CVE-2016-3699: Linux Kernel

High severity, CVSS 7.4. EPSS: 0.5% chance of exploitation in the next 30 days.

The Linux kernel, as used in Red Hat Enterprise Linux 7.2 and Red Hat Enterprise MRG 2 and when booted with UEFI Secure Boot enabled, allows local users to bypass intended Secure Boot restrictions and execute untrusted code by appending ACPI tables to the initrd.

Affected products

  • Linux Linux Kernel: affected versions not specified
  • Red Hat Enterprise Mrg: version 2.0 only
  • Red Hat Linux: version 7.2 only

Published 2016-10-07. Last modified 2026-06-17.