (4.9~rc8)
254
precise_linux-lts-utopic: DNE
255
precise/esm_linux-lts-utopic: DNE
256
trusty_linux-lts-utopic: ignored (end-of-life)
257
vivid/ubuntu-core_linux-lts-utopic: DNE
258
vivid/stable-phone-overlay_linux-lts-utopic: DNE
259
xenial_linux-lts-utopic: DNE
260
yakkety_linux-lts-utopic: DNE
261
zesty_linux-lts-utopic: DNE
262
devel_linux-lts-utopic: DNE
264
Patches_linux-lts-vivid:
265
upstream_linux-lts-vivid: released (4.9~rc8)
266
precise_linux-lts-vivid: DNE
267
precise/esm_linux-lts-vivid: DNE
268
trusty_linux-lts-vivid: not-affected
269
vivid/ubuntu-core_linux-lts-vivid: DNE
270
vivid/stable-phone-overlay_linux-lts-vivid: DNE
271
xenial_linux-lts-vivid: DNE
272
yakkety_linux-lts-vivid: DNE
273
zesty_linux-lts-vivid: DNE
274
devel_linux-lts-vivid: DNE
276
Patches_linux-lts-wily:
277
upstream_linux-lts-wily: released (4.9~rc8)
278
precise_linux-lts-wily: DNE
279
precise/esm_linux-lts-wily: DNE
280
trusty_linux-lts-wily: ignored (end-of-life)
281
vivid/ubuntu-core_linux-lts-wily: DNE
282
vivid/stable-phone-overlay_linux-lts-wily: DNE
283
xenial_linux-lts-wily: DNE
284
yakkety_linux-lts-wily: DNE
285
zesty_linux-lts-wily: DNE
286
devel_linux-lts-wily: DNE
288
Patches_linux-krillin:
289
product_linux-krillin: not-affected
291
Patches_linux-vegetahd:
292
product_linux-vegetahd: not-affected
294
Patches_linux-lts-xenial:
295
upstream_linux-lts-xenial: released (4.9~rc8)
296
precise_linux-lts-xenial: DNE
297
precise/esm_linux-lts-xenial: DNE
298
trusty_linux-lts-xenial: not-affected
299
vivid/ubuntu-core_linux-lts-xenial: DNE
300
vivid/stable-phone-overlay_linux-lts-xenial: DNE
301
xenial_linux-lts-xenial: DNE
302
yakkety_linux-lts-xenial: DNE
303
zesty_linux-lts-xenial: DNE
304
devel_linux-lts-xenial: DNE
306
Patches_linux-snapdragon:
307
upstream_linux-snapdragon: released (4.9~rc8)
308
precise_linux-snapdragon: DNE
309
precise/esm_linux-snapdragon: DNE
310
trusty_linux-snapdragon: DNE
311
vivid/ubuntu-core_linux-snapdragon: DNE
312
vivid/stable-phone-overlay_linux-snapdragon: DNE
313
xenial_linux-snapdragon: not-affected
314
yakkety_linux-snapdragon: not-affected
315
zesty_linux-snapdragon: not-affected
316
devel_linux-snapdragon: not-affected
319
upstream_linux-aws: released (4.9~rc8)
320
precise_linux-aws: DNE
321
precise/esm_linux-aws: DNE
322
trusty_linux-aws: not-affected
323
vivid/ubuntu-core_linux-aws: DNE
324
vivid/stable-phone-overlay_linux-aws: DNE
325
xenial_linux-aws: not-affected
326
yakkety_linux-aws: DNE
330
Patches_linux-hwe-edge:
331
upstream_linux-hwe-edge: released (4.9~rc8)
332
precise_linux-hwe-edge: DNE
333
precise/esm_linux-hwe-edge: DNE
334
trusty_linux-hwe-edge: DNE
335
vivid/ubuntu-core_linux-hwe-edge: DNE
336
vivid/stable-phone-overlay_linux-hwe-edge: DNE
337
xenial_linux-hwe-edge: released (4.10.0-14.16~16.04.1)
338
yakkety_linux-hwe-edge: DNE
339
zesty_linux-hwe-edge: DNE
340
devel_linux-hwe-edge: DNE
343
upstream_linux-hwe: released (4.9~rc8)
344
precise_linux-hwe: DNE
345
precise/esm_linux-hwe: DNE
346
trusty_linux-hwe: DNE
347
vivid/ubuntu-core_linux-hwe: DNE
348
vivid/stable-phone-overlay_linux-hwe: DNE
349
xenial_linux-hwe: released (4.10.0-27.30~16.04.2)
350
yakkety_linux-hwe: DNE
355
upstream_linux-gke: released (4.9~rc8)
356
precise_linux-gke: DNE
357
precise/esm_linux-gke: DNE
358
trusty_linux-gke: DNE
359
vivid/ubuntu-core_linux-gke: DNE
360
vivid/stable-phone-overlay_linux-gke: DNE
361
xenial_linux-gke: not-affected
362
yakkety_linux-gke: DNE
367
upstream_linux-azure: released (4.9~rc8)
368
precise/esm_linux-azure: DNE
369
trusty_linux-azure: DNE
370
vivid/ubuntu-core_linux-azure: DNE
371
vivid/stable-phone-overlay_linux-azure: DNE
372
xenial_linux-azure: not-affected (4.11.0-1009.9)
373
yakkety_linux-azure: DNE
374
zesty_linux-azure: DNE
375
devel_linux-azure: DNE
379
upstream_linux-gcp: released (4.9~rc8)
380
precise/esm_linux-gcp: DNE
381
trusty_linux-gcp: DNE
382
vivid/ubuntu-core_linux-gcp: DNE
383
xenial_linux-gcp: not-affected (4.10.0-1004.4)
384
yakkety_linux-gcp: DNE
389
upstream_linux-kvm: released (4.9~rc8)
390
precise/esm_linux-kvm: DNE
391
trusty_linux-kvm: DNE
392
vivid/ubuntu-core_linux-kvm: DNE
393
xenial_linux-kvm: not-affected
397
Patches_linux-euclid:
398
upstream_linux-euclid: released (4.9~rc8)
399
precise/esm_linux-euclid: DNE
400
trusty_linux-euclid: DNE
401
vivid/ubuntu-core_linux-euclid: DNE
402
xenial_linux-euclid: not-affected
403
zesty_linux-euclid: DNE
404
devel_linux-euclid: DNE