CVE-2016-5195General(canonical / cloud_backup)

LOWCVSS 7.0 · HIGHCISA KEV

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by leveraging incorrect handling of a copy-on-write (COW) feature to write to a read-only memory mapping, as exploited in the wild in October 2016, aka "Dirty COW."

1.3/ 10 priority

Sources & remediation

Listed in the CISA Known Exploited Vulnerabilities catalog. Federal remediation due date: 2022-03-24. Apply updates per vendor instructions.

Weakness type (CWE)
CWE-362

Priority

LOW

Exploitation

ACTIVE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • cloud_backup
  • debian_linux
  • enterprise_linux
  • enterprise_linux_aus

Threat summary

  • 16 mentions across 11 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 1 signal
  • General: 16 classified signals
  • Peaked 10d ago at 2 mentions (2026-02-12); latest day: 1
  • 16 total mentions across 11 days

Affected systems

Products
cloud_backupdebian_linuxenterprise_linuxenterprise_linux_ausenterprise_linux_eusenterprise_linux_long_lifeenterprise_linux_tusfedorahci_storage_nodeslinux_kernel

20 versions affected across 18 products

Deep dive

Activity timeline16 mentions / 11d
01122Mentions · 2026-02-12: 2Mentions · 2026-02-27: 1Mentions · 2026-03-12: 1Mentions · 2026-05-11: 2Mentions · 2026-05-14: 2Mentions · 2026-05-15: 2Mentions · 2026-05-22: 2Mentions · 2026-05-23: 1Mentions · 2026-06-01: 1Mentions · 2026-09-13: 1Mentions · 2026-09-14: 1Technical Details · 2026-02-12: 102-1202-2703-1205-1105-1405-1505-2205-2306-0109-1309-14
Signal classification1 categories
General
16100.0%
Referenced assets2 URLs
By indicator
Classification over time
DateTotalLabels
2026-02-122
General2
2026-02-271
General1
2026-03-121
General1
2026-05-112
General2
2026-05-142
General2
2026-05-152
General2
2026-05-222
General2
2026-05-231
General1
2026-06-011
General1
2026-09-131
General1
2026-09-141
General1
Full discourse16 posts
  • hsn今天吃什么@hsn8086k
    General

    2026 Linux 重置密码教程大全 - Dirty Cow (CVE-2016-5195) - Dirty Pipe (CVE-2022-0847) - io_uring UAF (CVE-2022-2602) - Copy Fail (CVE-2026-31431) - io_uring ZCRX freelist (CVE-2026-43121) - Dirty Frag (CVE-2026-43284 CVE-2026-43500) - Fragnesia (CVE-2026-46300)

    Post summary

    The text simply enumerates a list of Linux CVEs without providing additional context such as PoC, exploitation, patches, or technical details.

    17193111.1K50579.9K
    2.3K followersView on X
  • hsn今天吃什么@hsn8086k
    General

    Linux 重置密码大全 - Dirty Cow (CVE-2016-5195) - Dirty Pipe (CVE-2022-0847) - io_uring UAF (CVE-2022-2602) - Copy Fail (CVE-2026-31431) - io_uring ZCRX freelist (CVE-2026-43121) - Dirty Frag (CVE-2026-43284 CVE-2026-43500) - Fragnesia (CVE-2026-46300) -PinTheft (CVE-2026-43494)

    Post summary

    The text merely lists a set of Linux CVEs without providing any PoC, exploit, patch, or technical details, indicating a general mention.

    43118972036546.3K
    2.3K followersView on X
  • Het Mehta@hetmehtaa
    General

    Them: Linux is most secure OS Me: Yes - Dirty Cow (CVE-2016-5195) - Dirty Pipe (CVE-2022-0847) - io_uring UAF (CVE-2022-2602) - Copy Fail (CVE-2026-31431) - io_uring ZCRX freelist (CVE-2026-43121) - Dirty Frag (CVE-2026-43284 CVE-2026-43500) - Fragnesia (CVE-2026-46300)

    Post summary

    The message enumerates several Linux kernel CVEs, underscoring the presence of multiple vulnerabilities without providing specific technical details, exploit information, or remediation guidance.

