imPC@ndo EN

Vulnerabilità Linux

14.756 CVE

CVE-2026-31431
Sfruttata Alta 7.8

In the Linux kernel, the following vulnerability has been resolved: crypto: algif_aead - Revert to operating out-of-place This mostly reverts commit 72548b093ee3 except for the copying of the associated data. There is no benefit in operating in-place in alg…

amazon amazon_linux · arista cloudvision_agni · arista cloudvision_portal · arista netvisor_os · e altri 39
1.00EPSS
CVE-2022-0847
Sfruttata Alta 7.8

A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in copy_page_to_iter_pipe and push_pipe functions in the Linux kernel and could thus contain stale values. An unprivileged local user could use th…

fedoraproject fedora · linux linux_kernel · netapp h300e_firmware · netapp h300s_firmware · e altri 25
0.89EPSS
CVE-2016-5195
Sfruttata Alta 7.0

Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by leveraging incorrect handling of a copy-on-write (COW) feature to write to a read-only memory mapping, as exploited in the wild in October 2016…

canonical ubuntu_linux · debian debian_linux · fedoraproject fedora · linux linux_kernel · e altri 14
0.84EPSS
CVE-2021-22555
Sfruttata Alta 8.3

A heap out-of-bounds write affecting Linux since v2.6.19-rc1 was discovered in net/netfilter/x_tables.c. This allows an attacker to gain privileges or cause a DoS (via heap memory corruption) through user name space

brocade fabric_operating_system · linux linux_kernel · netapp aff_500f_firmware · netapp aff_a250_firmware · e altri 17
0.79EPSS
CVE-2019-13272
Sfruttata Alta 7.8

In the Linux kernel before 5.1.17, ptrace_link in kernel/ptrace.c mishandles the recording of the credentials of a process that wants to create a ptrace relationship, which allows local users to obtain root access by leveraging certain scenarios with a parent-…

canonical ubuntu_linux · debian debian_linux · fedoraproject fedora · linux linux_kernel · e altri 18
0.52EPSS
CVE-2013-2094
Sfruttata Alta 8.4

The perf_swevent_init function in kernel/events/core.c in the Linux kernel before 3.8.9 uses an incorrect integer data type, which allows local users to gain privileges via a crafted perf_event_open system call.

linux linux_kernel
0.48EPSS
CVE-2013-6282
Sfruttata Alta 8.8

The (1) get_user and (2) put_user API functions in the Linux kernel before 3.5.5 on the v6k and v7 ARM platforms do not validate certain addresses, which allows attackers to read or modify the contents of arbitrary kernel memory locations via a crafted applica…

linux linux_kernel
0.40EPSS
CVE-2014-3153
Sfruttata Alta 7.8

The futex_requeue function in kernel/futex.c in the Linux kernel through 3.14.5 does not ensure that calls have two different futex addresses, which allows local users to gain privileges via a crafted FUTEX_REQUEUE command that facilitates unsafe waiter modifi…

canonical ubuntu_linux · linux linux_kernel · opensuse opensuse · oracle linux · e altri 5
0.37EPSS
CVE-2023-3079
Sfruttata Alta 8.8

Type confusion in V8 in Google Chrome prior to 114.0.5735.110 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

apple macos · couchbase couchbase_server · debian debian_linux · fedoraproject fedora · e altri 2
0.32EPSS
CVE-2024-1086
Ransomware Alta 7.8

A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local privilege escalation. The nft_verdict_init() function allows positive values as drop error within the hook verdict, and hence the nf_hook_s…

debian debian_linux · fedoraproject fedora · linux linux_kernel · netapp 500f_firmware · e altri 14
0.28EPSS
CVE-2022-0185
Sfruttata Alta 8.4

A heap-based buffer overflow flaw was found in the way the legacy_parse_param function in the Filesystem Context functionality of the Linux kernel verified the supplied parameters length. An unprivileged (in case of unprivileged user namespaces enabled, otherw…

linux linux_kernel · netapp h300e_firmware · netapp h300s_firmware · netapp h410c_firmware · e altri 5
0.25EPSS
CVE-2014-0196
Sfruttata Media 5.5

The n_tty_write function in drivers/tty/n_tty.c in the Linux kernel through 3.14.3 does not properly manage tty driver access in the "LECHO & !OPOST" case, which allows local users to cause a denial of service (memory corruption and system crash) or gain privi…

canonical ubuntu_linux · debian debian_linux · f5 big-ip_access_policy_manager · f5 big-ip_advanced_firewall_manager · e altri 26
0.22EPSS
CVE-2018-14634
Sfruttata Alta 7.8

