AUGUST 4, 2026
Live Feed
Return to register
Case File

CVE-2016-4997

HIGH · CVSS 7.8 EPSS 5.68% Public Exploit

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2016-07-03 · Last synced 2026-08-04

Field Assessment

AI analysis pending.

Exhibit — Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

External Security References

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2016-4997
Severity
HIGH
CVSS
7.8
EPSS
5.68%
Linux

Original Filing — NVD Description

The compat IPT_SO_SET_REPLACE and IP6T_SO_SET_REPLACE setsockopt implementations in the netfilter subsystem in the Linux kernel before 4.6.3 allow local users to gain privileges or cause a denial of service (memory corruption) by leveraging in-container root access to provide a crafted offset value that triggers an unintended decrement.