AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2015-8709

HIGH · CVSS 7 EPSS 0.40%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2016-02-08 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2015-8709
Severity
HIGH
CVSS
7
EPSS
0.40%
Linux

Original NVD Description

kernel/ptrace.c in the Linux kernel through 4.4.1 mishandles uid and gid mappings, which allows local users to gain privileges by establishing a user namespace, waiting for a root process to enter that namespace with an unsafe uid or gid, and then using the ptrace system call. NOTE: the vendor states "there is no kernel bug here.