An integer overflow flaw was found in the Linux kernel's create_elf_tables() function. An unprivileged local user with access to SUID (or otherwise privileged) binary could use this flaw to escalate their privileges on the system. Kernel versions 2.6.x, 3.10.x…

canonical ubuntu_linux · f5 big-ip_access_policy_manager · f5 big-ip_advanced_firewall_manager · f5 big-ip_analytics · e altri 24
0.15EPSS
CVE-2010-3904
Sfruttata Alta 7.8

The rds_page_copy_user function in net/rds/page.c in the Reliable Datagram Sockets (RDS) protocol implementation in the Linux kernel before 2.6.36 does not properly validate addresses obtained from user space, which allows local users to gain privileges via cr…

canonical ubuntu_linux · linux linux_kernel · opensuse opensuse · redhat enterprise_linux · e altri 4
0.12EPSS
CVE-2017-1000253
Ransomware Alta 7.8

Linux distributions that have not patched their long-term kernels with https://git.kernel.org/linus/a87938b2e246b81b4fb713edb371a9fa3c5c3c86 (committed on April 14, 2015). This kernel vulnerability was fixed in April 2015 by commit a87938b2e246b81b4fb713edb371…

centos centos · linux linux_kernel · redhat enterprise_linux
0.11EPSS
CVE-2022-2586
Sfruttata Media 5.3

It was discovered that a nft object or expression could reference a nft set on a different nft table, leading to a use-after-free once that table was deleted.

canonical ubuntu_linux · linux linux_kernel
0.10EPSS
CVE-2023-0386
Sfruttata Alta 7.8

A flaw was found in the Linux kernel, where unauthorized access to the execution of the setuid file with capabilities was found in the Linux kernel’s OverlayFS subsystem in how a user copies a capable file from a nosuid mount into another mount. This uid mappi…

canonical ubuntu_linux · debian debian_linux · linux linux_kernel · netapp h300s_firmware · e altri 4
0.08EPSS
CVE-2021-22600
Sfruttata Media 6.6

A double free bug in packet_set_ring() in net/packet/af_packet.c can be exploited by a local user through crafted syscalls to escalate privileges or deny service. We recommend upgrading kernel past the effected versions or rebuilding past ec6af094ea28f0f2dda1a…

debian debian_linux · linux linux_kernel · netapp 8300_firmware · netapp 8700_firmware · e altri 7
0.06EPSS
CVE-2022-0492
Sfruttata Alta 7.8

A vulnerability was found in the Linux kernel’s cgroup_release_agent_write in the kernel/cgroup/cgroup-v1.c function. This flaw, under certain circumstances, allows the use of the cgroups v1 release_agent feature to escalate privileges and bypass the namespace…

canonical ubuntu_linux · debian debian_linux · fedoraproject fedora · linux linux_kernel · e altri 24
0.06EPSS
CVE-2023-0266
Sfruttata Alta 7.9

A use after free vulnerability exists in the ALSA PCM package in the Linux Kernel. SNDRV_CTL_IOCTL_ELEM_{READ|WRITE}32 is missing locks that can be used in a use-after-free that can result in a priviledge escalation to gain ring0 access from the system user. W…

debian debian_linux · linux linux_kernel
0.04EPSS
CVE-2024-53197
Sfruttata Alta 7.8

In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Fix potential out-of-bound accesses for Extigy and Mbox devices A bogus device can provide a bNumConfigurations value that exceeds the initial value used in usb_get_configur…

debian debian_linux · linux linux_kernel
0.04EPSS
CVE-2013-2596
Sfruttata Alta 7.8

Integer overflow in the fb_mmap function in drivers/video/fbmem.c in the Linux kernel before 3.8.9, as used in a certain Motorola build of Android 4.1.2 and other products, allows local users to create a read-write memory mapping for the entirety of kernel mem…

linux linux_kernel · motorola android
0.03EPSS
CVE-2024-53104
Sfruttata Alta 7.8

In the Linux kernel, the following vulnerability has been resolved: media: uvcvideo: Skip parsing frames of type UVC_VS_UNDEFINED in uvc_parse_format This can lead to out of bounds writes since frames of this type were not taken into account when calculating…

debian debian_linux · linux linux_kernel
0.03EPSS
CVE-2024-36971
Sfruttata Alta 7.8

In the Linux kernel, the following vulnerability has been resolved: net: fix __dst_negative_advice() race __dst_negative_advice() does not enforce proper RCU rules when sk->dst_cache must be cleared, leading to possible UAF. RCU rules are that we must first…

debian debian_linux · linux linux_kernel
0.03EPSS
CVE-2024-53150
Sfruttata Alta 7.1

In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Fix out of bounds reads when finding clock sources The current USB-audio driver code doesn't check bLength of each descriptor at traversing for clock descriptors. That is, …

debian debian_linux · linux linux_kernel
0.01EPSS