The LIST_POISON feature in include/linux/poison.h in the Linux kernel before 4.3, as used in Android 6.0.1 before 2016-03-01, does not properly consider the relationship to the mmap_min_addr value, which makes it easier for attackers to bypass a poison-pointer protection mechanism by triggering the use of an uninitialized list entry, aka Android internal bug 26186802, a different vulnerability than CVE-2015-3636.
Advisories
Source ID Title
Debian DLA Debian DLA DLA-516-1 linux security update
Debian DSA Debian DSA DSA-3607-1 linux security update
Ubuntu USN Ubuntu USN USN-2967-1 Linux kernel vulnerabilities
Ubuntu USN Ubuntu USN USN-2967-2 Linux kernel (OMAP4) vulnerabilities
Ubuntu USN Ubuntu USN USN-2968-1 Linux kernel vulnerabilities
Ubuntu USN Ubuntu USN USN-2968-2 Linux kernel (Trusty HWE) vulnerabilities
Ubuntu USN Ubuntu USN USN-2969-1 Linux kernel (Utopic HWE) vulnerabilities
Ubuntu USN Ubuntu USN USN-2970-1 Linux kernel (Vivid HWE) vulnerabilities
Ubuntu USN Ubuntu USN USN-2971-1 Linux kernel vulnerabilities
Ubuntu USN Ubuntu USN USN-2971-2 Linux kernel (Wily HWE) vulnerabilities
Ubuntu USN Ubuntu USN USN-2971-3 Linux kernel (Raspberry Pi 2) vulnerabilities
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Fri, 11 Jul 2025 13:45:00 +0000

Type Values Removed Values Added
Metrics epss

{'score': 0.0001}

epss

{'score': 7e-05}


cve-icon MITRE

Status: PUBLISHED

Assigner: google_android

Published:

Updated: 2024-08-05T22:30:05.117Z

Reserved: 2015-12-16T00:00:00

Link: CVE-2016-0821

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2016-03-12T21:59:05.900

Modified: 2025-04-12T10:46:40.837

Link: CVE-2016-0821

cve-icon Redhat

Severity : Moderate

Publid Date: 2015-09-10T00:00:00Z

Links: CVE-2016-0821 - Bugzilla

cve-icon OpenCVE Enrichment

No data.