imPC@ndo IT

Linux vulnerabilities

14.775 CVE

CVE-2019-19070
High 7.5

A memory leak in the spi_gpio_probe() function in drivers/spi/spi-gpio.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering devm_add_action_or_reset() failures, aka CID-d3b0ffa1d75d. NOTE: third …

fedoraproject fedora · linux linux_kernel
0.03EPSS
CVE-2017-1000405
High 7.0

The Linux Kernel versions 2.6.38 through 4.14 have a problematic use of pmd_mkdirty() in the touch_pmd() function inside the THP implementation. touch_pmd() can be reached by get_user_pages(). In such case, the pmd will become dirty. This scenario breaks the n…

linux linux_kernel
0.03EPSS
CVE-2003-0418
Medium 5.0

The Linux 2.0 kernel IP stack does not properly calculate the size of an ICMP citation, which causes it to include portions of unauthorized memory in ICMP error responses.

linux linux_kernel
0.03EPSS
CVE-2011-1767
Medium 5.4

net/ipv4/ip_gre.c in the Linux kernel before 2.6.34, when ip_gre is configured as a module, allows remote attackers to cause a denial of service (OOPS) by sending a packet during module loading.

linux linux_kernel
0.03EPSS
CVE-2019-19080
Medium 5.9

Four memory leaks in the nfp_flower_spawn_phy_reprs() function in drivers/net/ethernet/netronome/nfp/flower/main.c in the Linux kernel before 5.3.4 allow attackers to cause a denial of service (memory consumption), aka CID-8572cea1461a.

linux linux_kernel · opensuse leap
0.03EPSS
CVE-2011-1573
Medium 5.9

net/sctp/sm_make_chunk.c in the Linux kernel before 2.6.34, when addip_enable and auth_enable are used, does not consider the amount of zero padding during calculation of chunk lengths for (1) INIT and (2) INIT ACK chunks, which allows remote attackers to caus…

linux linux_kernel
0.03EPSS
CVE-2006-1624
High 7.8

The default configuration of syslogd in the Linux sysklogd package does not enable the -x (disable name lookups) option, which allows remote attackers to cause a denial of service (traffic amplification) via messages with spoofed source IP addresses.

linux linux_kernel
0.03EPSS
CVE-2018-16871
High 7.5

A flaw was found in the Linux kernel's NFS implementation, all versions 3.x and all versions 4.x up to 4.20. An attacker, who is able to mount an exported NFS filesystem, is able to trigger a null pointer dereference by using an invalid NFS sequence. This can …

linux linux_kernel · netapp cloud_backup · netapp h300e_firmware · netapp h300s_firmware · and 16 more
0.03EPSS
CVE-2010-1088
Medium 5.4

fs/namei.c in Linux kernel 2.6.18 through 2.6.34 does not always follow NFS automount "symlinks," which allows attackers to have an unknown impact, related to LOOKUP_FOLLOW.

linux linux_kernel
0.03EPSS
CVE-2004-0626
Medium 5.0

The tcp_find_option function of the netfilter subsystem in Linux kernel 2.6, when using iptables and TCP options rules, allows remote attackers to cause a denial of service (CPU consumption by infinite loop) via a large option length that produces a negative i…

conectiva linux · gentoo linux · linux linux_kernel · suse suse_linux
0.03EPSS
CVE-2001-1572
High 7.5

The MAC module in Netfilter in Linux kernel 2.4.1 through 2.4.11, when configured to filter based on MAC addresses, allows remote attackers to bypass packet filters via small packets.

linux linux_kernel
0.03EPSS
CVE-2017-18379
Critical 9.8

In the Linux kernel before 4.14, an out of boundary access happened in drivers/nvme/target/fc.c.

linux linux_kernel
0.03EPSS
CVE-2019-19046
Medium 6.5

A memory leak in the __ipmi_bmc_register() function in drivers/char/ipmi/ipmi_msghandler.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering ida_simple_get() failure, aka CID-4aa7afb0ee20. NOTE:…

fedoraproject fedora · linux linux_kernel · opensuse leap
0.03EPSS
CVE-2014-2672
High 7.1

