CVE-2015-8785: Linux Kernel

Medium severity, CVSS 6.2. EPSS: 0.6% chance of exploitation in the next 30 days.

The fuse_fill_write_pages function in fs/fuse/file.c in the Linux kernel before 4.4 allows local users to cause a denial of service (infinite loop) via a writev system call that triggers a zero length for the first segment of an iov.

Affected products

  • Linux Linux Kernel: before 4.4 (fixed in 4.4); version 4.4 only
  • Suse Linux Enterprise Real Time Extension: version 12 only

Published 2016-02-08. Last modified 2026-06-17.