imPC@ndo IT

Linux vulnerabilities

14.775 CVE

CVE-2005-3271
Low 2.1

Exec in Linux kernel 2.6 does not properly clear posix-timers in multi-threaded environments, which results in a resource leak and could allow a large number of multiple local users to cause a denial of service by using more posix-timers than specified by the …

linux linux_kernel
0.00EPSS
CVE-2004-1057
High 7.2

Multiple drivers in Linux kernel 2.4.19 and earlier do not properly mark memory with the VM_IO flag, which causes incorrect reference counts and may lead to a denial of service (kernel panic) when accessing freed kernel pages.

linux linux_kernel · redhat enterprise_linux
0.00EPSS
CVE-2025-21855
High 8.6

In the Linux kernel, the following vulnerability has been resolved: ibmvnic: Don't reference skb after sending to VIOS Previously, after successfully flushing the xmit buffer to VIOS, the tx_bytes stat was incremented by the length of the skb. It is invalid…

linux linux_kernel
0.00EPSS
CVE-2023-39198
High 7.5

A race condition was found in the QXL driver in the Linux kernel. The qxl_mode_dumb_create() function dereferences the qobj returned by the qxl_gem_object_create_with_handle(), but the handle is the only one holding a reference to it. This flaw allows an attac…

fedoraproject fedora · linux linux_kernel · redhat enterprise_linux
0.00EPSS
CVE-2017-17807
Low 3.3

The KEYS subsystem in the Linux kernel before 4.14.6 omitted an access-control check when adding a key to the current task's "default request-key keyring" via the request_key() system call, allowing a local user to use a sequence of crafted system calls to add…

linux linux_kernel
0.00EPSS
CVE-2015-2666
Medium 6.9

Stack-based buffer overflow in the get_matching_model_microcode function in arch/x86/kernel/cpu/microcode/intel_early.c in the Linux kernel before 4.0 allows context-dependent attackers to gain privileges by constructing a crafted microcode header and leveragi…

fedoraproject fedora · linux linux_kernel
0.00EPSS
CVE-2013-4162
Medium 4.7

The udp_v6_push_pending_frames function in net/ipv6/udp.c in the IPv6 implementation in the Linux kernel through 3.10.3 makes an incorrect function call for pending data, which allows local users to cause a denial of service (BUG and system crash) via a crafte…

linux linux_kernel
0.00EPSS
CVE-2013-2147
Low 2.1

The HP Smart Array controller disk-array driver and Compaq SMART2 controller disk-array driver in the Linux kernel through 3.9.4 do not initialize certain data structures, which allows local users to obtain sensitive information from kernel memory via (1) a cr…

linux linux_kernel · suse linux_enterprise_server
0.00EPSS
CVE-2011-1577
Medium 4.9

Heap-based buffer overflow in the is_gpt_valid function in fs/partitions/efi.c in the Linux kernel 2.6.38 and earlier allows physically proximate attackers to cause a denial of service (OOPS) or possibly have unspecified other impact via a crafted size of the …

linux linux_kernel
0.00EPSS
CVE-2010-4080
Low 2.1

The snd_hdsp_hwdep_ioctl function in sound/pci/rme9652/hdsp.c in the Linux kernel before 2.6.36-rc6 does not initialize a certain structure, which allows local users to obtain potentially sensitive information from kernel stack memory via an SNDRV_HDSP_IOCTL_G…

debian debian_linux · linux linux_kernel · opensuse opensuse · suse linux_enterprise_desktop · and 3 more
0.00EPSS
CVE-2009-4005
High 7.2

The collect_rx_frame function in drivers/isdn/hisax/hfc_usb.c in the Linux kernel before 2.6.32-rc7 allows attackers to have an unspecified impact via a crafted HDLC packet that arrives over ISDN and triggers a buffer under-read.

linux linux_kernel
0.00EPSS
CVE-2006-1343
Low 2.1

net/ipv4/netfilter/ip_conntrack_core.c in Linux kernel 2.4 and 2.6, and possibly net/ipv4/netfilter/nf_conntrack_l3proto_ipv4.c in 2.6, does not clear sockaddr_in.sin_zero before returning IPv4 socket names from the getsockopt function with SO_ORIGINAL_DST, wh…

linux linux_kernel
0.00EPSS
CVE-1999-0781
High 7.2

KDE allows local users to execute arbitrary commands by setting the KDEDIR environmental variable to modify the search path that KDE uses to locate its executables.

