CVE-2016-9754: Linux Kernel

High severity, CVSS 7.8. EPSS: 0.5% chance of exploitation in the next 30 days.

The ring_buffer_resize function in kernel/trace/ring_buffer.c in the profiling subsystem in the Linux kernel before 4.6.1 mishandles certain integer calculations, which allows local users to gain privileges by writing to the /sys/kernel/debug/tracing/buffer_size_kb file.

Affected products

  • Linux Linux Kernel: from 3.5, before 3.10.102 (fixed in 3.10.102); from 3.11, before 3.12.61 (fixed in 3.12.61); from 3.13, before 3.14.71 (fixed in 3.14.71); from 3.15, before 3.16.37 (fixed in 3.16.37); from 3.17, before 3.18.35 (fixed in 3.18.35); from 3.19, before 4.1.26 (fixed in 4.1.26); …

Published 2017-01-05. Last modified 2026-06-17.