CVE-2016-2847

Source
https://nvd.nist.gov/vuln/detail/CVE-2016-2847
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2016-2847.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2016-2847
Downstream
Related
Published
2016-04-27T17:59:21Z
Modified
2025-09-19T08:11:07.817597Z
Severity
  • 6.2 (Medium) CVSS_V3 - CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
Summary
[none]
Details

fs/pipe.c in the Linux kernel before 4.5 does not limit the amount of unread data in pipes, which allows local users to cause a denial of service (memory consumption) by creating many pipes with non-default sizes.

References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Fixed
759c01142a5d0f364a462346168a56de28a80f52
Type
GIT
Repo
https://github.com/torvalds/linux
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Fixed

Affected versions

v2.*

v2.6.12
v2.6.12-rc2
v2.6.12-rc3
v2.6.12-rc4
v2.6.12-rc5
v2.6.12-rc6
v2.6.13
v2.6.13-rc1
v2.6.13-rc2
v2.6.13-rc3
v2.6.13-rc4
v2.6.13-rc5
v2.6.13-rc6
v2.6.13-rc7
v2.6.14
v2.6.14-rc1
v2.6.14-rc2
v2.6.14-rc3
v2.6.14-rc4
v2.6.14-rc5
v2.6.15
v2.6.15-rc1
v2.6.15-rc2
v2.6.15-rc3
v2.6.15-rc4
v2.6.15-rc5
v2.6.15-rc6
v2.6.15-rc7
v2.6.16
v2.6.16-rc1
v2.6.16-rc2
v2.6.16-rc3
v2.6.16-rc4
v2.6.16-rc5
v2.6.16-rc6
v2.6.17
v2.6.17-rc1
v2.6.17-rc2
v2.6.17-rc3
v2.6.17-rc4
v2.6.17-rc5
v2.6.17-rc6
v2.6.18
v2.6.18-rc1
v2.6.18-rc2
v2.6.18-rc3
v2.6.18-rc4
v2.6.18-rc5
v2.6.18-rc6
v2.6.18-rc7
v2.6.19
v2.6.19-rc1
v2.6.19-rc2
v2.6.19-rc3
v2.6.19-rc4
v2.6.19-rc5
v2.6.19-rc6
v2.6.20
v2.6.20-rc1
v2.6.20-rc2
v2.6.20-rc3
v2.6.20-rc4
v2.6.20-rc5
v2.6.20-rc6
v2.6.20-rc7
v2.6.21
v2.6.21-rc1
v2.6.21-rc2
v2.6.21-rc3
v2.6.21-rc4
v2.6.21-rc5
v2.6.21-rc6
v2.6.21-rc7
v2.6.22
v2.6.22-rc1
v2.6.22-rc2
v2.6.22-rc3
v2.6.22-rc4
v2.6.22-rc5
v2.6.22-rc6
v2.6.22-rc7
v2.6.23
v2.6.23-rc1
v2.6.23-rc2
v2.6.23-rc3
v2.6.23-rc4
v2.6.23-rc5
v2.6.23-rc6
v2.6.23-rc7
v2.6.23-rc8
v2.6.23-rc9
v2.6.24
v2.6.24-rc1
v2.6.24-rc2
v2.6.24-rc3
v2.6.24-rc4
v2.6.24-rc5
v2.6.24-rc6
v2.6.24-rc7
v2.6.24-rc8
v2.6.25
v2.6.25-rc1
v2.6.25-rc2
v2.6.25-rc3
v2.6.25-rc4
v2.6.25-rc5
v2.6.25-rc6
v2.6.25-rc7
v2.6.25-rc8
v2.6.25-rc9
v2.6.26
v2.6.26-rc1
v2.6.26-rc2
v2.6.26-rc3
v2.6.26-rc4
v2.6.26-rc5
v2.6.26-rc6
v2.6.26-rc7
v2.6.26-rc8
v2.6.26-rc9
v2.6.27
v2.6.27-rc1
v2.6.27-rc2
v2.6.27-rc3
v2.6.27-rc4
v2.6.27-rc5
v2.6.27-rc6
v2.6.27-rc7
v2.6.27-rc8
v2.6.27-rc9
v2.6.28
v2.6.28-rc1
v2.6.28-rc2
v2.6.28-rc3
v2.6.28-rc4
v2.6.28-rc5
v2.6.28-rc6
v2.6.28-rc7
v2.6.28-rc8
v2.6.28-rc9
v2.6.29
v2.6.29-rc1
v2.6.29-rc2
v2.6.29-rc3
v2.6.29-rc4
v2.6.29-rc5
v2.6.29-rc6
v2.6.29-rc7
v2.6.29-rc8
v2.6.30
v2.6.30-rc1
v2.6.30-rc2
v2.6.30-rc3
v2.6.30-rc4
v2.6.30-rc5
v2.6.30-rc6
v2.6.30-rc7
v2.6.30-rc8
v2.6.31
v2.6.31-rc1
v2.6.31-rc2
v2.6.31-rc3
v2.6.31-rc4
v2.6.31-rc5
v2.6.31-rc6
v2.6.31-rc7
v2.6.31-rc8
v2.6.31-rc9
v2.6.32
v2.6.32-rc1
v2.6.32-rc2
v2.6.32-rc3
v2.6.32-rc4
v2.6.32-rc5
v2.6.32-rc6
v2.6.32-rc7
v2.6.32-rc8
v2.6.33
v2.6.33-rc1
v2.6.33-rc2
v2.6.33-rc3
v2.6.33-rc4
v2.6.33-rc5
v2.6.33-rc6
v2.6.33-rc7
v2.6.33-rc8
v2.6.34
v2.6.34-rc1
v2.6.34-rc2
v2.6.34-rc3
v2.6.34-rc4
v2.6.34-rc5
v2.6.34-rc6
v2.6.34-rc7
v2.6.35
v2.6.35-rc1
v2.6.35-rc2
v2.6.35-rc3
v2.6.35-rc4
v2.6.35-rc5
v2.6.35-rc6
v2.6.36
v2.6.36-rc1
v2.6.36-rc2
v2.6.36-rc3
v2.6.36-rc4
v2.6.36-rc5
v2.6.36-rc6
v2.6.36-rc7
v2.6.36-rc8
v2.6.37
v2.6.37-rc1
v2.6.37-rc2
v2.6.37-rc3
v2.6.37-rc4
v2.6.37-rc5
v2.6.37-rc6
v2.6.37-rc7
v2.6.37-rc8
v2.6.38
v2.6.38-rc1
v2.6.38-rc2
v2.6.38-rc3
v2.6.38-rc4
v2.6.38-rc5
v2.6.38-rc6
v2.6.38-rc7
v2.6.38-rc8
v2.6.39
v2.6.39-rc1
v2.6.39-rc2
v2.6.39-rc3
v2.6.39-rc4
v2.6.39-rc5
v2.6.39-rc6
v2.6.39-rc7

