imPC@ndo EN

Vulnerabilità Linux

14.802 CVE

CVE-2024-27058
Alta 7.8

In the Linux kernel, the following vulnerability has been resolved: tmpfs: fix race on handling dquot rbtree A syzkaller reproducer found a race while attempting to remove dquot information from the rb tree. Fetching the rb_tree root node must also be prote…

linux linux_kernel
0.00EPSS
CVE-2022-0382
Media 5.5

An information leak flaw was found due to uninitialized memory in the Linux kernel's TIPC protocol subsystem, in the way a user sends a TIPC datagram to one or more destinations. This flaw allows a local user to read some kernel memory. This issue is limited t…

linux linux_kernel
0.00EPSS
CVE-2021-28971
Media 5.5

In intel_pmu_drain_pebs_nhm in arch/x86/events/intel/ds.c in the Linux kernel through 5.11.8 on some Haswell CPUs, userspace applications (such as perf-fuzzer) can cause a system crash because the PEBS status in a PEBS record is mishandled, aka CID-d88d05a9e0b…

debian debian_linux · fedoraproject fedora · linux linux_kernel · netapp aff_500f_firmware · e altri 3
0.00EPSS
CVE-2020-25641
Media 5.5

A flaw was found in the Linux kernel's implementation of biovecs in versions before 5.9-rc7. A zero-length biovec request issued by the block subsystem could cause the kernel to enter an infinite loop, causing a denial of service. This flaw allows a local atta…

canonical ubuntu_linux · debian debian_linux · linux linux_kernel · opensuse leap · e altri 1
0.00EPSS
CVE-2018-11506
Alta 7.8

The sr_do_ioctl function in drivers/scsi/sr_ioctl.c in the Linux kernel through 4.16.12 allows local users to cause a denial of service (stack-based buffer overflow) or possibly have unspecified other impact because sense buffers have different sizes at the CD…

canonical ubuntu_linux · debian debian_linux · linux linux_kernel
0.00EPSS
CVE-2017-6951
Media 5.5

The keyring_search_aux function in security/keys/keyring.c in the Linux kernel through 3.14.79 allows local users to cause a denial of service (NULL pointer dereference and OOPS) via a request_key system call for the "dead" type.

linux linux_kernel
0.00EPSS
CVE-2016-6327
Media 5.5

drivers/infiniband/ulp/srpt/ib_srpt.c in the Linux kernel before 4.5.1 allows local users to cause a denial of service (NULL pointer dereference and system crash) by using an ABORT_TASK command to abort a device write operation.

linux linux_kernel
0.00EPSS
CVE-2015-2686
Alta 7.8

net/socket.c in the Linux kernel 3.19 before 3.19.3 does not validate certain range data for (1) sendto and (2) recvfrom system calls, which allows local users to gain privileges by leveraging a subsystem that uses the copy_from_iter function in the iov_iter i…

linux linux_kernel
0.00EPSS
CVE-2011-1172
Bassa 2.1

net/ipv6/netfilter/ip6_tables.c in the IPv6 implementation in the Linux kernel before 2.6.39 does not place the expected '\0' character at the end of string data in the values of certain structure members, which allows local users to obtain potentially sensiti…

linux linux_kernel
0.00EPSS
CVE-2006-2932
Media 4.9

A regression error in the restore_all code path of the 4/4GB split support for non-hugemem Linux kernels on Red Hat Linux Desktop and Enterprise Linux 4 allows local users to cause a denial of service (panic) via unspecified vectors.

linux linux_kernel
0.00EPSS
CVE-2004-0596
Bassa 2.1

The Equalizer Load-balancer for serial network interfaces (eql.c) in Linux kernel 2.6.x up to 2.6.7 allows local users to cause a denial of service via a non-existent device name that triggers a null dereference.

linux linux_kernel
0.00EPSS
CVE-2026-53217
Alta 8.6

In the Linux kernel, the following vulnerability has been resolved: net: mvpp2: sync RX data at the hardware packet offset mvpp2 programs the RX queue packet offset, so hardware writes received data at dma_addr + MVPP2_SKB_HEADROOM. The current CPU sync star…

linux linux_kernel
0.00EPSS
CVE-2025-38563
Alta 7.8

In the Linux kernel, the following vulnerability has been resolved: perf/core: Prevent VMA split of buffer mappings The perf mmap code is careful about mmap()'ing the user page with the ringbuffer and additionally the auxiliary buffer, when the event support…

debian debian_linux · linux linux_kernel
0.00EPSS
CVE-2019-20806
Media 4.4

An issue was discovered in the Linux kernel before 5.2. There is a NULL pointer dereference in tw5864_handle_frame() in drivers/media/pci/tw5864/tw5864-video.c, which may cause denial of service, aka CID-2e7682ebfc75.

