imPC@ndo IT

Linux vulnerabilities

14.802 CVE

CVE-2016-8630
Medium 5.5

The x86_decode_insn function in arch/x86/kvm/emulate.c in the Linux kernel before 4.8.7, when KVM is enabled, allows local users to cause a denial of service (host OS crash) via a certain use of a ModR/M byte in an undefined instruction.

linux linux_kernel
0.00EPSS
CVE-2016-1237
Medium 5.5

nfsd in the Linux kernel through 4.6.3 allows local users to bypass intended file-permission restrictions by setting a POSIX ACL, related to nfs2acl.c, nfs3acl.c, and nfs4acl.c.

linux linux_kernel
0.00EPSS
CVE-2014-9903
Medium 5.5

The sched_read_attr function in kernel/sched/core.c in the Linux kernel 3.14-rc before 3.14-rc4 uses an incorrect size, which allows local users to obtain sensitive information from kernel stack memory via a crafted sched_getattr system call.

linux linux_kernel
0.00EPSS
CVE-2013-2898
Low 1.9

drivers/hid/hid-sensor-hub.c in the Human Interface Device (HID) subsystem in the Linux kernel through 3.11, when CONFIG_HID_SENSOR_HUB is enabled, allows physically proximate attackers to obtain sensitive information from kernel memory via a crafted device.

linux linux_kernel
0.00EPSS
CVE-2011-3637
Medium 5.5

The m_stop function in fs/proc/task_mmu.c in the Linux kernel before 2.6.39 allows local users to cause a denial of service (OOPS) via vectors that trigger an m_start error.

linux linux_kernel · redhat enterprise_linux
0.00EPSS
CVE-2011-1162
Low 2.1

The tpm_read function in the Linux kernel 2.6 does not properly clear memory, which might allow local users to read the results of the previous TPM command.

linux linux_kernel
0.00EPSS
CVE-2009-4410
Medium 4.9

The fuse_ioctl_copy_user function in the ioctl handler in fs/fuse/file.c in the Linux kernel 2.6.29-rc1 through 2.6.30.y uses the wrong variable in an argument to the kunmap function, which allows local users to cause a denial of service (panic) via unknown ve…

linux linux_kernel
0.00EPSS
CVE-2009-1388
Medium 5.5

The ptrace_start function in kernel/ptrace.c in the Linux kernel 2.6.18 does not properly handle simultaneous execution of the do_coredump function, which allows local users to cause a denial of service (deadlock) via vectors involving the ptrace system call a…

linux linux_kernel
0.00EPSS
CVE-2023-2006
High 7.0

A race condition was found in the Linux kernel's RxRPC network protocol, within the processing of RxRPC bundles. This issue results from the lack of proper locking when performing operations on an object. This may allow an attacker to escalate privileges and e…

linux linux_kernel · netapp hci_baseboard_management_controller
0.00EPSS
CVE-2022-1205
Medium 4.7

A NULL pointer dereference flaw was found in the Linux kernel’s Amateur Radio AX.25 protocol functionality in the way a user connects with the protocol. This flaw allows a local user to crash the system.

linux linux_kernel
0.00EPSS
CVE-2010-4256
Low 2.1

The pipe_fcntl function in fs/pipe.c in the Linux kernel before 2.6.37 does not properly determine whether a file is a named pipe, which allows local users to cause a denial of service via an F_SETPIPE_SZ fcntl call.

linux linux_kernel
0.00EPSS
CVE-2007-3848
Low 1.9

Linux kernel 2.4.35 and other versions allows local users to send arbitrary signals to a child process that is running at higher privileges by causing a setuid-root parent process to die, which delivers an attacker-controlled parent process death signal (PR_SE…

linux linux_kernel
0.00EPSS
CVE-2002-2254
Low 2.1

The experimental IP packet queuing feature in Netfilter / IPTables in Linux kernel 2.4 up to 2.4.19 and 2.5 up to 2.5.31, when a privileged process exits and network traffic is not being queued, may allow a later process with the same Process ID (PID) to acces…

