CVE-2016-7425: Canonical Ubuntu Linux

High severity, CVSS 7.8. EPSS: 0.4% chance of exploitation in the next 30 days.

The arcmsr_iop_message_xfer function in drivers/scsi/arcmsr/arcmsr_hba.c in the Linux kernel through 4.8.2 does not restrict a certain length field, which allows local users to gain privileges or cause a denial of service (heap-based buffer overflow) via an ARCMSR_MESSAGE_WRITE_WQBUFFER control code.

Affected products

  • Canonical Ubuntu Linux: version 12.04 only; version 14.04 only; version 16.04 only; version 16.10 only
  • Linux Linux Kernel: from 3.2, before 3.2.84 (fixed in 3.2.84); from 3.3, before 3.10.105 (fixed in 3.10.105); from 3.11, before 3.12.67 (fixed in 3.12.67); from 3.13, before 3.16.39 (fixed in 3.16.39); from 3.17, before 3.18.46 (fixed in 3.18.46); from 3.19, before 4.1.37 (fixed in 4.1.37); …

Published 2016-10-16. Last modified 2026-06-17.