imPC@ndo IT

Linux vulnerabilities

14.775 CVE

CVE-2020-25643
High 7.2

A flaw was found in the HDLC_PPP module of the Linux kernel in versions before 5.9-rc7. Memory corruption and a read overflow is caused by improper input validation in the ppp_cp_parse_cr function which can cause the system to crash or cause a denial of servic…

debian debian_linux · linux linux_kernel · netapp h410c_firmware · opensuse leap · and 2 more
0.03EPSS
CVE-2019-19053
High 7.5

A memory leak in the rpmsg_eptdev_write_iter() function in drivers/rpmsg/rpmsg_char.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering copy_from_iter_full() failures, aka CID-bbe692e349e2.

broadcom brocade_fabric_operating_system_firmware · canonical ubuntu_linux · linux linux_kernel · netapp active_iq_unified_manager · and 12 more
0.03EPSS
CVE-2019-18810
High 7.5

A memory leak in the komeda_wb_connector_add() function in drivers/gpu/drm/arm/display/komeda/komeda_wb_connector.c in the Linux kernel before 5.3.8 allows attackers to cause a denial of service (memory consumption) by triggering drm_writeback_connector_init()…

canonical ubuntu_linux · linux linux_kernel
0.03EPSS
CVE-2005-3858
High 7.8

Memory leak in the ip6_input_finish function in ip6_input.c in Linux kernel 2.6.12 and earlier might allow attackers to cause a denial of service via malformed IPv6 packets with unspecified parameter problems, which prevents the SKB from being freed.

linux linux_kernel
0.03EPSS
CVE-2004-1017
High 10.0

Multiple "overflows" in the io_edgeport driver for Linux kernel 2.4.x have unknown impact and unknown attack vectors.

linux linux_kernel
0.03EPSS
CVE-2006-0036
High 7.8

ip_nat_pptp in the PPTP NAT helper (netfilter/ip_nat_helper_pptp.c) in Linux kernel 2.6.14, and other versions, allows remote attackers to cause a denial of service (memory corruption or crash) via an inbound PPTP_IN_CALL_REQUEST packet that causes a null poin…

linux linux_kernel
0.03EPSS
CVE-2005-2099
Medium 5.0

The Linux kernel before 2.6.12.5 does not properly destroy a keyring that is not instantiated properly, which allows local users or remote attackers to cause a denial of service (kernel oops) via a keyring with a payload that is not empty, which causes the cre…

linux linux_kernel
0.03EPSS
CVE-2008-3496
High 10.0

Buffer overflow in format descriptor parsing in the uvc_parse_format function in drivers/media/video/uvc/uvc_driver.c in uvcvideo in the video4linux (V4L) implementation in the Linux kernel before 2.6.26.1 has unknown impact and attack vectors.

linux linux_kernel
0.03EPSS
CVE-2005-0209
High 7.8

Netfilter in Linux kernel 2.6.8.1 allows remote attackers to cause a denial of service (kernel crash) via crafted IP packet fragments.

linux linux_kernel
0.03EPSS
CVE-2006-6333
High 7.8

The tr_rx function in ibmtr.c for Linux kernel 2.6.19 assigns the wrong flag to the ip_summed field, which allows remote attackers to cause a denial of service (memory corruption) via crafted packets that cause the kernel to interpret another field as an offse…

linux linux_kernel
0.03EPSS
CVE-2004-1056
Medium 6.4

Direct Rendering Manager (DRM) driver in Linux kernel 2.6 does not properly check the DMA lock, which could allow remote attackers or local users to cause a denial of service (X Server crash) and possibly modify the video output.

linux linux_kernel · ubuntu ubuntu_linux
0.03EPSS
CVE-2019-19081
Medium 5.9

A memory leak in the nfp_flower_spawn_vnic_reprs() function in drivers/net/ethernet/netronome/nfp/flower/main.c in the Linux kernel before 5.3.4 allows attackers to cause a denial of service (memory consumption), aka CID-8ce39eb5a67a.

linux linux_kernel · opensuse leap · redhat enterprise_linux
0.03EPSS
CVE-2019-19061
High 7.5

A memory leak in the adis_update_scan_mode_burst() function in drivers/iio/imu/adis_buffer.c in the Linux kernel before 5.3.9 allows attackers to cause a denial of service (memory consumption), aka CID-9c0530e898f3.