v3.*

v3.0
v3.0-rc1
v3.0-rc2
v3.0-rc3
v3.0-rc4
v3.0-rc5
v3.0-rc6
v3.0-rc7
v3.1
v3.1-rc1
v3.1-rc10
v3.1-rc2
v3.1-rc3
v3.1-rc4
v3.1-rc5
v3.1-rc6
v3.1-rc7
v3.1-rc8
v3.1-rc9
v3.10
v3.10-rc1
v3.10-rc2
v3.10-rc3
v3.10-rc4
v3.10-rc5
v3.10-rc6
v3.10-rc7
v3.11
v3.11-rc1
v3.11-rc2
v3.11-rc3
v3.11-rc4
v3.11-rc5
v3.11-rc6
v3.11-rc7
v3.12
v3.12-rc1
v3.12-rc2
v3.12-rc3
v3.12-rc4
v3.12-rc5
v3.12-rc6
v3.12-rc7
v3.13
v3.13-rc1
v3.13-rc2
v3.13-rc3
v3.13-rc4
v3.13-rc5
v3.13-rc6
v3.13-rc7
v3.13-rc8
v3.14
v3.14-rc1
v3.14-rc2
v3.14-rc3
v3.14-rc4
v3.14-rc5
v3.14-rc6
v3.14-rc7
v3.14-rc8
v3.15
v3.15-rc1
v3.15-rc2
v3.15-rc3
v3.15-rc4
v3.15-rc5
v3.15-rc6
v3.15-rc7
v3.15-rc8
v3.16
v3.16-rc1
v3.16-rc2
v3.16-rc3
v3.16-rc4
v3.16-rc5
v3.16-rc6
v3.16-rc7
v3.17
v3.17-rc1
v3.17-rc2
v3.17-rc3
v3.17-rc4
v3.17-rc5
v3.17-rc6
v3.17-rc7
v3.18
v3.18-rc1
v3.18-rc2
v3.18-rc3
v3.18-rc4
v3.18-rc5
v3.18-rc6
v3.18-rc7
v3.19
v3.19-rc1
v3.19-rc2
v3.19-rc3
v3.19-rc4
v3.19-rc5
v3.19-rc6
v3.19-rc7
v3.2
v3.2-rc1
v3.2-rc2
v3.2-rc3
v3.2-rc4
v3.2-rc5
v3.2-rc6
v3.2-rc7
v3.3
v3.3-rc1
v3.3-rc2
v3.3-rc3
v3.3-rc4
v3.3-rc5
v3.3-rc6
v3.3-rc7
v3.4
v3.4-rc1
v3.4-rc2
v3.4-rc3
v3.4-rc4
v3.4-rc5
v3.4-rc6
v3.4-rc7
v3.5
v3.5-rc1
v3.5-rc2
v3.5-rc3
v3.5-rc4
v3.5-rc5
v3.5-rc6
v3.5-rc7
v3.6
v3.6-rc1
v3.6-rc2
v3.6-rc3
v3.6-rc4
v3.6-rc5
v3.6-rc6
v3.6-rc7
v3.7
v3.7-rc1
v3.7-rc2
v3.7-rc3
v3.7-rc4
v3.7-rc5
v3.7-rc6
v3.7-rc7
v3.7-rc8
v3.8
v3.8-rc1
v3.8-rc2
v3.8-rc3
v3.8-rc4
v3.8-rc5
v3.8-rc6
v3.8-rc7
v3.9
v3.9-rc1
v3.9-rc2
v3.9-rc3
v3.9-rc4
v3.9-rc5
v3.9-rc6
v3.9-rc7
v3.9-rc8