Race condition in the ath_tx_aggr_sleep function in drivers/net/wireless/ath/ath9k/xmit.c in the Linux kernel before 3.13.7 allows remote attackers to cause a denial of service (system crash) via a large amount of network traffic that triggers certain list del…

linux linux_kernel
0.03EPSS
CVE-2017-1000371
High 7.8

The offset2lib patch as used by the Linux Kernel contains a vulnerability, if RLIMIT_STACK is set to RLIM_INFINITY and 1 Gigabyte of memory is allocated (the maximum under the 1/4 restriction) then the stack will be grown down to 0x80000000, and as the PIE bin…

linux linux_kernel
0.03EPSS
CVE-2013-7445
High 7.8

The Direct Rendering Manager (DRM) subsystem in the Linux kernel through 4.x mishandles requests for Graphics Execution Manager (GEM) objects, which allows context-dependent attackers to cause a denial of service (memory consumption) via an application that pr…

linux linux_kernel
0.03EPSS
CVE-2005-4886
High 7.8

The selinux_parse_skb_ipv6 function in security/selinux/hooks.c in the Linux kernel before 2.6.12-rc4 allows remote attackers to cause a denial of service (OOPS) via vectors associated with an incorrect call to the ipv6_skip_exthdr function.

linux linux_kernel
0.03EPSS
CVE-2019-16714
High 7.5

In the Linux kernel before 5.2.14, rds6_inc_info_copy in net/rds/recv.c allows attackers to obtain sensitive information from kernel stack memory because tos and flags fields are not initialized.

canonical ubuntu_linux · f5 traffix_signaling_delivery_controller · linux linux_kernel
0.03EPSS
CVE-2018-14609
Medium 5.5

An issue was discovered in the Linux kernel through 4.17.10. There is an invalid pointer dereference in __del_reloc_root() in fs/btrfs/relocation.c when mounting a crafted btrfs image, related to removing reloc rb_trees when reloc control has not been initiali…

canonical ubuntu_linux · debian debian_linux · linux linux_kernel
0.03EPSS
CVE-2002-0046
Medium 5.0

Linux kernel, and possibly other operating systems, allows remote attackers to read portions of memory via a series of fragmented ICMP packets that generate an ICMP TTL Exceeded response, which includes portions of the memory in the response packet.

linux linux_kernel
0.03EPSS
CVE-2012-2100
High 7.1

The ext4_fill_flex_info function in fs/ext4/super.c in the Linux kernel before 3.2.2, on the x86 platform and unspecified other platforms, allows user-assisted remote attackers to trigger inconsistent filesystem-groups data and possibly cause a denial of servi…

linux linux_kernel
0.03EPSS
CVE-2011-4087
High 7.5

The br_parse_ip_options function in net/bridge/br_netfilter.c in the Linux kernel before 2.6.39 does not properly initialize a certain data structure, which allows remote attackers to cause a denial of service by leveraging connectivity to a network interface …

linux linux_kernel
0.03EPSS
CVE-2008-3792
High 7.1

net/sctp/socket.c in the Stream Control Transmission Protocol (sctp) implementation in the Linux kernel before 2.6.26.4 does not verify that the SCTP-AUTH extension is enabled before proceeding with SCTP-AUTH API functions, which allows attackers to cause a de…

linux linux_kernel
0.03EPSS
CVE-2008-4618
High 7.8

The Stream Control Transmission Protocol (sctp) implementation in the Linux kernel before 2.6.27 does not properly handle a protocol violation in which a parameter has an invalid length, which allows attackers to cause a denial of service (panic) via unspecifi…

linux linux_kernel
0.03EPSS
CVE-2010-4258
Medium 6.2

The do_exit function in kernel/exit.c in the Linux kernel before 2.6.36.2 does not properly handle a KERNEL_DS get_fs value, which allows local users to bypass intended access_ok restrictions, overwrite arbitrary kernel memory locations, and gain privileges by…

fedoraproject fedora · linux linux_kernel · opensuse opensuse · suse linux_enterprise_desktop · and 3 more
0.03EPSS