imPC@ndo EN

Vulnerabilità Linux

14.774 CVE

CVE-2019-14896
Critica 9.8

A heap-based buffer overflow vulnerability was found in the Linux kernel, version kernel-2.6.32, in Marvell WiFi chip driver. A remote attacker could cause a denial of service (system crash) or, possibly execute arbitrary code, when the lbs_ibss_join_existing …

canonical ubuntu_linux · debian debian_linux · fedoraproject fedora · linux linux_kernel · e altri 1
0.09EPSS
CVE-2017-8797
Alta 7.5

The NFSv4 server in the Linux kernel before 4.11.3 does not properly validate the layout type when processing the NFSv4 pNFS GETDEVICEINFO or LAYOUTGET operand in a UDP packet from a remote attacker. This type value is uninitialized upon encountering certain e…

linux linux_kernel
0.09EPSS
CVE-2014-3687
Alta 7.5

The sctp_assoc_lookup_asconf_ack function in net/sctp/associola.c in the SCTP implementation in the Linux kernel through 3.17.2 allows remote attackers to cause a denial of service (panic) via duplicate ASCONF chunks that trigger an incorrect uncork within the…

canonical ubuntu_linux · debian debian_linux · linux linux_kernel · novell suse_linux_enterprise_desktop · e altri 8
0.09EPSS
CVE-1999-0074
Media 6.4

Listening TCP ports are sequentially allocated, allowing spoofing attacks.

freebsd freebsd · linux linux_kernel · microsoft windows_nt · netbsd netbsd
0.08EPSS
CVE-2009-4538
Alta 10.0

drivers/net/e1000e/netdev.c in the e1000e driver in the Linux kernel 2.6.32.3 and earlier does not properly check the size of an Ethernet frame that exceeds the MTU, which allows remote attackers to have an unspecified impact via crafted packets, a related iss…

debian debian_linux · linux linux_kernel
0.08EPSS
CVE-2015-4002
Alta 9.0

drivers/staging/ozwpan/ozusbsvc1.c in the OZWPAN driver in the Linux kernel through 4.0.5 does not ensure that certain length values are sufficiently large, which allows remote attackers to cause a denial of service (system crash or large loop) or possibly exe…

canonical ubuntu_linux · linux linux_kernel · opensuse opensuse
0.08EPSS
CVE-2009-2846
Alta 7.8

The eisa_eeprom_read function in the parisc isa-eeprom component (drivers/parisc/eisa_eeprom.c) in the Linux kernel before 2.6.31-rc6 allows local users to access restricted memory via a negative ppos argument, which bypasses a check that assumes that ppos is …

linux linux_kernel
0.08EPSS
CVE-2015-4004
Alta 8.5

The OZWPAN driver in the Linux kernel through 4.0.5 relies on an untrusted length field during packet parsing, which allows remote attackers to obtain sensitive information from kernel memory or cause a denial of service (out-of-bounds read and system crash) v…

canonical ubuntu_linux · linux linux_kernel
0.08EPSS
CVE-2014-4611
Media 5.0

Integer overflow in the LZ4 algorithm implementation, as used in Yann Collet LZ4 before r118 and in the lz4_uncompress function in lib/lz4/lz4_decompress.c in the Linux kernel before 3.15.2, on 32-bit platforms might allow context-dependent attackers to cause …

linux linux_kernel
0.08EPSS
CVE-2023-3338
Media 6.5

A null pointer dereference flaw was found in the Linux kernel's DECnet networking protocol. This issue could allow a remote user to crash the system.

debian debian_linux · linux linux_kernel · netapp active_iq_unified_manager
0.08EPSS
CVE-2019-14895
Critica 9.8

A heap-based buffer overflow was discovered in the Linux kernel, all versions 3.x.x and 4.x.x before 4.18.0, in Marvell WiFi chip driver. The flaw could occur when the station attempts a connection negotiation during the handling of the remote devices country …

canonical ubuntu_linux · debian debian_linux · fedoraproject fedora · linux linux_kernel · e altri 1
0.08EPSS
CVE-2020-12351
Alta 8.8

Improper input validation in BlueZ may allow an unauthenticated user to potentially enable escalation of privilege via adjacent access.