    566618598272159.8K
    42.2K followersView on X
  • Nitin Gavhane@NitinGavhane_
    General

    CVE Vulnerabilities That Shaped the Bug Bounty World A quick timeline worth knowing: 1. CVE-2014-0160 • Heartbleed - 2014 2. CVE-2014-6271 • Shellshock - 2014 3. CVE-2016-5195 • Dirty COW - 2016 4. CVE-2017-0144 • EternalBlue - 2017 5. CVE-2017-5638 • Apache Struts RCE - 2017 6. CVE-2018-7600 • Drupalgeddon2 - 2018 7. CVE-2019-0708 • BlueKeep - 2019 8. CVE-2021-44228 • Log4Shell - 2021 9. CVE-2023-34362 • MOVEit - 2023 10. CVE-2024-3094 • XZ Utils - 2024 Learn the CVE → understand the root cause → study the patch → reproduce safely in a lab. #BugBounty #CVE #CyberSecurity #SecurityResearch #EthicalHacking #InfoSec #AppSec #Pentesting

    Post summary

    The tweet lists several CVE identifiers with years and suggests learning, understanding root cause, studying the patch, and reproducing safely, but provides no specific technical details, exploit tools, or remediation information.

    31411016411.3K
    3.5K followersView on X
  • 好奇猫a@acnekot
    General

    2026 Linux 重置密码教程大全 - Dirty Cow (CVE-2016-5195) - Dirty Pipe (CVE-2022-0847) - io_uring UAF (CVE-2022-2602) - Copy Fail (CVE-2026-31431) - io_uring ZCRX freelist (CVE-2026-43121) - Dirty Frag (CVE-2026-43284 CVE-2026-43500) - Fragnesia (CVE-2026-46300)

    Post summary

    The text lists several CVEs as part of a password‑reset tutorial but offers no proof‑of‑concept, exploit details, patch information, or technical vulnerability descriptions.

    00040351
    2.4K followersView on X
  • Saша Stark 🔲 Zero to Null MRR 🔳 swe/av/acc@tsybalab
    General

    @0xrinx No, for example 3 of them with 1 editor all like a lot Vim CVE-2019-12735 Snap CVE-2021-3156 Kernel CVE-2016-5195 @grok verify ✔️

    Post summary

    The text merely lists three CVE identifiers without additional context or details.

    2011034
    432 followersView on X
  • CVETrends@CVEShield
    General

    Top 5 Trending CVEs: 1 - CVE-2025-55182 2 - CVE-2016-5195 3 - CVE-2026-20223 4 - CVE-2026-41940 5 - CVE-2026-41089 #cve #cvetrends #cveshield #cybersecurity https://www.cveshield.com/dashboard

    Post summary

    The text provides only a list of trending CVE identifiers without any additional context or details.

    00020755
    1.7K followersView on X
  • c0deNinja@gotr00t0day
    General

    kernelpwn: A lightweight, fast kernel exploit suggester written in C++ that automatically detects if your Linux kernel is vulnerable to known privilege escalation exploits. These are the vulnerabilities that kernelpwn can detect: 1. Dirty COW (CVE-2016-5195) 2. Dirty Pipe (CVE-2022-0847) 3. GameOver(lay) (CVE-2023-32629) 4. CVE-2024-1086 5. Copy Fail 6. Dirty Frag Github: https://github.com/gotr00t0day/kernelpwned #hacking #hacker #cybersecurity #cplusplus #coding #infosec #linux #linuxkernel #unix #pentesting #ethicalhacking #infosec #programming

    Post summary

    kernelpwn is a C++ utility that scans for several known Linux kernel privilege escalation vulnerabilities and points users to check for them; the tool itself is openly available on GitHub.

    00020152
    555 followersView on X
  • Douglas Mun@douglasmun
    General

    @h4x0r_dz Dirty COW should be CVE-2016-5195, not CVE-2016-5341 as cited by the researcher. I want to take this opportunity to thank you for all your kind tweets. I always enjoy them. Have a great week ahead!

    Post summary

    The tweet corrects the CVE reference for Dirty COW (CVE‑2016‑5195) but does not provide further technical or actionable detail.

    00020217
    4.5K followersView on X
  • Luis Lescano@luadoles
    General

    - Dirty Cow (CVE-2016-5195) - Dirty Pipe (CVE-2022-0847) - io_uring UAF (CVE-2022-2602) - Copy Fail (CVE-2026-31431) - io_uring ZCRX freelist (CVE-2026-43121) - Dirty Frag (CVE-2026-43284 CVE-2026-43500) - Fragnesia (CVE-2026-46300) -PinTheft (CVE-2026-43494)

    Post summary

    The text simply lists several CVE identifiers without any detailed context or actionable information.

    10000294
    31 followersView on X
  • CVETrends@CVEShield
    General

    Top 5 Trending CVEs: 1 - CVE-2026-44578 2 - CVE-2016-5195 3 - CVE-2026-0073 4 - CVE-2026-20841 5 - CVE-2025-14180 #cve #cvetrends #cveshield #cybersecurity https://www.cveshield.com/dashboard

    Post summary

    The post simply lists five trending CVEs with no additional information on exploitation, patches, or technical details.

