imPC@ndo EN

Vulnerabilità Linux

14.774 CVE

CVE-2003-0619
Media 5.0

Integer signedness error in the decode_fh function of nfs3xdr.c in Linux kernel before 2.4.21 allows remote attackers to cause a denial of service (kernel panic) via a negative size value within XDR data of an NFSv3 procedure call.

linux linux_kernel
0.11EPSS
CVE-2012-0056
Media 6.9

The mem_write function in the Linux kernel before 3.2.2, when ASLR is disabled, does not properly check permissions when writing to /proc/<pid>/mem, which allows local users to gain privileges by modifying process memory, as demonstrated by Mempodipper.

linux linux_kernel
0.11EPSS
CVE-2017-7895
Critica 9.8

The NFSv2 and NFSv3 server implementations in the Linux kernel through 4.10.13 lack certain checks for the end of a buffer, which allows remote attackers to trigger pointer-arithmetic errors or possibly have unspecified other impact via crafted requests, relat…

debian debian_linux · linux linux_kernel
0.11EPSS
CVE-2008-0352
Alta 7.8

The Linux kernel 2.6.20 through 2.6.21.1 allows remote attackers to cause a denial of service (panic) via a certain IPv6 packet, possibly involving the Jumbo Payload hop-by-hop option (jumbogram).

linux linux_kernel
0.10EPSS
CVE-2014-2523
Alta 10.0

net/netfilter/nf_conntrack_proto_dccp.c in the Linux kernel through 3.13.6 uses a DCCP header pointer incorrectly, which allows remote attackers to cause a denial of service (system crash) or possibly execute arbitrary code via a DCCP packet that triggers a ca…

canonical ubuntu_linux · linux linux_kernel
0.10EPSS
CVE-2001-0405
Alta 7.5

ip_conntrack_ftp in the IPTables firewall for Linux 2.4 allows remote attackers to bypass access restrictions for an FTP server via a PORT command that lists an arbitrary IP address and port number, which is added to the RELATED table and allowed by the firewa…

linux linux_kernel
0.10EPSS
CVE-2013-4579
Media 4.3

The ath9k_htc_set_bssid_mask function in drivers/net/wireless/ath/ath9k/htc_drv_main.c in the Linux kernel through 3.12 uses a BSSID masking approach to determine the set of MAC addresses on which a Wi-Fi device is listening, which allows remote attackers to d…

linux linux_kernel
0.10EPSS
CVE-2016-4557
Alta 7.8

The replace_map_fd_with_map_ptr function in kernel/bpf/verifier.c in the Linux kernel before 4.5.5 does not properly maintain an fd data structure, which allows local users to gain privileges or cause a denial of service (use-after-free) via crafted BPF instru…

linux linux_kernel
0.10EPSS
CVE-2016-10150
Critica 9.8

Use-after-free vulnerability in the kvm_ioctl_create_device function in virt/kvm/kvm_main.c in the Linux kernel before 4.8.13 allows host OS users to cause a denial of service (host OS crash) or possibly gain privileges via crafted ioctl calls on the /dev/kvm …

linux linux_kernel
0.10EPSS
CVE-2019-5108
Media 6.5

An exploitable denial-of-service vulnerability exists in the Linux kernel prior to mainline 5.3. An attacker could exploit this vulnerability by triggering AP to send IAPP location updates for stations before the required authentication process has completed. …

canonical ubuntu_linux · debian debian_linux · linux linux_kernel · netapp 8300_firmware · e altri 12
0.10EPSS
CVE-2015-3331
Alta 9.3

The __driver_rfc4106_decrypt function in arch/x86/crypto/aesni-intel_glue.c in the Linux kernel before 3.19.3 does not properly determine the memory locations used for encrypted data, which allows context-dependent attackers to cause a denial of service (buffe…

canonical ubuntu_linux · debian debian_linux · linux linux_kernel
0.10EPSS
CVE-2015-1421
Alta 10.0

Use-after-free vulnerability in the sctp_assoc_update function in net/sctp/associola.c in the Linux kernel before 3.18.8 allows remote attackers to cause a denial of service (slab corruption and panic) or possibly have unspecified other impact by triggering an…

canonical ubuntu_linux · debian debian_linux · linux linux_kernel
0.10EPSS
CVE-2021-33909
Alta 7.8

fs/seq_file.c in the Linux kernel 3.16 through 5.13.x before 5.13.4 does not properly restrict seq buffer allocations, leading to an integer overflow, an Out-of-bounds Write, and escalation to root by an unprivileged user, aka CID-8cae8cd89f05.