linux linux_kernel
0.08EPSS
CVE-2017-0569
Alta 7.0

An elevation of privilege vulnerability in the Broadcom Wi-Fi driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process.…

linux linux_kernel
0.08EPSS
CVE-2018-5333
Media 5.5

In the Linux kernel through 4.14.13, the rds_cmsg_atomic function in net/rds/rdma.c mishandles cases where page pinning fails or an invalid address is supplied, leading to an rds_atomic_free_op NULL pointer dereference.

canonical ubuntu_linux · debian debian_linux · linux linux_kernel
0.08EPSS
CVE-2025-38562
Media 5.5

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix null pointer dereference error in generate_encryptionkey If client send two session setups with krb5 authenticate to ksmbd, null pointer dereference error in generate_encryptionke…

debian debian_linux · linux linux_kernel
0.08EPSS
CVE-2019-15505
Critica 9.8

drivers/media/usb/dvb-usb/technisat-usb2.c in the Linux kernel through 5.2.9 has an out-of-bounds read via crafted USB device traffic (which may be remote via usbip or usbredir).

canonical ubuntu_linux · debian debian_linux · linux linux_kernel
0.08EPSS
CVE-2016-7039
Alta 7.5

The IP stack in the Linux kernel through 4.8.2 allows remote attackers to cause a denial of service (stack consumption and panic) or possibly have unspecified other impact by triggering use of the GRO path for large crafted packets, as demonstrated by packets …

linux linux_kernel · oracle linux · oracle vm_server
0.08EPSS
CVE-2018-18955
Alta 7.0

In the Linux kernel 4.15.x through 4.19.x before 4.19.2, map_write() in kernel/user_namespace.c allows privilege escalation because it mishandles nested user namespaces with more than 5 UID or GID ranges. A user who has CAP_SYS_ADMIN in an affected user namesp…

canonical ubuntu_linux · linux linux_kernel
0.08EPSS
CVE-2020-26147
Media 5.4

An issue was discovered in the Linux kernel 5.8.9. The WEP, WPA, WPA2, and WPA3 implementations reassemble fragments even though some of them were sent in plaintext. This vulnerability can be abused to inject packets and/or exfiltrate selected fragments when a…

arista c-65_firmware · arista c-75_firmware · arista o-90_firmware · arista w-68_firmware · e altri 4
0.08EPSS
CVE-2014-3673
Alta 7.5

The SCTP implementation in the Linux kernel through 3.17.2 allows remote attackers to cause a denial of service (system crash) via a malformed ASCONF chunk, related to net/sctp/sm_make_chunk.c and net/sctp/sm_statefuns.c.

canonical ubuntu_linux · debian debian_linux · linux linux_kernel · opensuse evergreen · e altri 6
0.07EPSS
CVE-2025-21759
Alta 7.8

In the Linux kernel, the following vulnerability has been resolved: ipv6: mcast: extend RCU protection in igmp6_send() igmp6_send() can be called without RTNL or RCU being held. Extend RCU protection so that we can safely fetch the net pointer and avoid a p…

linux linux_kernel
0.07EPSS
CVE-2013-2850
Alta 7.9

Heap-based buffer overflow in the iscsi_add_notunderstood_response function in drivers/target/iscsi/iscsi_target_parameters.c in the iSCSI target subsystem in the Linux kernel through 3.9.4 allows remote attackers to cause a denial of service (memory corruptio…

linux linux_kernel
0.07EPSS
CVE-2018-1120
Bassa 2.8

A flaw was found affecting the Linux kernel before version 4.17. By mmap()ing a FUSE-backed file onto a process's memory containing command line arguments (or environment strings), an attacker can cause utilities from psutils or procps (such as ps, w) or any o…

canonical ubuntu_linux · debian debian_linux · linux linux_kernel · redhat enterprise_linux_desktop · e altri 3
0.07EPSS
CVE-1999-1018
Alta 7.5

IPChains in Linux kernels 2.2.10 and earlier does not reassemble IP fragments before checking the header information, which allows a remote attacker to bypass the filtering rules using several fragments with 0 offsets.

linux linux_kernel
0.07EPSS
CVE-2022-36946
Alta 7.5

nfqnl_mangle in net/netfilter/nfnetlink_queue.c in the Linux kernel through 5.18.14 allows remote attackers to cause a denial of service (panic) because, in the case of an nf_queue verdict with a one-byte nfta_payload attribute, an skb_pull can encounter a neg…

debian debian_linux · linux linux_kernel · netapp active_iq_unified_manager · netapp hci_compute_node · e altri 3
0.07EPSS