    000101.6K
    1.7K followersView on X
  • Saша Stark 🔲 Zero to Null MRR 🔳 swe/av/acc@tsybalab
    General

    @DsplayNam3 @CR1337 Oh seriously. Linux hacked also but in other sophisticated way f.e. 3 of them with 1 editor all like a lot Vim CVE-2019-12735 Snap CVE-2021-3156 Kernel CVE-2016-5195 @grok verify ✔️

    Post summary

    The message references three CVEs but provides no further details, making it a general mention with low actionable information.

    10000205
    439 followersView on X
  • chaos@konig0000
    General

    CVE Vulnerabilities That Shaped the Bug Bounty World A quick timeline worth knowing: 1. CVE-2014-0160 • Heartbleed - 2014 2. CVE-2014-6271 • Shellshock - 2014 3. CVE-2016-5195 • Dirty COW - 2016 4. CVE-2017-0144 • EternalBlue - 2017 5. CVE-2017-5638 • Apache Struts RCE - 2017 6. CVE-2018-7600 • Drupalgeddon2 - 2018 7. CVE-2019-0708 • BlueKeep - 2019 8. CVE-2021-44228 • Log4Shell - 2021 9. CVE-2023-34362 • MOVEit - 2023 10. CVE-2024-3094 • XZ Utils - 2024 Learn the CVE → understand the root cause → study the patch → reproduce safely in a lab.

    Post summary

    The post lists notable CVEs that have shaped the bug bounty world and advises learning the root causes, studying patches, and reproducing safely in a lab.

    00000121
    19.8K followersView on X
  • みおど@furlingdu
    General

    2026 Linux 重置密码教程大全 - Dirty Cow (CVE-2016-5195) - Dirty Pipe (CVE-2022-0847) - io_uring UAF (CVE-2022-2602) - Copy Fail (CVE-2026-31431) - io_uring ZCRX freelist (CVE-2026-43121) - Dirty Frag (CVE-2026-43284 CVE-2026-43500) - Fragnesia (CVE-2026-46300)

    Post summary

    The post enumerates several Linux kernel CVEs purportedly for a password‑reset tutorial, but it provides no technical details, exploit code, patch information, or evidence of active exploitation.

    00000164
    2.0K followersView on X
  • fichwgrk@grokfc755
    General

    @grok What is dirty COW (CVE-2016-5195) and how does it work? (respond in fun mode).

    Post summary

    The user is merely asking for an explanation of dirty COW (CVE-2016-5195) and no additional technical, exploit, patch, or false‑positive information is present.

    0000015
    5 followersView on X
  • Grok@grok
    General

    Verified ✔️ - CVE-2019-12735: Vim vulnerability allowing arbitrary code execution via modelines (2019). - CVE-2021-3156: Sudo heap buffer overflow enabling privilege escalation (2021; note: associated with sudo, not Snap directly). - CVE-2016-5195: Linux kernel race condition (Dirty COW) for privilege escalation (2016). For context, Notepad's recent issue is CVE-2026-20841 (RCE, 2026).

    Post summary

    The passage lists several CVEs with brief descriptions of their impact types but provides no details on PoC, exploitation, patches, or active usage.

    0000058
    8.1M followersView on X
CPE platform detail31 entries

31 of 31 entries

PartVendorProductVersionTarget SWTarget HW
OScanonicalubuntu_linux12.04--
OScanonicalubuntu_linux14.04--
OScanonicalubuntu_linux16.04--
OScanonicalubuntu_linux16.10--
OSdebiandebian_linux7.0--
OSdebiandebian_linux8.0--
OSfedoraprojectfedora23--
OSfedoraprojectfedora24--
OSfedoraprojectfedora25--
OSlinuxlinux_kernel---
Appnetappcloud_backup---
Appnetapphci_storage_nodes---
Appnetapponcommand_balance---
Appnetapponcommand_performance_manager---
Appnetapponcommand_unified_manager_for_clustered_data_ontap---
Appnetappontap_select_deploy_administration_utility---
Appnetappsnapprotect---
Appnetappsolidfire---
OSpaloaltonetworkspan-os---
OSredhatenterprise_linux5--
OSredhatenterprise_linux6.0--
OSredhatenterprise_linux7.0--
OSredhatenterprise_linux_aus6.2--
OSredhatenterprise_linux_aus6.4--
OSredhatenterprise_linux_aus6.5--
OSredhatenterprise_linux_eus6.6--
OSredhatenterprise_linux_eus6.7--
OSredhatenterprise_linux_eus7.1--
OSredhatenterprise_linux_long_life5.6--
OSredhatenterprise_linux_long_life5.9--
OSredhatenterprise_linux_tus6.5--

Explore more