linux linux_kernel
0.00EPSS
CVE-2019-20636
Media 6.7

In the Linux kernel before 5.4.12, drivers/input/input.c has out-of-bounds writes via a crafted keycode table, as demonstrated by input_set_keycode, aka CID-cb222aed03d7.

linux linux_kernel · netapp cloud_backup · netapp fas_8300 · netapp fas_8700 · e altri 14
0.00EPSS
CVE-2014-8171
Media 5.5

The memory resource controller (aka memcg) in the Linux kernel allows local users to cause a denial of service (deadlock) by spawning new processes within a memory-constrained cgroup.

linux linux_kernel · redhat enterprise_linux · redhat enterprise_mrg
0.00EPSS
CVE-2017-9605
Media 5.5

The vmw_gb_surface_define_ioctl function (accessible via DRM_IOCTL_VMW_GB_SURFACE_CREATE) in drivers/gpu/drm/vmwgfx/vmwgfx_surface.c in the Linux kernel through 4.11.4 defines a backup_handle variable but does not give it an initial value. If one attempts to c…

linux linux_kernel
0.00EPSS
CVE-2014-9904
Alta 7.8

The snd_compress_check_input function in sound/core/compress_offload.c in the ALSA subsystem in the Linux kernel before 3.17 does not properly check for an integer overflow, which allows local users to cause a denial of service (insufficient memory allocation)…

debian debian_linux · linux linux_kernel · novell suse_linux_enterprise_real_time_extension
0.00EPSS
CVE-2011-4325
Media 4.9

The NFS implementation in Linux kernel before 2.6.31-rc6 calls certain functions without properly initializing certain data, which allows local users to cause a denial of service (NULL pointer dereference and O_DIRECT oops), as demonstrated using diotest4 from…

linux linux_kernel
0.00EPSS
CVE-2010-4072
Bassa 1.9

The copy_shmid_to_user function in ipc/shm.c in the Linux kernel before 2.6.37-rc1 does not initialize a certain structure, which allows local users to obtain potentially sensitive information from kernel stack memory via vectors related to the shmctl system c…

canonical ubuntu_linux · debian debian_linux · linux linux_kernel · opensuse opensuse · e altri 4
0.00EPSS
CVE-2010-1641
Media 4.6

The do_gfs2_set_flags function in fs/gfs2/file.c in the Linux kernel before 2.6.34-git10 does not verify the ownership of a file, which allows local users to bypass intended access restrictions via a SETFLAGS ioctl request.

linux linux_kernel
0.00EPSS
CVE-2022-49997
Alta 7.5

In the Linux kernel, the following vulnerability has been resolved: net: lantiq_xrx200: restore buffer if memory allocation failed In a situation where memory allocation fails, an invalid buffer address is stored. When this descriptor is used again, the syst…

linux linux_kernel
0.00EPSS
CVE-2017-16648
Media 6.6

The dvb_frontend_free function in drivers/media/dvb-core/dvb_frontend.c in the Linux kernel through 4.13.11 allows local users to cause a denial of service (use-after-free and system crash) or possibly have unspecified other impact via a crafted USB device. NO…

linux linux_kernel
0.00EPSS
CVE-2017-16533
Media 6.6

The usbhid_parse function in drivers/hid/usbhid/hid-core.c in the Linux kernel before 4.13.8 allows local users to cause a denial of service (out-of-bounds read and system crash) or possibly have unspecified other impact via a crafted USB device.

canonical ubuntu_linux · debian debian_linux · linux linux_kernel
0.00EPSS
CVE-2016-9083
Alta 7.8

drivers/vfio/pci/vfio_pci.c in the Linux kernel through 4.8.11 allows local users to bypass integer overflow checks, and cause a denial of service (memory corruption) or have unspecified other impact, by leveraging access to a vfio PCI device file for a VFIO_D…

linux linux_kernel
0.00EPSS