Show plain JSON{"cve": {"data_type": "CVE", "references": {"reference_data": [{"url": "https://github.com/torvalds/linux/commit/f0d1bec9d58d4c038d0ac958c9af82be6eb18045", "name": "https://github.com/torvalds/linux/commit/f0d1bec9d58d4c038d0ac958c9af82be6eb18045", "tags": [], "refsource": "CONFIRM"}, {"url": "https://github.com/torvalds/linux/commit/637b58c2887e5e57850865839cc75f59184b23d1", "name": "https://github.com/torvalds/linux/commit/637b58c2887e5e57850865839cc75f59184b23d1", "tags": [], "refsource": "CONFIRM"}, {"url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202855", "name": "https://bugzilla.redhat.com/show_bug.cgi?id=1202855", "tags": [], "refsource": "CONFIRM"}, {"url": "http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=637b58c2887e5e57850865839cc75f59184b23d1", "name": "http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=637b58c2887e5e57850865839cc75f59184b23d1", "tags": [], "refsource": "CONFIRM"}, {"url": "http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=f0d1bec9d58d4c038d0ac958c9af82be6eb18045", "name": "http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=f0d1bec9d58d4c038d0ac958c9af82be6eb18045", "tags": [], "refsource": "CONFIRM"}, {"url": "http://www.openwall.com/lists/oss-security/2015/06/06/2", "name": "[oss-security] 20150606 CVE-2015-1805 Linux kernel: pipe: iovec overrun leading to memory corruption", "tags": [], "refsource": "MLIST"}, {"url": "http://www.debian.org/security/2015/dsa-3290", "name": "DSA-3290", "tags": [], "refsource": "DEBIAN"}, {"url": "http://rhn.redhat.com/errata/RHSA-2015-1199.html", "name": "RHSA-2015:1199", "tags": [], "refsource": "REDHAT"}, {"url": "http://rhn.redhat.com/errata/RHSA-2015-1211.html", "name": "RHSA-2015:1211", "tags": [], "refsource": "REDHAT"}, {"url": "http://rhn.redhat.com/errata/RHSA-2015-1190.html", "name": "RHSA-2015:1190", "tags": [], "refsource": "REDHAT"}, {"url": "http://source.android.com/security/bulletin/2016-04-02.html", "name": "http://source.android.com/security/bulletin/2016-04-02.html", "tags": [], "refsource": "CONFIRM"}, {"url": "http://source.android.com/security/bulletin/2016-05-01.html", "name": "http://source.android.com/security/bulletin/2016-05-01.html", "tags": [], "refsource": "CONFIRM"}, {"url": "http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html", "name": "http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html", "tags": [], "refsource": "CONFIRM"}, {"url": "http://www.securityfocus.com/bid/74951", "name": "74951", "tags": [], "refsource": "BID"}, {"url": "http://rhn.redhat.com/errata/RHSA-2015-1042.html", "name": "RHSA-2015:1042", "tags": [], "refsource": "REDHAT"}, {"url": "http://www.securitytracker.com/id/1032454", "name": "1032454", "tags": [], "refsource": "SECTRACK"}, {"url": "http://rhn.redhat.com/errata/RHSA-2015-1120.html", "name": "RHSA-2015:1120", "tags": [], "refsource": "REDHAT"}, {"url": "http://www.ubuntu.com/usn/USN-2967-1", "name": "USN-2967-1", "tags": [], "refsource": "UBUNTU"}, {"url": "http://www.ubuntu.com/usn/USN-2967-2", "name": "USN-2967-2", "tags": [], "refsource": "UBUNTU"}, {"url": "http://lists.opensuse.org/opensuse-security-announce/2015-09/msg00021.html", "name": "SUSE-SU-2015:1611", "tags": [], "refsource": "SUSE"}, {"url": "http://lists.opensuse.org/opensuse-security-announce/2015-09/msg00018.html", "name": "SUSE-SU-2015:1592", "tags": [], "refsource": "SUSE"}, {"url": "http://lists.opensuse.org/opensuse-security-announce/2015-09/msg00004.html", "name": "SUSE-SU-2015:1478", "tags": [], "refsource": "SUSE"}, {"url": "http://www.ubuntu.com/usn/USN-2681-1", "name": "USN-2681-1", "tags": [], "refsource": "UBUNTU"}, {"url": "http://www.ubuntu.com/usn/USN-2680