imPC@ndo IT

Linux vulnerabilities

14.796 CVE

CVE-2022-28893
High 7.8

The SUNRPC subsystem in the Linux kernel through 5.17.2 can call xs_xprt_free before ensuring that sockets are in the intended state.

debian debian_linux · linux linux_kernel · netapp h300e_firmware · netapp h300s_firmware · and 10 more
0.00EPSS
CVE-2018-20510
Medium 5.5

The print_binder_transaction_ilocked function in drivers/android/binder.c in the Linux kernel 4.14.90 allows local users to obtain sensitive address information by reading "*from *code *flags" lines in a debugfs file.

linux linux_kernel
0.00EPSS
CVE-2017-8063
High 7.8

drivers/media/usb/dvb-usb/cxusb.c in the Linux kernel 4.9.x and 4.10.x before 4.10.12 interacts incorrectly with the CONFIG_VMAP_STACK option, which allows local users to cause a denial of service (system crash) or possibly have unspecified other impact by lev…

linux linux_kernel
0.00EPSS
CVE-2017-8062
High 7.8

drivers/media/usb/dvb-usb/dw2102.c in the Linux kernel 4.9.x and 4.10.x before 4.10.4 interacts incorrectly with the CONFIG_VMAP_STACK option, which allows local users to cause a denial of service (system crash or memory corruption) or possibly have unspecifie…

linux linux_kernel
0.00EPSS
CVE-2012-4398
Medium 4.9

The __request_module function in kernel/kmod.c in the Linux kernel before 3.4 does not set a certain killable attribute, which allows local users to cause a denial of service (memory consumption) via a crafted application.

linux linux_kernel
0.00EPSS
CVE-2007-0822
Low 1.9

umount, when running with the Linux 2.6.15 kernel on Slackware Linux 10.2, allows local users to trigger a NULL dereference and application crash by invoking the program with a pathname for a USB pen drive that was mounted and then physically removed, which mi…

linux linux_kernel
0.00EPSS
CVE-2005-0207
Low 2.1

Unknown vulnerability in Linux kernel 2.4.x, 2.5.x, and 2.6.x allows NFS clients to cause a denial of service via O_DIRECT.

conectiva linux · linux linux_kernel · redhat enterprise_linux · redhat enterprise_linux_desktop · and 1 more
0.00EPSS
CVE-1999-0317
High 7.2

Buffer overflow in Linux su command gives root access to local users.

linux linux_kernel
0.00EPSS
CVE-2026-43341
Critical 9.8

In the Linux kernel, the following vulnerability has been resolved: net/ipv6: ioam6: prevent schema length wraparound in trace fill ioam6_fill_trace_data() stores the schema contribution to the trace length in a u8. With bit 22 enabled and the largest schema…

linux linux_kernel
0.00EPSS
CVE-2025-21959
High 7.3

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_conncount: Fully initialize struct nf_conncount_tuple in insert_tree() Since commit b36e4523d4d5 ("netfilter: nf_conncount: fix garbage collection confirm race"), `cpu` and `ji…

linux linux_kernel
0.00EPSS
CVE-2021-41864
High 7.8

prealloc_elems_and_freelist in kernel/bpf/stackmap.c in the Linux kernel before 5.14.12 allows unprivileged users to trigger an eBPF multiplication integer overflow with a resultant out-of-bounds write.

debian debian_linux · fedoraproject fedora · linux linux_kernel · netapp cloud_backup · and 11 more
0.00EPSS
CVE-2019-19523
Medium 4.6

In the Linux kernel before 5.3.7, there is a use-after-free bug that can be caused by a malicious USB device in the drivers/usb/misc/adutux.c driver, aka CID-44efc269db79.

debian debian_linux · linux linux_kernel · opensuse leap
0.00EPSS
CVE-2018-14678
High 7.8