v4.*

v4.0
v4.0-rc1
v4.0-rc2
v4.0-rc3
v4.0-rc4
v4.0-rc5
v4.0-rc6
v4.0-rc7
v4.1
v4.1-rc1
v4.1-rc2
v4.1-rc3
v4.1-rc4
v4.1-rc5
v4.1-rc6
v4.1-rc7
v4.1-rc8
v4.2
v4.2-rc1
v4.2-rc2
v4.2-rc3
v4.2-rc4
v4.2-rc5
v4.2-rc6
v4.2-rc7
v4.2-rc8
v4.3
v4.3-rc1
v4.3-rc2
v4.3-rc3
v4.3-rc4
v4.3-rc5
v4.3-rc6
v4.3-rc7
v4.4
v4.4-rc1
v4.4-rc2
v4.4-rc3
v4.4-rc4
v4.4-rc5
v4.4-rc6
v4.4-rc7
v4.4-rc8

Database specific

{
    "vanir_signatures": [
        {
            "digest": {
                "function_hash": "159212217996474306100707289539917597711",
                "length": 394.0
            },
            "source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@759c01142a5d0f364a462346168a56de28a80f52",
            "signature_type": "Function",
            "deprecated": false,
            "id": "CVE-2016-2847-1ec6bc25",
            "signature_version": "v1",
            "target": {
                "function": "alloc_pipe_info",
                "file": "fs/pipe.c"
            }
        },
        {
            "digest": {
                "function_hash": "9826055533231251989246385628315165192",
                "length": 304.0
            },
            "source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@759c01142a5d0f364a462346168a56de28a80f52",
            "signature_type": "Function",
            "deprecated": false,
            "id": "CVE-2016-2847-284020fb",
            "signature_version": "v1",
            "target": {
                "function": "free_pipe_info",
                "file": "fs/pipe.c"
            }
        },
        {
            "digest": {
                "function_hash": "159212217996474306100707289539917597711",
                "length": 394.0
            },
            "source": "https://github.com/torvalds/linux/commit/759c01142a5d0f364a462346168a56de28a80f52",
            "signature_type": "Function",
            "deprecated": false,
            "id": "CVE-2016-2847-30ad4e9a",
            "signature_version": "v1",
            "target": {
                "function": "alloc_pipe_info",
                "file": "fs/pipe.c"
            }
        },
        {
            "digest": {
                "threshold": 0.9,
                "line_hashes": [
                    "146511006400634390463007417019100270246",
                    "6557854735873156433027806710866922811",
                    "335524008467050564816938846076600910047",
                    "237138065973622512451667430805629176924",
                    "250840378357544767992746312060508662920",
                    "263906813543886088807953990813042692292",
                    "167863358760285523654250941564555115237",
                    "69557918871261674552518243946649078103",
                    "118395554087385067721269861362159816406",
                    "4545941566126139804849403523054499155",
                    "309828736140206013644453353364733256158",
                    "284297436891019701330850778085018449905",
                    "217235793862882424035700726457579966665",
                    "129106958878421399653009332812802981135",
                    "163910783980629412406831793839370526818",
                    "89582898040510836041884322818722789709",
                    "216504350491098244420338938587698921102",
                    "305391763069378633281412973739691657010",
                    "253698133718172649204919139633402427102",
                    "199384173194699746811783699097700559002",
                    "61966554026060482230451592177951586779",
                    "91255410593383989187613728432194890952",
                    "79371503405172735853916188777426565659",
                    "108864777720923707923367744083496200016",
                    "146198093590389684243262827280182788648",
                    "69537672659211650143938158893494026283",
                    "250887083031219865211904228728294295398",
                    "119287496875529822993741605009685071689",
                    "149967548476990507103091273469802373835"
                ]
            },
            "source": "https://github.com/torvalds/linux/commit/759c01142a5d0f364a462346168a56de28a80f52",
            "signature_type": "Line",
            "deprecated": false,
            "id": "CVE-2016-2847-359f3e94",
            "signature_version": "v1",
            "target": {
                "file": "fs/pipe.c"
            }
        },
        {
            "digest": {
                "function_hash": "13525338182300267228205594250185100703",
                "length": 618.0
            },
            "source": "https://github.com/torvalds/linux/commit/759c01142a5d0f364a462346168a56de28a80f52",
            "signature_type": "Function",
            "deprecated": false,
            "id": "CVE-2016-2847-46b0f5f9",
            "signature_version": "v1",
            "target": {
                "function": "pipe_fcntl",
                "file": "fs/pipe.c"
            }
        },