-1", "name": "USN-2680-1", "tags": [], "refsource": "UBUNTU"}, {"url": "http://www.ubuntu.com/usn/USN-2679-1", "name": "USN-2679-1", "tags": [], "refsource": "UBUNTU"}, {"url": "http://lists.opensuse.org/opensuse-security-announce/2015-09/msg00011.html", "name": "SUSE-SU-2015:1491", "tags": [], "refsource": "SUSE"}, {"url": "http://lists.opensuse.org/opensuse-security-announce/2015-09/msg00010.html", "name": "SUSE-SU-2015:1490", "tags": [], "refsource": "SUSE"}, {"url": "http://lists.opensuse.org/opensuse-security-announce/2015-09/msg00009.html", "name": "SUSE-SU-2015:1489", "tags": [], "refsource": "SUSE"}, {"url": "http://lists.opensuse.org/opensuse-security-announce/2015-09/msg00008.html", "name": "SUSE-SU-2015:1488", "tags": [], "refsource": "SUSE"}, {"url": "http://lists.opensuse.org/opensuse-security-announce/2015-09/msg00007.html", "name": "SUSE-SU-2015:1487", "tags": [], "refsource": "SUSE"}, {"url": "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00049.html", "name": "SUSE-SU-2015:1324", "tags": [], "refsource": "SUSE"}, {"url": "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00023.html", "name": "SUSE-SU-2015:1224", "tags": [], "refsource": "SUSE"}, {"url": "http://rhn.redhat.com/errata/RHSA-2015-1138.html", "name": "RHSA-2015:1138", "tags": [], "refsource": "REDHAT"}, {"url": "http://rhn.redhat.com/errata/RHSA-2015-1137.html", "name": "RHSA-2015:1137", "tags": [], "refsource": "REDHAT"}, {"url": "http://rhn.redhat.com/errata/RHSA-2015-1082.html", "name": "RHSA-2015:1082", "tags": [], "refsource": "REDHAT"}, {"url": "http://rhn.redhat.com/errata/RHSA-2015-1081.html", "name": "RHSA-2015:1081", "tags": [], "refsource": "REDHAT"}]}, "data_format": "MITRE", "description": {"description_data": [{"lang": "en", "value": "The (1) pipe_read and (2) pipe_write implementations in fs/pipe.c in the Linux kernel before 3.16 do not properly consider the side effects of failed __copy_to_user_inatomic and __copy_from_user_inatomic calls, which allows local users to cause a denial of service (system crash) or possibly gain privileges via a crafted application, aka an \"I/O vector array overrun.\""}]}, "problemtype": {"problemtype_data": [{"description": [{"lang": "en", "value": "CWE-17"}]}]}, "data_version": "4.0", "CVE_data_meta": {"ID": "CVE-2015-1805", "ASSIGNER": "secalert@redhat.com"}}, "impact": {"baseMetricV2": {"cvssV2": {"version": "2.0", "baseScore": 7.2, "accessVector": "LOCAL", "vectorString": "AV:L/AC:L/Au:N/C:C/I:C/A:C", "authentication": "NONE", "integrityImpact": "COMPLETE", "accessComplexity": "LOW", "availabilityImpact": "COMPLETE", "confidentialityImpact": "COMPLETE"}, "severity": "HIGH", "impactScore": 10.0, "obtainAllPrivilege": false, "exploitabilityScore": 3.9, "obtainUserPrivilege": false, "obtainOtherPrivilege": false, "userInteractionRequired": false}}, "publishedDate": "2015-08-08T10:59Z", "configurations": {"nodes": [{"children": [], "operator": "OR", "cpe_match": [{"cpe23Uri": "cpe:2.3:o:google:android:6.0:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true}, {"cpe23Uri": "cpe:2.3:o:google:android:5.1.1:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true}, {"cpe23Uri": "cpe:2.3:o:google:android:4.4.3:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true}, {"cpe23Uri": "cpe:2.3:o:google:android:5.1:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true}, {"cpe23Uri": "cpe:2.3:o:google:android:5.0.1:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true}]}, {"children": [], "operator": "OR", "cpe_match": [{"cpe23Uri": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true, "versionEndIncluding": "3.15.10"}]}], "CVE_data_version": "4.0"}, "lastModifiedDate": "2018-01-05T02:30Z"}