freebsd freebsd · kde kde · linux linux_kernel
0.00EPSS
CVE-2023-3567
High 7.1

A use-after-free flaw was found in vcs_read in drivers/tty/vt/vc_screen.c in vc_screen in the Linux Kernel. This issue may allow an attacker with local user access to cause a system crash or leak internal kernel information.

canonical ubuntu_linux · linux linux_kernel · redhat enterprise_linux
0.00EPSS
CVE-2021-4093
High 8.8

A flaw was found in the KVM's AMD code for supporting the Secure Encrypted Virtualization-Encrypted State (SEV-ES). A KVM guest using SEV-ES can trigger out-of-bounds reads and writes in the host kernel via a malicious VMGEXIT for a string I/O instruction (for…

canonical ubuntu_linux · fedoraproject fedora · linux linux_kernel · redhat enterprise_linux
0.00EPSS
CVE-2021-34556
Medium 5.5

In the Linux kernel through 5.13.7, an unprivileged BPF program can obtain sensitive information from kernel memory via a Speculative Store Bypass side-channel attack because the protection mechanism neglects the possibility of uninitialized memory locations o…

debian debian_linux · fedoraproject fedora · linux linux_kernel
0.00EPSS
CVE-2017-9074
High 7.8

The IPv6 fragmentation implementation in the Linux kernel through 4.11.1 does not consider that the nexthdr field may be associated with an invalid option, which allows local users to cause a denial of service (out-of-bounds read and BUG) or possibly have unsp…

linux linux_kernel
0.00EPSS
CVE-2013-2889
Medium 4.7

drivers/hid/hid-zpff.c in the Human Interface Device (HID) subsystem in the Linux kernel through 3.11, when CONFIG_HID_ZEROPLUS is enabled, allows physically proximate attackers to cause a denial of service (heap-based out-of-bounds write) via a crafted device…

linux linux_kernel
0.00EPSS
CVE-2011-1746
Medium 6.9

Multiple integer overflows in the (1) agp_allocate_memory and (2) agp_create_user_memory functions in drivers/char/agp/generic.c in the Linux kernel before 2.6.38.5 allow local users to trigger buffer overflows, and consequently cause a denial of service (syst…

linux linux_kernel · redhat enterprise_linux · redhat enterprise_linux_aus · redhat enterprise_linux_desktop · and 3 more
0.00EPSS
CVE-2010-2478
High 7.2

Integer overflow in the ethtool_get_rxnfc function in net/core/ethtool.c in the Linux kernel before 2.6.33.7 on 32-bit platforms allows local users to cause a denial of service or possibly have unspecified other impact via an ETHTOOL_GRXCLSRLALL ethtool comman…

canonical ubuntu_linux · linux linux_kernel · suse linux_enterprise_desktop · suse linux_enterprise_server
0.00EPSS
CVE-2008-3833
Medium 4.9

The generic_file_splice_write function in fs/splice.c in the Linux kernel before 2.6.19 does not properly strip setuid and setgid bits when there is a write to a file, which allows local users to gain the privileges of a different group, and obtain sensitive i…

linux linux_kernel
0.00EPSS
CVE-2024-50043
Critical 9.8

In the Linux kernel, the following vulnerability has been resolved: nfsd: fix possible badness in FREE_STATEID When multiple FREE_STATEIDs are sent for the same delegation stateid, it can lead to a possible either use-after-free or counter refcount underflow…

linux linux_kernel
0.00EPSS
CVE-2017-18079
High 7.8

drivers/input/serio/i8042.c in the Linux kernel before 4.12.4 allows attackers to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact because the port->exists value can change after it is validated.

canonical ubuntu_linux · linux linux_kernel
0.00EPSS
CVE-2017-17855
High 7.8

kernel/bpf/verifier.c in the Linux kernel through 4.14.8 allows local users to cause a denial of service (memory corruption) or possibly have unspecified other impact by leveraging improper use of pointers in place of scalars.

debian debian_linux · linux linux_kernel
0.00EPSS
CVE-2017-14340
Medium 5.5

The XFS_IS_REALTIME_INODE macro in fs/xfs/xfs_linux.h in the Linux kernel before 4.13.2 does not verify that a filesystem has a realtime device, which allows local users to cause a denial of service (NULL pointer dereference and OOPS) via vectors related to se…

linux linux_kernel
0.00EPSS