        {
            "digest": {
                "threshold": 0.9,
                "line_hashes": [
                    "26651255485875776249244118530615815718",
                    "49072043545631355319977013686539061657",
                    "48702790981573862211193566646350122416",
                    "105362252250479109807894118248456857442",
                    "145880535692122893810319251254987564547",
                    "61505585331578711616988652108573598614",
                    "174507404196940368532628118098936467158",
                    "257596395722169885466015981148891097943",
                    "246086423447353162063028013592814521053",
                    "319524503219686426883961829408495774094",
                    "226406403443223508924348041710970596053"
                ]
            },
            "source": "https://github.com/torvalds/linux/commit/759c01142a5d0f364a462346168a56de28a80f52",
            "signature_type": "Line",
            "deprecated": false,
            "id": "CVE-2016-2847-4f58a108",
            "signature_version": "v1",
            "target": {
                "file": "include/linux/pipe_fs_i.h"
            }
        },
        {
            "digest": {
                "threshold": 0.9,
                "line_hashes": [
                    "2970803820312540229149461766764273487",
                    "337131029388447680073520105755391984696",
                    "239848811018323912732156557345723079596",
                    "105729707691997709423439201030524830501"
                ]
            },
            "source": "https://github.com/torvalds/linux/commit/759c01142a5d0f364a462346168a56de28a80f52",
            "signature_type": "Line",
            "deprecated": false,
            "id": "CVE-2016-2847-57dd07bd",
            "signature_version": "v1",
            "target": {
                "file": "include/linux/sched.h"
            }
        },
        {
            "digest": {
                "function_hash": "9826055533231251989246385628315165192",
                "length": 304.0
            },
            "source": "https://github.com/torvalds/linux/commit/759c01142a5d0f364a462346168a56de28a80f52",
            "signature_type": "Function",
            "deprecated": false,
            "id": "CVE-2016-2847-7da505e2",
            "signature_version": "v1",
            "target": {
                "function": "free_pipe_info",
                "file": "fs/pipe.c"
            }
        },
        {
            "digest": {
                "function_hash": "13525338182300267228205594250185100703",
                "length": 618.0
            },
            "source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@759c01142a5d0f364a462346168a56de28a80f52",
            "signature_type": "Function",
            "deprecated": false,
            "id": "CVE-2016-2847-8ebdb4b7",
            "signature_version": "v1",
            "target": {
                "function": "pipe_fcntl",
                "file": "fs/pipe.c"
            }
        },
        {
            "digest": {
                "threshold": 0.9,
                "line_hashes": [
                    "2970803820312540229149461766764273487",
                    "337131029388447680073520105755391984696",
                    "239848811018323912732156557345723079596",
                    "105729707691997709423439201030524830501"
                ]
            },
            "source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@759c01142a5d0f364a462346168a56de28a80f52",
            "signature_type": "Line",
            "deprecated": false,
            "id": "CVE-2016-2847-9494d463",
            "signature_version": "v1",
            "target": {
                "file": "include/linux/sched.h"
            }
        },
        {
            "digest": {
                "function_hash": "13738447304655182940178979055473819320",
                "length": 755.0
            },
            "source": "https://github.com/torvalds/linux/commit/759c01142a5d0f364a462346168a56de28a80f52",
            "signature_type": "Function",
            "deprecated": false,
            "id": "CVE-2016-2847-9832f1dd",
            "signature_version": "v1",
            "target": {
                "function": "pipe_set_size",
                "file": "fs/pipe.c"
            }
        },
        {
            "digest": {
                "threshold": 0.9,
                "line_hashes": [
                    "146511006400634390463007417019100270246",
                    "6557854735873156433027806710866922811",
                    "335524008467050564816938846076600910047",
                    "237138065973622512451667430805629176924",
                    "250840378357544767992746312060508662920",
                    "263906813543886088807953990813042692292",
                    "167863358760285523654250941564555115237",
                    "69557918871261674552518243946649078103",
