imPC@ndo EN

Vulnerabilità Linux

14.775 CVE

CVE-2016-2853
Alta 7.8

The aufs module for the Linux kernel 3.x and 4.x does not properly restrict the mount namespace, which allows local users to gain privileges by mounting an aufs filesystem on top of a FUSE filesystem, and then executing a crafted setuid program.

linux linux_kernel
0.01EPSS
CVE-2024-36929
Alta 7.5

In the Linux kernel, the following vulnerability has been resolved: net: core: reject skb_copy(_expand) for fraglist GSO skbs SKB_GSO_FRAGLIST skbs must not be linearized, otherwise they become invalid. Return NULL if such an skb is passed to skb_copy or skb…

debian debian_linux · linux linux_kernel
0.01EPSS
CVE-2015-0568
Alta 7.8

Use-after-free vulnerability in the msm_set_crop function in drivers/media/video/msm/msm_camera.c in the MSM-Camera driver for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, allows a…

linux linux_kernel
0.01EPSS
CVE-2017-1000365
Alta 7.8

The Linux Kernel imposes a size restriction on the arguments and environmental strings passed through RLIMIT_STACK/RLIM_INFINITY (1/4 of the size), but does not take the argument and environment pointers into account, which allows attackers to bypass this limi…

linux linux_kernel
0.01EPSS
CVE-2019-19063
Media 4.6

Two memory leaks in the rtl_usb_probe() function in drivers/net/wireless/realtek/rtlwifi/usb.c in the Linux kernel through 5.3.11 allow attackers to cause a denial of service (memory consumption), aka CID-3f9361695113.

broadcom brocade_fabric_operating_system_firmware · canonical ubuntu_linux · fedoraproject fedora · linux linux_kernel · e altri 15
0.01EPSS
CVE-2024-38541
Alta 7.8

In the Linux kernel, the following vulnerability has been resolved: of: module: add buffer overflow check in of_modalias() In of_modalias(), if the buffer happens to be too small even for the 1st snprintf() call, the len parameter will become negative and st…

linux linux_kernel
0.01EPSS
CVE-2013-1797
Media 6.8

Use-after-free vulnerability in arch/x86/kvm/x86.c in the Linux kernel through 3.8.4 allows guest OS users to cause a denial of service (host OS memory corruption) or possibly have unspecified other impact via a crafted application that triggers use of a guest…

linux linux_kernel
0.01EPSS
CVE-2008-0010
Bassa 2.1

The copy_from_user_mmap_sem function in fs/splice.c in the Linux kernel 2.6.22 through 2.6.24 does not validate a certain userspace pointer before dereference, which allow local users to read from arbitrary kernel memory locations.

linux linux_kernel
0.01EPSS
CVE-2023-52654
Alta 7.8

In the Linux kernel, the following vulnerability has been resolved: io_uring/af_unix: disable sending io_uring over sockets File reference cycles have caused lots of problems for io_uring in the past, and it still doesn't work exactly right and races with un…

linux linux_kernel
0.01EPSS
CVE-2017-0531
Media 4.7

An information disclosure vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it first requires compromising a privileged process. Produc…

linux linux_kernel
0.01EPSS
CVE-2017-0439
Alta 7.0

An elevation of privilege vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process.…

google android · linux linux_kernel
0.01EPSS
CVE-2022-36123
Alta 7.8

The Linux kernel before 5.18.13 lacks a certain clear operation for the block starting symbol (.bss). This allows Xen PV guest OS users to cause a denial of service or gain privileges.

linux linux_kernel · netapp h300s_firmware · netapp h410c_firmware · netapp h410s_firmware · e altri 2
0.01EPSS
CVE-2017-0563
Alta 7.8

An elevation of privilege vulnerability in the HTC touchscreen driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as Critical due to the possibility of a local permanent device comp…

linux linux_kernel
0.01EPSS
CVE-2023-34324
Media 4.9

Closing of an event channel in the Linux kernel can result in a deadlock. This happens when the close is being performed in parallel to an unrelated Xen console action and the handling of a Xen console interrupt in an unprivileged guest. The closing of an eve…

linux linux_kernel · xen xen
0.01EPSS
CVE-2017-0430
Alta 7.8

An elevation of privilege vulnerability in the Broadcom Wi-Fi driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as Critical due to the possibility of a local permanent device compr…

google android · linux linux_kernel
0.01EPSS
CVE-2010-4249
Media 4.9

The wait_for_unix_gc function in net/unix/garbage.c in the Linux kernel before 2.6.37-rc3-next-20101125 does not properly select times for garbage collection of inflight sockets, which allows local users to cause a denial of service (system hang) via crafted u…

fedoraproject fedora · linux linux_kernel
0.01EPSS
CVE-2024-44947
Media 5.5

In the Linux kernel, the following vulnerability has been resolved: fuse: Initialize beyond-EOF page contents before setting uptodate fuse_notify_store(), unlike fuse_do_readpage(), does not enable page zeroing (because it can be used to change partial page …

linux linux_kernel
0.01EPSS
CVE-2022-3523
Media 5.3

A vulnerability was found in Linux Kernel. It has been classified as problematic. Affected is an unknown function of the file mm/memory.c of the component Driver Handler. The manipulation leads to use after free. It is possible to launch the attack remotely. I…

linux linux_kernel
0.01EPSS
CVE-2024-42286
Alta 7.5

In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: validate nvme_local_port correctly The driver load failed with error message, qla2xxx [0000:04:00.0]-ffff:0: register_localport failed: ret=ffffffef and with a kernel crash,…

linux linux_kernel
0.01EPSS
CVE-2006-7051
Media 4.9

The sys_timer_create function in posix-timers.c for Linux kernel 2.6.x allows local users to cause a denial of service (memory consumption) and possibly bypass memory limits or cause other processes to be killed by creating a large number of posix timers, whic…

linux linux_kernel
0.01EPSS
CVE-2017-0443
Alta 7.0

An elevation of privilege vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process.…

google android · linux linux_kernel
0.01EPSS
CVE-2017-0441
Alta 7.0

An elevation of privilege vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process.…

google android · linux linux_kernel
0.01EPSS
CVE-2012-4530
Bassa 2.1

The load_script function in fs/binfmt_script.c in the Linux kernel before 3.7.2 does not properly handle recursion, which allows local users to obtain sensitive information from kernel stack memory via a crafted application.

linux linux_kernel
0.01EPSS
CVE-2024-40983
Critica 9.8

In the Linux kernel, the following vulnerability has been resolved: tipc: force a dst refcount before doing decryption As it says in commit 3bc07321ccc2 ("xfrm: Force a dst refcount before entering the xfrm type handlers"): "Crypto requests might return asy…

linux linux_kernel
0.01EPSS
CVE-2019-10207
Media 5.5

A flaw was found in the Linux kernel's Bluetooth implementation of UART, all versions kernel 3.x.x before 4.18.0 and kernel 5.x.x. An attacker with local access and write permissions to the Bluetooth hardware could use this flaw to issue a specially crafted io…

linux linux_kernel
0.01EPSS