CVE-2016-2383Patch(canonical / leap)

LOWCVSS 5.5 · MEDIUM

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch canonical leap systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

The adjust_branches function in kernel/bpf/verifier.c in the Linux kernel before 4.5 does not consider the delta in the backward-jump case, which allows local users to obtain sensitive information from kernel memory by creating a packet filter and then loading crafted BPF instructions.

1.0/ 10 priority

Sources & remediation

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • leap
  • linux_kernel
  • ubuntu_linux

Threat summary

  • Patch or workaround signal is available
  • 1 mentions across 1 observed day

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 1 signal
  • 1 total mentions across 1 day

Affected systems

Products
leaplinux_kernelubuntu_linux

4 versions affected across 3 products

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-04-29: 1Patch / Workaround · 2026-04-29: 1Technical Details · 2026-04-29: 104-29
Signal classification1 categories
Patch
1100.0%
Full discourse1 post
  • Lorinc Czegledi@ang124875
    Patch

    @brian_pak @5unKn0wn The splice/AF_ALG arbitrary write bug (CVE-2016-2383) was patched in kernel 4.5 (March 2016). 2016...

    Post summary

    The tweet indicates that CVE-2016-2383, an arbitrary write flaw in splice/AF_ALG, was patched in Linux kernel 4.5 as of March 2016.

    000321.1K
    71 followersView on X
CPE platform detail7 entries

7 of 7 entries

PartVendorProductVersionTarget SWTarget HW
OScanonicalubuntu_linux14.04--
OScanonicalubuntu_linux15.10--
OSlinuxlinux_kernel---
OSlinuxlinux_kernel4.5.0--
OSlinuxlinux_kernel4.5.0--
OSlinuxlinux_kernel4.5.0--
OSopensuseleap42.1--

Explore more