CVE-2015-8967

Severity CVSS v4.0:
Pending analysis
Type:
CWE-264 Permissions, Privileges, and Access Control
Publication date:
08/12/2016
Last modified:
12/04/2025

Description

arch/arm64/kernel/sys.c in the Linux kernel before 4.0 allows local users to bypass the "strict page permissions" protection mechanism and modify the system-call table, and consequently gain privileges, by leveraging write access.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:google:android:*:*:*:*:*:*:*:* 7.0 (including)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 3.18.54 (including)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 3.19 (including) 3.19.8 (including)