imPC@ndo EN

Vulnerabilità Linux

14.774 CVE

CVE-2015-4001
Alta 9.0

Integer signedness error in the oz_hcd_get_desc_cnf function in drivers/staging/ozwpan/ozhcd.c in the OZWPAN driver in the Linux kernel through 4.0.5 allows remote attackers to cause a denial of service (system crash) or possibly execute arbitrary code via a c…

linux linux_kernel
0.07EPSS
CVE-2009-2698
Alta 7.8

The udp_sendmsg function in the UDP implementation in (1) net/ipv4/udp.c and (2) net/ipv6/udp.c in the Linux kernel before 2.6.19 allows local users to gain privileges or cause a denial of service (NULL pointer dereference and system crash) via vectors involvi…

canonical ubuntu_linux · fedoraproject fedora · linux linux_kernel · redhat enterprise_linux_desktop · e altri 8
0.07EPSS
CVE-2008-1673
Alta 10.0

The asn1 implementation in (a) the Linux kernel 2.4 before 2.4.36.6 and 2.6 before 2.6.25.5, as used in the cifs and ip_nat_snmp_basic modules; and (b) the gxsnmp package; does not properly validate length values during decoding of ASN.1 BER data, which allows…

debian debian_linux · linux linux_kernel
0.07EPSS
CVE-2019-11683
Critica 9.8

udp_gro_receive_segment in net/ipv4/udp_offload.c in the Linux kernel 5.x before 5.0.13 allows remote attackers to cause a denial of service (slab-out-of-bounds memory corruption) or possibly have unspecified other impact via UDP packets with a 0 payload, beca…

canonical ubuntu_linux · linux linux_kernel
0.07EPSS
CVE-2014-0101
Alta 7.8

The sctp_sf_do_5_1D_ce function in net/sctp/sm_statefuns.c in the Linux kernel through 3.13.6 does not validate certain auth_enable and auth_capable fields before making an sctp_sf_authenticate call, which allows remote attackers to cause a denial of service (…

canonical ubuntu_linux · f5 big-ip_access_policy_manager · f5 big-ip_advanced_firewall_manager · f5 big-ip_analytics · e altri 23
0.07EPSS
CVE-2026-46300
Alta 7.8

In the Linux kernel, the following vulnerability has been resolved: net: skbuff: preserve shared-frag marker during coalescing skb_try_coalesce() can attach paged frags from @from to @to. If @from has SKBFL_SHARED_FRAG set, the resulting @to skb can contain…

linux linux_kernel
0.07EPSS
CVE-1999-0414
Media 5.0

In Linux before version 2.0.36, remote attackers can spoof a TCP connection and pass data to the application layer before fully establishing the connection.

linux linux_kernel
0.07EPSS
CVE-2021-20322
Alta 7.4

A flaw in the processing of received ICMP errors (ICMP fragment needed and ICMP redirect) in the Linux kernel functionality was found to allow the ability to quickly scan open UDP ports. This flaw allows an off-path remote user to effectively bypass the source…

debian debian_linux · fedoraproject fedora · linux linux_kernel · netapp active_iq_unified_manager · e altri 18
0.07EPSS
CVE-2019-10126
Critica 9.8

A flaw was found in the Linux kernel. A heap based buffer overflow in mwifiex_uap_parse_tail_ies function in drivers/net/wireless/marvell/mwifiex/ie.c might lead to memory corruption and possibly other consequences.

canonical ubuntu_linux · debian debian_linux · linux linux_kernel · netapp a700s_firmware · e altri 19
0.07EPSS
CVE-2006-1857
Alta 9.0

Buffer overflow in SCTP in Linux kernel before 2.6.16.17 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a malformed HB-ACK chunk.

linux linux_kernel
0.07EPSS
CVE-2020-25705
Alta 7.4

A flaw in ICMP packets in the Linux kernel may allow an attacker to quickly scan open UDP ports. This flaw allows an off-path remote attacker to effectively bypass source port UDP randomization. Software that relies on UDP source port randomization are indirec…

linux linux_kernel · redhat enterprise_linux
0.07EPSS
CVE-2019-17133
Critica 9.8

In the Linux kernel through 5.3.2, cfg80211_mgd_wext_giwessid in net/wireless/wext-sme.c does not reject a long SSID IE, leading to a Buffer Overflow.

canonical ubuntu_linux · debian debian_linux · linux linux_kernel · opensuse leap
0.07EPSS
CVE-2019-19078
Alta 7.5