debian debian_linux · fedoraproject fedora · linux linux_kernel · netapp hci_management_node · e altri 3
0.10EPSS
CVE-2017-13715
Critica 9.8

The __skb_flow_dissect function in net/core/flow_dissector.c in the Linux kernel before 4.3 does not ensure that n_proto, ip_proto, and thoff are initialized, which allows remote attackers to cause a denial of service (system crash) or possibly execute arbitra…

linux linux_kernel
0.10EPSS
CVE-2023-3866
Alta 7.5

In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate session id and tree id in the compound request This patch validate session id and tree id in compound request. If first operation in the compound is SMB2 ECHO request, ksmbd …

linux linux_kernel
0.10EPSS
CVE-2016-10277
Alta 7.8

An elevation of privilege vulnerability in the Motorola bootloader could enable a local malicious application to execute arbitrary code within the context of the bootloader. This issue is rated as Critical due to the possibility of a local permanent device com…

linux linux_kernel
0.09EPSS
CVE-2013-4348
Alta 7.1

The skb_flow_dissect function in net/core/flow_dissector.c in the Linux kernel through 3.12 allows remote attackers to cause a denial of service (infinite loop) via a small value in the IHL field of a packet with IPIP encapsulation.

canonical ubuntu_linux · linux linux_kernel
0.09EPSS
CVE-2015-8787
Critica 9.8

The nf_nat_redirect_ipv4 function in net/netfilter/nf_nat_redirect.c in the Linux kernel before 4.4 allows remote attackers to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact by sending certain IP…

linux linux_kernel
0.09EPSS
CVE-2016-9555
Critica 9.8

The sctp_sf_ootb function in net/sctp/sm_statefuns.c in the Linux kernel before 4.8.8 lacks chunk-length checking for the first chunk, which allows remote attackers to cause a denial of service (out-of-bounds slab access) or possibly have unspecified other imp…

linux linux_kernel
0.09EPSS
CVE-2023-5178
Alta 8.8

A use-after-free vulnerability was found in drivers/nvme/target/tcp.c` in `nvmet_tcp_free_crypto` due to a logical bug in the NVMe/TCP subsystem in the Linux kernel. This issue may allow a malicious user to cause a use-after-free and double-free problem, which…

linux linux_kernel · netapp active_iq_unified_manager · netapp solidfire_\&_hci_management_node · netapp solidfire_\&_hci_storage_node · e altri 1
0.09EPSS
CVE-2010-2521
Alta 10.0

Multiple buffer overflows in fs/nfsd/nfs4xdr.c in the XDR implementation in the NFS server in the Linux kernel before 2.6.34-rc6 allow remote attackers to cause a denial of service (panic) or possibly execute arbitrary code via a crafted NFSv4 compound WRITE r…

linux linux_kernel
0.09EPSS
CVE-2025-39946
Critica 9.8

In the Linux kernel, the following vulnerability has been resolved: tls: make sure to abort the stream if headers are bogus Normally we wait for the socket to buffer up the whole record before we service it. If the socket has a tiny buffer, however, we read …

linux linux_kernel
0.09EPSS
CVE-2011-4914
Media 6.4

The ROSE protocol implementation in the Linux kernel before 2.6.39 does not verify that certain data-length values are consistent with the amount of data sent, which might allow remote attackers to obtain sensitive information from kernel memory or cause a den…

linux linux_kernel · novell suse_linux_enterprise_server
0.09EPSS
CVE-2018-14633
Alta 7.0

A security flaw was found in the chap_server_compute_md5() function in the ISCSI target code in the Linux kernel in a way an authentication request from an ISCSI initiator is processed. An unauthenticated remote attacker can cause a stack buffer overflow and s…

canonical ubuntu_linux · debian debian_linux · linux linux_kernel · redhat enterprise_linux_eus · e altri 4
0.09EPSS
CVE-2012-3400
Alta 7.6

Heap-based buffer overflow in the udf_load_logicalvol function in fs/udf/super.c in the Linux kernel before 3.4.5 allows remote attackers to cause a denial of service (system crash) or possibly have unspecified other impact via a crafted UDF filesystem.

canonical ubuntu_linux · linux linux_kernel
0.09EPSS