The evm_verify_hmac function in security/integrity/evm/evm_main.c in the Linux kernel before 4.5 does not properly copy data, which makes it easier for local users to forge MAC values via a timing side-channel attack.
- http://www.ubuntu.com/usn/USN-2948-2
No PoCs found on GitHub currently.