A memory leak in the ath10k_usb_hif_tx_sg() function in drivers/net/wireless/ath/ath10k/usb.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering usb_submit_urb() failures, aka CID-b8d17e7d93d2.

canonical ubuntu_linux · linux linux_kernel
0.07EPSS
CVE-2018-12232
Media 5.9

In net/socket.c in the Linux kernel through 4.17.1, there is a race condition between fchownat and close in cases where they target the same socket file descriptor, related to the sock_close and sockfs_setattr functions. fchownat does not increment the file de…

linux linux_kernel
0.07EPSS
CVE-1999-0431
Media 5.0

Linux 2.2.3 and earlier allow a remote attacker to perform an IP fragmentation attack, causing a denial of service.

linux linux_kernel
0.07EPSS
CVE-2015-0569
Alta 7.8

Heap-based buffer overflow in the private wireless extensions IOCTL implementation in wlan_hdd_wext.c in the WLAN (aka Wi-Fi) driver for the Linux kernel 3.x and 4.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other …

linux linux_kernel
0.06EPSS
CVE-2015-1465
Alta 7.8

The IPv4 implementation in the Linux kernel before 3.18.8 does not properly consider the length of the Read-Copy Update (RCU) grace period for redirecting lookups in the absence of caching, which allows remote attackers to cause a denial of service (memory con…

canonical ubuntu_linux · linux linux_kernel
0.06EPSS
CVE-2016-2117
Alta 7.5

The atl2_probe function in drivers/net/ethernet/atheros/atlx/atl2.c in the Linux kernel through 4.5.2 incorrectly enables scatter/gather I/O, which allows remote attackers to obtain sensitive information from kernel memory by reading packet data.

canonical ubuntu_linux · linux linux_kernel · oracle vm_server
0.06EPSS
CVE-2022-4379
Alta 7.5

A use-after-free vulnerability was found in __nfs42_ssc_open() in fs/nfs/nfs4file.c in the Linux kernel. This flaw allows an attacker to conduct a remote denial

fedoraproject fedora · linux linux_kernel
0.06EPSS
CVE-2018-20961
Critica 9.8

In the Linux kernel before 4.16.4, a double free vulnerability in the f_midi_set_alt function of drivers/usb/gadget/function/f_midi.c in the f_midi driver may allow attackers to cause a denial of service or possibly have unspecified other impact.

linux linux_kernel
0.06EPSS
CVE-2020-28374
Alta 8.1

In drivers/target/target_core_xcopy.c in the Linux kernel before 5.10.7, insufficient identifier checking in the LIO SCSI target code can be used by remote attackers to read or write files via directory traversal in an XCOPY request, aka CID-2896c93811e3. For …

debian debian_linux · fedoraproject fedora · linux linux_kernel
0.06EPSS
CVE-2015-5364
Alta 7.8

The (1) udp_recvmsg and (2) udpv6_recvmsg functions in the Linux kernel before 4.0.6 do not properly consider yielding a processor, which allows remote attackers to cause a denial of service (system hang) via incorrect checksums within a UDP packet flood.

canonical ubuntu_linux · debian debian_linux · linux linux_kernel · redhat enterprise_linux_server_aus
0.06EPSS
CVE-2015-5366
Media 5.0

The (1) udp_recvmsg and (2) udpv6_recvmsg functions in the Linux kernel before 4.0.6 provide inappropriate -EAGAIN return values, which allows remote attackers to cause a denial of service (EPOLLET epoll application read outage) via an incorrect checksum in a …

linux linux_kernel · redhat enterprise_linux_server_aus
0.06EPSS
CVE-2019-17075
Alta 7.5

An issue was discovered in write_tpt_entry in drivers/infiniband/hw/cxgb4/mem.c in the Linux kernel through 5.3.2. The cxgb4 driver is directly calling dma_map_single (a DMA function) from a stack variable. This could allow an attacker to trigger a Denial of S…

linux linux_kernel
0.06EPSS
CVE-2022-0995
Alta 7.8

An out-of-bounds (OOB) memory write flaw was found in the Linux kernel’s watch_queue event notification subsystem. This flaw can overwrite parts of the kernel state, potentially allowing a local user to gain privileged access or cause a denial of service on th…

fedoraproject fedora · linux linux_kernel · netapp h300e_firmware · netapp h300s_firmware · e altri 9
0.06EPSS