imPC@ndo EN

Vulnerabilità Linux

14.775 CVE

CVE-2008-4395
Alta 8.3

Multiple buffer overflows in the ndiswrapper module 1.53 for the Linux kernel 2.6 allow remote attackers to execute arbitrary code by sending packets over a local wireless network that specify long ESSIDs.

linux linux_kernel · ubuntu linux_kernel
0.02EPSS
CVE-2007-2764
Alta 7.8

The embedded Linux kernel in certain Sun-Brocade SilkWorm switches before 20070516 does not properly handle a situation in which a non-root user creates a kernel process, which allows attackers to cause a denial of service (oops and device reboot) via unspecif…

linux linux_kernel
0.02EPSS
CVE-2023-0045
Media 4.7

The current implementation of the prctl syscall does not issue an IBPB immediately during the syscall. The ib_prctl_set  function updates the Thread Information Flags (TIFs) for the task and updates the SPEC_CTRL MSR on the function __speculation_ctrl_update, …

debian debian_linux · linux linux_kernel · netapp active_iq_unified_manager · netapp h300s_firmware · e altri 4
0.02EPSS
CVE-2016-6187
Alta 7.8

The apparmor_setprocattr function in security/apparmor/lsm.c in the Linux kernel before 4.6.5 does not validate the buffer size, which allows local users to gain privileges by triggering an AppArmor setprocattr hook.

linux linux_kernel
0.02EPSS
CVE-2010-3437
Media 6.6

Integer signedness error in the pkt_find_dev_from_minor function in drivers/block/pktcdvd.c in the Linux kernel before 2.6.36-rc6 allows local users to obtain sensitive information from kernel memory or cause a denial of service (invalid pointer dereference an…

canonical ubuntu_linux · debian debian_linux · linux linux_kernel · opensuse opensuse · e altri 4
0.02EPSS
CVE-2023-32257
Alta 8.1

A flaw was found in the Linux kernel's ksmbd, a high-performance in-kernel SMB server. The specific flaw exists within the processing of SMB2_SESSION_SETUP and SMB2_LOGOFF commands. The issue results from the lack of proper locking when performing operations o…

linux linux_kernel · netapp h300s · netapp h410s · netapp h500s · e altri 2
0.02EPSS
CVE-2007-5904
Media 6.8

Multiple buffer overflows in CIFS VFS in Linux kernel 2.6.23 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via long SMB responses that trigger the overflows in the SendReceive function.

linux linux_kernel
0.02EPSS
CVE-2019-12984
Media 5.5

A NULL pointer dereference vulnerability in the function nfc_genl_deactivate_target() in net/nfc/netlink.c in the Linux kernel before 5.1.13 can be triggered by a malicious user-mode program that omits certain NFC attributes, leading to denial of service.

linux linux_kernel
0.02EPSS
CVE-2018-13100
Media 5.5

An issue was discovered in fs/f2fs/super.c in the Linux kernel through 4.17.3, which does not properly validate secs_per_zone in a corrupted f2fs image, as demonstrated by a divide-by-zero error.

debian debian_linux · linux linux_kernel
0.02EPSS
CVE-2019-19378
Alta 7.8

In the Linux kernel 5.0.21, mounting a crafted btrfs filesystem image can lead to slab-out-of-bounds write access in index_rbio_pages in fs/btrfs/raid56.c.

linux linux_kernel
0.02EPSS
CVE-2018-12233
Alta 7.8

In the ea_get function in fs/jfs/xattr.c in the Linux kernel through 4.17.1, a memory corruption bug in JFS can be triggered by calling setxattr twice with two different extended attribute names on the same file. This vulnerability can be triggered by an unpri…

canonical ubuntu_linux · linux linux_kernel
0.02EPSS
CVE-2016-8399
Alta 7.0

An elevation of privilege vulnerability in the kernel networking subsystem could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as Moderate because it first requires compromising a privilege…

linux linux_kernel
0.02EPSS
CVE-2004-2536
Alta 7.5

The exit_thread function (process.c) in Linux kernel 2.6 through 2.6.5 does not invalidate the per-TSS io_bitmap pointers if a process obtains IO access permissions from the ioperm function but does not drop those permissions when it exits, which allows other …

linux linux_kernel
0.02EPSS
CVE-2018-6412
Alta 7.5

In the function sbusfb_ioctl_helper() in drivers/video/fbdev/sbuslib.c in the Linux kernel through 4.15, an integer signedness error allows arbitrary information leakage for the FBIOPUTCMAP_SPARC and FBIOGETCMAP_SPARC commands.