linux linux_kernel
0.00EPSS
CVE-2026-52911
High 8.8

In the Linux kernel, the following vulnerability has been resolved: ksmbd: scope conn->binding slowpath to bound sessions only When the binding SESSION_SETUP sets conn->binding = true, the flag stays set after the call so that the global session lookup in ks…

linux linux_kernel
0.00EPSS
CVE-2017-9986
High 7.8

The intr function in sound/oss/msnd_pinnacle.c in the Linux kernel through 4.11.7 allows local users to cause a denial of service (over-boundary access) or possibly have unspecified other impact by changing the value of a message queue head pointer between two…

linux linux_kernel
0.00EPSS
CVE-2015-1420
Low 1.9

Race condition in the handle_to_path function in fs/fhandle.c in the Linux kernel through 3.19.1 allows local users to bypass intended size restrictions and trigger read operations on additional memory locations by changing the handle_bytes value of a file han…

debian debian_linux · linux linux_kernel
0.00EPSS
CVE-2011-1078
Low 1.9

The sco_sock_getsockopt_old function in net/bluetooth/sco.c in the Linux kernel before 2.6.39 does not initialize a certain structure, which allows local users to obtain potentially sensitive information from kernel stack memory via the SCO_CONNINFO option.

linux linux_kernel
0.00EPSS
CVE-2007-0006
Low 1.9

The key serial number collision avoidance code in the key_alloc_serial function in Linux kernel 2.6.9 up to 2.6.20 allows local users to cause a denial of service (crash) via vectors that trigger a null dereference, as originally reported as "spinlock CPU recu…

linux linux_kernel
0.00EPSS
CVE-2025-71183
Critical 9.1

In the Linux kernel, the following vulnerability has been resolved: btrfs: always detect conflicting inodes when logging inode refs After rename exchanging (either with the rename exchange operation or regular renames in multiple non-atomic steps) two inodes…

linux linux_kernel
0.00EPSS
CVE-2025-21947
High 8.1

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix type confusion via race condition when using ipc_msg_send_request req->handle is allocated using ksmbd_acquire_id(&ipc_ida), based on ida_alloc. req->handle from ksmbd_ipc_login_r…

linux linux_kernel
0.00EPSS
CVE-2025-21938
High 7.5

In the Linux kernel, the following vulnerability has been resolved: mptcp: fix 'scheduling while atomic' in mptcp_pm_nl_append_new_local_addr If multiple connection requests attempt to create an implicit mptcp endpoint in parallel, more than one caller may e…

linux linux_kernel
0.00EPSS
CVE-2023-37454
Medium 5.5

An issue was discovered in the Linux kernel through 6.4.2. A crafted UDF filesystem image causes a use-after-free write operation in the udf_put_super and udf_close_lvid functions in fs/udf/super.c. NOTE: the suse.com reference has a different perspective abou…

linux linux_kernel
0.00EPSS
CVE-2021-28691
High 7.8

Guest triggered use-after-free in Linux xen-netback A malicious or buggy network PV frontend can force Linux netback to disable the interface and terminate the receive kernel thread associated with queue 0 in response to the frontend sending a malformed packet…

linux linux_kernel · netapp cloud_backup · netapp h300e_firmware · netapp h300s_firmware · and 6 more
0.00EPSS
CVE-2021-3483
High 7.8

A flaw was found in the Nosy driver in the Linux kernel. This issue allows a device to be inserted twice into a doubly-linked list, leading to a use-after-free when one of these devices is removed. The highest threat from this vulnerability is to confidentiali…

debian debian_linux · linux linux_kernel · netapp cloud_backup · netapp h300e_firmware · and 7 more
0.00EPSS
CVE-2020-24394
High 7.1

In the Linux kernel before 5.7.8, fs/nfsd/vfs.c (in the NFS server) can set incorrect permissions on new filesystem objects when the filesystem lacks ACL support, aka CID-22cf8419f131. This occurs because the current umask is not considered.

canonical ubuntu_linux · linux linux_kernel · opensuse leap · oracle sd-wan_edge · and 1 more
0.00EPSS