CVE-2016-7911: Linux Kernel
High severity, CVSS 7.8. EPSS: 1.5% chance of exploitation in the next 30 days.
Race condition in the get_task_ioprio function in block/ioprio.c in the Linux kernel before 4.6.6 allows local users to gain privileges or cause a denial of service (use-after-free) via a crafted ioprio_get system call.
Affected products
- Linux Linux Kernel: before 3.2.85 (fixed in 3.2.85); from 3.3, before 3.10.107 (fixed in 3.10.107); from 3.11, before 3.12.70 (fixed in 3.12.70); from 3.13, before 3.16.37 (fixed in 3.16.37); from 3.17, before 3.18.38 (fixed in 3.18.38); from 3.19, before 4.1.29 (fixed in 4.1.29); …
Published 2016-11-16. Last modified 2026-06-17.