linux linux_kernel
0.02EPSS
CVE-2014-4699
Media 6.9

The Linux kernel before 3.15.4 on Intel processors does not properly restrict use of a non-canonical value for the saved RIP address in the case of a system call that does not use IRET, which allows local users to leverage a race condition and gain privileges,…

canonical ubuntu_linux · debian debian_linux · linux linux_kernel
0.02EPSS
CVE-2022-3594
Media 5.3

A vulnerability was found in Linux Kernel. It has been declared as problematic. Affected by this vulnerability is the function intr_callback of the file drivers/net/usb/r8152.c of the component BPF. The manipulation leads to logging of excessive data. The atta…

debian debian_linux · linux linux_kernel
0.02EPSS
CVE-2018-14615
Media 5.5

An issue was discovered in the Linux kernel through 4.17.10. There is a buffer overflow in truncate_inline_inode() in fs/f2fs/inline.c when umounting an f2fs image, because a length value may be negative.

linux linux_kernel
0.02EPSS
CVE-2009-4027
Alta 7.1

Race condition in the mac80211 subsystem in the Linux kernel before 2.6.32-rc8-next-20091201 allows remote attackers to cause a denial of service (system crash) via a Delete Block ACK (aka DELBA) packet that triggers a certain state change in the absence of an…

linux linux_kernel
0.02EPSS
CVE-2009-3722
Alta 7.1

The handle_dr function in arch/x86/kvm/vmx.c in the KVM subsystem in the Linux kernel before 2.6.31.1 does not properly verify the Current Privilege Level (CPL) before accessing a debug register, which allows guest OS users to cause a denial of service (trap) …

linux linux_kernel
0.02EPSS
CVE-2002-1572
Alta 10.0

Signed integer overflow in the bttv_read function in the bttv driver (bttv-driver.c) in Linux kernel before 2.4.20 has unknown impact and attack vectors.

linux linux_kernel
0.02EPSS
CVE-2002-1573
Alta 10.0

Unspecified vulnerability in the pcilynx ieee1394 firewire driver (pcilynx.c) in Linux kernel before 2.4.20 has unknown impact and attack vectors, related to "wrap handling."

linux linux_kernel
0.02EPSS
CVE-2017-7472
Media 5.5

The KEYS subsystem in the Linux kernel before 4.10.13 allows local users to cause a denial of service (memory consumption) via a series of KEY_REQKEY_DEFL_THREAD_KEYRING keyctl_set_reqkey_keyring calls.

linux linux_kernel
0.02EPSS
CVE-2017-1000370
Alta 7.8

The offset2lib patch as used in the Linux Kernel contains a vulnerability that allows a PIE binary to be execve()'ed with 1GB of arguments or environmental strings then the stack occupies the address 0x80000000 and the PIE binary is mapped above 0x40000000 nul…

linux linux_kernel
0.02EPSS
CVE-2018-10877
Alta 7.3

Linux kernel ext4 filesystem is vulnerable to an out-of-bound access in the ext4_ext_drop_refs() function when operating on a crafted ext4 filesystem image.

canonical ubuntu_linux · debian debian_linux · linux linux_kernel · redhat enterprise_linux
0.02EPSS
CVE-2016-8438
Critica 9.8

Integer overflow leading to a TOCTOU condition in hypervisor PIL. An integer overflow exposes a race condition that may be used to bypass (Peripheral Image Loader) PIL authentication. Product: Android. Versions: Kernel 3.18. Android ID: A-31624565. References:…

linux linux_kernel
0.02EPSS