An issue was discovered in the Linux kernel through 4.17.11, as used in Xen through 4.11.x. The xen_failsafe_callback entry point in arch/x86/entry/entry_64.S does not properly maintain RBX, which allows local users to cause a denial of service (uninitialized …

canonical ubuntu_linux · debian debian_linux · linux linux_kernel · xen xen
0.00EPSS
CVE-2017-18232
Medium 5.5

The Serial Attached SCSI (SAS) implementation in the Linux kernel through 4.15.9 mishandles a mutex within libsas, which allows local users to cause a denial of service (deadlock) by triggering certain error-handling code.

linux linux_kernel
0.00EPSS
CVE-2017-17863
High 7.8

kernel/bpf/verifier.c in the Linux kernel 4.9.x through 4.9.71 does not check the relationship between pointer values and the BPF stack, which allows local users to cause a denial of service (integer overflow or invalid memory access) or possibly have unspecif…

debian debian_linux · linux linux_kernel
0.00EPSS
CVE-2014-3645
Low 2.1

arch/x86/kvm/vmx.c in the KVM subsystem in the Linux kernel before 3.12 does not have an exit handler for the INVEPT instruction, which allows guest OS users to cause a denial of service (guest OS crash) via a crafted application.

linux linux_kernel
0.00EPSS
CVE-2011-1477
High 7.2

Multiple array index errors in sound/oss/opl3.c in the Linux kernel before 2.6.39 allow local users to cause a denial of service (heap memory corruption) or possibly gain privileges by leveraging write access to /dev/sequencer.

linux linux_kernel · suse linux_enterprise_desktop
0.00EPSS
CVE-2006-5755
Medium 4.9

Linux kernel before 2.6.18, when running on x86_64 systems, does not properly save or restore EFLAGS during a context switch, which allows local users to cause a denial of service (crash) by causing SYSENTER to set an NT flag, which can trigger a crash on the …

linux linux_kernel
0.00EPSS
CVE-2026-43490
High 8.8

In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate inherited ACE SID length smb_inherit_dacl() walks the parent directory DACL loaded from the security descriptor xattr. It verifies that each ACE contains the fixed SID header…

linux linux_kernel
0.00EPSS
CVE-2024-56632
High 7.5

In the Linux kernel, the following vulnerability has been resolved: nvme-tcp: fix the memleak while create new ctrl failed Now while we create new ctrl failed, we have not free the tagset occupied by admin_q, here try to fix it.

linux linux_kernel
0.00EPSS
CVE-2024-40911
High 8.8

In the Linux kernel, the following vulnerability has been resolved: wifi: cfg80211: Lock wiphy in cfg80211_get_station Wiphy should be locked before calling rdev_get_station() (see lockdep assert in ieee80211_get_station()). This fixes the following kernel …

linux linux_kernel
0.00EPSS
CVE-2024-35834
High 8.2

In the Linux kernel, the following vulnerability has been resolved: xsk: recycle buffer in case Rx queue was full Add missing xsk_buff_free() call when __xsk_rcv_zc() failed to produce descriptor to XSK Rx queue.

linux linux_kernel
0.00EPSS
CVE-2020-35519
High 7.8

An out-of-bounds (OOB) memory access flaw was found in x25_bind in net/x25/af_x25.c in the Linux kernel version v5.12-rc5. A bounds check failure allows a local attacker with a user account on the system to gain access to out-of-bounds memory, leading to a sys…

linux linux_kernel · netapp cloud_backup · netapp h300e_firmware · netapp h300s_firmware · and 7 more
0.00EPSS
CVE-2019-17351
Medium 6.5

An issue was discovered in drivers/xen/balloon.c in the Linux kernel before 5.2.3, as used in Xen through 4.12.x, allowing guest OS users to cause a denial of service because of unrestricted resource consumption during the mapping of guest memory, aka CID-6ef3…

linux linux_kernel · xen xen
0.00EPSS
CVE-2018-5995
Medium 5.5

The pcpu_embed_first_chunk function in mm/percpu.c in the Linux kernel through 4.14.14 allows local users to obtain sensitive address information by reading dmesg data from a "pages/cpu" printk call.

linux linux_kernel
0.00EPSS