AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2016-7914

MEDIUM · CVSS 5.5 EPSS 2.04% Public Exploit

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2016-11-16 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

GitHub PoC Links

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2016-7914
Severity
MEDIUM
CVSS
5.5
EPSS
2.04%
Linux

Original NVD Description

The assoc_array_insert_into_terminal_node function in lib/assoc_array.c in the Linux kernel before 4.5.3 does not check whether a slot is a leaf, which allows local users to obtain sensitive information from kernel memory or cause a denial of service (invalid pointer dereference and out-of-bounds read) via an application that uses associative-array data structures, as demonstrated by the keyutils test suite.