broadcom brocade_fabric_operating_system_firmware · canonical ubuntu_linux · linux linux_kernel · netapp active_iq_unified_manager · and 12 more
0.03EPSS
CVE-2019-10639
High 7.5

The Linux kernel 4.x (starting from 4.1) and 5.x before 5.0.8 allows Information Exposure (partial kernel address disclosure), leading to a KASLR bypass. Specifically, it is possible to extract the KASLR kernel image offset using the IP ID values the kernel pr…

linux linux_kernel
0.03EPSS
CVE-2009-3280
High 7.8

Integer signedness error in the find_ie function in net/wireless/scan.c in the cfg80211 subsystem in the Linux kernel before 2.6.31.1-rc1 allows remote attackers to cause a denial of service (soft lockup) via malformed packets.

linux linux_kernel
0.03EPSS
CVE-2002-0704
High 7.5

The Network Address Translation (NAT) capability for Netfilter ("iptables") 1.2.6a and earlier leaks translated IP addresses in ICMP error messages.

linux linux_kernel
0.03EPSS
CVE-2007-4997
High 7.1

Integer underflow in the ieee80211_rx function in net/ieee80211/ieee80211_rx.c in the Linux kernel 2.6.x before 2.6.23 allows remote attackers to cause a denial of service (crash) via a crafted SKB length value in a runt IEEE 802.11 frame when the IEEE80211_ST…

linux linux_kernel
0.03EPSS
CVE-1999-0461
High 10.0

Versions of rpcbind including Linux, IRIX, and Wietse Venema's rpcbind allow a remote attacker to insert and delete entries by spoofing a source address.

linux linux_kernel · sgi irix
0.03EPSS
CVE-2026-46242
High 7.8

In the Linux kernel, the following vulnerability has been resolved: eventpoll: fix ep_remove struct eventpoll / struct file UAF ep_remove() (via ep_remove_file()) cleared file->f_ep under file->f_lock but then kept using @file inside the critical section (is…

linux linux_kernel
0.03EPSS
CVE-2017-18344
Medium 5.5

The timer_create syscall implementation in kernel/time/posix-timers.c in the Linux kernel before 4.14.8 doesn't properly validate the sigevent->sigev_notify field, which leads to out-of-bounds access in the show_timer function (called when /proc/$PID/timers is…

canonical ubuntu_linux · linux linux_kernel · redhat enterprise_linux_desktop · redhat enterprise_linux_server · and 5 more
0.03EPSS
CVE-2011-3359
High 7.5

The dma_rx function in drivers/net/wireless/b43/dma.c in the Linux kernel before 2.6.39 does not properly allocate receive buffers, which allows remote attackers to cause a denial of service (system crash) via a crafted frame.

linux linux_kernel
0.03EPSS
CVE-2011-4326
High 7.1

The udp6_ufo_fragment function in net/ipv6/udp.c in the Linux kernel before 2.6.39, when a certain UDP Fragmentation Offload (UFO) configuration is enabled, allows remote attackers to cause a denial of service (system crash) by sending fragmented IPv6 UDP pack…

avaya 96x1_ip_deskphone_firmware · linux linux_kernel
0.03EPSS
CVE-2008-3276
High 7.1

Integer overflow in the dccp_setsockopt_change function in net/dccp/proto.c in the Datagram Congestion Control Protocol (DCCP) subsystem in the Linux kernel 2.6.17-rc1 through 2.6.26.2 allows remote attackers to cause a denial of service (panic) via a crafted …

linux linux_kernel
0.03EPSS
CVE-2019-19064
High 7.5

A memory leak in the fsl_lpspi_probe() function in drivers/spi/spi-fsl-lpspi.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering pm_runtime_get_sync() failures, aka CID-057b8945f78f. NOTE: third…

fedoraproject fedora · linux linux_kernel
0.03EPSS
CVE-2018-17182
High 7.8

An issue was discovered in the Linux kernel through 4.18.8. The vmacache_flush_all function in mm/vmacache.c mishandles sequence number overflows. An attacker can trigger a use-after-free (and possibly gain privileges) via certain thread creation, map, unmap, …

canonical ubuntu_linux · debian debian_linux · linux linux_kernel · netapp active_iq_performance_analytics_services · and 1 more
0.03EPSS