                    "118395554087385067721269861362159816406",
                    "4545941566126139804849403523054499155",
                    "309828736140206013644453353364733256158",
                    "284297436891019701330850778085018449905",
                    "217235793862882424035700726457579966665",
                    "129106958878421399653009332812802981135",
                    "163910783980629412406831793839370526818",
                    "89582898040510836041884322818722789709",
                    "216504350491098244420338938587698921102",
                    "305391763069378633281412973739691657010",
                    "253698133718172649204919139633402427102",
                    "199384173194699746811783699097700559002",
                    "61966554026060482230451592177951586779",
                    "91255410593383989187613728432194890952",
                    "79371503405172735853916188777426565659",
                    "108864777720923707923367744083496200016",
                    "146198093590389684243262827280182788648",
                    "69537672659211650143938158893494026283",
                    "250887083031219865211904228728294295398",
                    "119287496875529822993741605009685071689",
                    "149967548476990507103091273469802373835"
                ]
            },
            "source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@759c01142a5d0f364a462346168a56de28a80f52",
            "signature_type": "Line",
            "deprecated": false,
            "id": "CVE-2016-2847-aaa995be",
            "signature_version": "v1",
            "target": {
                "file": "fs/pipe.c"
            }
        },
        {
            "digest": {
                "function_hash": "13738447304655182940178979055473819320",
                "length": 755.0
            },
            "source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@759c01142a5d0f364a462346168a56de28a80f52",
            "signature_type": "Function",
            "deprecated": false,
            "id": "CVE-2016-2847-b8b86818",
            "signature_version": "v1",
            "target": {
                "function": "pipe_set_size",
                "file": "fs/pipe.c"
            }
        },
        {
            "digest": {
                "threshold": 0.9,
                "line_hashes": [
                    "26651255485875776249244118530615815718",
                    "49072043545631355319977013686539061657",
                    "48702790981573862211193566646350122416",
                    "105362252250479109807894118248456857442",
                    "145880535692122893810319251254987564547",
                    "61505585331578711616988652108573598614",
                    "174507404196940368532628118098936467158",
                    "257596395722169885466015981148891097943",
                    "246086423447353162063028013592814521053",
                    "319524503219686426883961829408495774094",
                    "226406403443223508924348041710970596053"
                ]
            },
            "source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@759c01142a5d0f364a462346168a56de28a80f52",
            "signature_type": "Line",
            "deprecated": false,
            "id": "CVE-2016-2847-ca30115a",
            "signature_version": "v1",
            "target": {
                "file": "include/linux/pipe_fs_i.h"
            }
        },
        {
            "digest": {
                "threshold": 0.9,
                "line_hashes": [
                    "10473301146441202463289491397401828423",
                    "42210259354502147747304737369759443852",
                    "315813764829983910493700618404397159812",
                    "63598946016393672720631452802178432673"
                ]
            },
            "source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@759c01142a5d0f364a462346168a56de28a80f52",
            "signature_type": "Line",
            "deprecated": false,
            "id": "CVE-2016-2847-e0d8dc46",
            "signature_version": "v1",
            "target": {
                "file": "kernel/sysctl.c"
            }
        },
        {
            "digest": {
                "threshold": 0.9,
                "line_hashes": [
                    "10473301146441202463289491397401828423",
                    "42210259354502147747304737369759443852",
                    "315813764829983910493700618404397159812",
                    "63598946016393672720631452802178432673"
                ]
            },
            "source": "https://github.com/torvalds/linux/commit/759c01142a5d0f364a462346168a56de28a80f52",
            "signature_type": "Line",
            "deprecated": false,
            "id": "CVE-2016-2847-f92b3471",
            "signature_version": "v1",
            "target": {
                "file": "kernel/sysctl.c"
            }
        }
    ]
}