CVE-2016-4580: Infoleak
Published May 23, 2016
·Updated
Last updated 24 July 2024
Other sources
The x25negotiatefacilities function in net/x25/x25facilities.c in t ...
— Debian
Affected Software
6 affected componentsFixes available
Linux Linux kernel<=4.5.4
Canonical Ubuntu Linux=12.04
Canonical Ubuntu Linux=14.04
Canonical Ubuntu Linux=15.10
Canonical Ubuntu Linux=16.04
debian/linux
5.10.223-15.10.234-16.1.129-16.1.135-16.12.22-16.12.25-1
Remediation
Event History
May 23, 2016
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Jan 11, 2024
Data Sourced
via Launchpad·10:19 PM
Description
Sep 16, 2024
Data Sourced
via Ubuntu·01:14 AM
RemedyDescriptionSeverityAffected Software
Apr 28, 2025
Data Sourced
via Debian·03:32 AM
DescriptionAffected Software
Frequently Asked Questions
1
What is CVE-2016-4580?
CVE-2016-4580 is a vulnerability in the Linux kernel that allows attackers to obtain sensitive information from kernel stack memory.
2
How does CVE-2016-4580 work?
CVE-2016-4580 works by exploiting a flaw in the x25_negotiate_facilities function in the Linux kernel before version 4.5.5.
3
What is the severity of CVE-2016-4580?
The severity of CVE-2016-4580 is high.
4
Which versions of Ubuntu are affected by CVE-2016-4580?
Versions 3.2.0-105.146, 3.13.0-91.138, 4.2.0-41.48, 4.4.0-28.47, and 4.6 of the Linux kernel in Ubuntu are affected.
5
How can I fix CVE-2016-4580?
To fix CVE-2016-4580, you should update your Linux kernel to version 4.5.5 or later.