imPC@ndo IT

Linux vulnerabilities

14.775 CVE

CVE-2023-1194
High 7.1

An out-of-bounds (OOB) memory read flaw was found in parse_lease_state in the KSMBD implementation of the in-kernel samba server and CIFS in the Linux kernel. When an attacker sends the CREATE command with a malformed payload to KSMBD, due to a missing check o…

fedoraproject fedora · linux linux_kernel
0.01EPSS
CVE-2011-3191
High 8.8

Integer signedness error in the CIFSFindNext function in fs/cifs/cifssmb.c in the Linux kernel before 3.1 allows remote CIFS servers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a large length value in a respon…

linux linux_kernel · redhat enterprise_linux
0.01EPSS
CVE-2017-0330
Medium 4.7

An information disclosure vulnerability in the NVIDIA crypto driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it first requires compromising a privileged process. Product…

linux linux_kernel
0.01EPSS
CVE-2022-29968
High 7.8

An issue was discovered in the Linux kernel through 5.17.5. io_rw_init_file in fs/io_uring.c lacks initialization of kiocb->private.

fedoraproject fedora · linux linux_kernel · netapp h300s_firmware · netapp h410c_firmware · and 4 more
0.01EPSS
CVE-2021-29155
Medium 5.5

An issue was discovered in the Linux kernel through 5.11.x. kernel/bpf/verifier.c performs undesirable out-of-bounds speculation on pointer arithmetic, leading to side-channel attacks that defeat Spectre mitigations and obtain sensitive information from kernel…

debian debian_linux · fedoraproject fedora · linux linux_kernel
0.01EPSS
CVE-2024-49997
High 7.5

In the Linux kernel, the following vulnerability has been resolved: net: ethernet: lantiq_etop: fix memory disclosure When applying padding, the buffer is not zeroed, which results in memory disclosure. The mentioned data is observed on the wire. This patch …

linux linux_kernel
0.01EPSS
CVE-2018-18281
High 7.8

Since Linux kernel version 3.2, the mremap() syscall performs TLB flushes after dropping pagetable locks. If a syscall such as ftruncate() removes entries from the pagetables of a task that is in the middle of mremap(), a stale TLB entry can remain for a short…

canonical ubuntu_linux · debian debian_linux · linux linux_kernel
0.01EPSS
CVE-2025-37778
Critical 9.8

In the Linux kernel, the following vulnerability has been resolved: ksmbd: Fix dangling pointer in krb_authenticate krb_authenticate frees sess->user and does not set the pointer to NULL. It calls ksmbd_krb5_authenticate to reinitialise sess->user but that f…

debian debian_linux · linux linux_kernel
0.01EPSS
CVE-2005-3257
Medium 4.6

The VT implementation (vt_ioctl.c) in Linux kernel 2.6.12, and possibly other versions including 2.6.14.4, allows local users to use the KDSKBSENT ioctl on terminals of other users and gain privileges, as demonstrated by modifying key bindings using loadkeys.

linux linux_kernel
0.01EPSS
CVE-2022-25375
Medium 5.5

An issue was discovered in drivers/usb/gadget/function/rndis.c in the Linux kernel before 5.16.10. The RNDIS USB gadget lacks validation of the size of the RNDIS_MSG_SET command. Attackers can obtain sensitive information from kernel memory.

debian debian_linux · linux linux_kernel
0.01EPSS
CVE-2022-25265
High 7.8

In the Linux kernel through 5.16.10, certain binary files may have the exec-all attribute if they were built in approximately 2003 (e.g., with GCC 3.2.2 and Linux kernel 2.4.20). This can cause execution of bytes located in supposedly non-executable regions of…

linux linux_kernel · netapp baseboard_management_controller_firmware · netapp h300e_firmware · netapp h300s_firmware · and 5 more
0.01EPSS
CVE-2017-0586
Medium 4.7

An information disclosure vulnerability in the Qualcomm sound driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it first requires compromising a privileged process. Produc…

linux linux_kernel
0.01EPSS
CVE-2017-0584
Medium 4.7

An information disclosure vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it first requires compromising a privileged process. Produc…

linux linux_kernel
0.01EPSS
CVE-2023-1193
Medium 6.5

A use-after-free flaw was found in setup_async_work in the KSMBD implementation of the in-kernel samba server and CIFS in the Linux kernel. This issue could allow an attacker to crash the system by accessing freed work.

linux linux_kernel
0.01EPSS
CVE-2005-4605
Low 2.1

The procfs code (proc_misc.c) in Linux 2.6.14.3 and other versions before 2.6.15 allows attackers to read sensitive kernel memory via unspecified vectors in which a signed value is added to an unsigned value.

linux linux_kernel
0.01EPSS
CVE-2017-0537
Medium 4.7

An information disclosure vulnerability in the kernel USB gadget driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it first requires compromising a privileged process. Pro…

linux linux_kernel
0.01EPSS
CVE-2016-8407
Medium 4.7

An information disclosure vulnerability in kernel components including the ION subsystem, Binder, USB driver and networking subsystem could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate be…

linux linux_kernel
0.01EPSS
CVE-2016-8406
Medium 4.7

An information disclosure vulnerability in kernel components including the ION subsystem, Binder, USB driver and networking subsystem could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate be…

linux linux_kernel
0.01EPSS
CVE-2016-8404
Medium 4.7

An information disclosure vulnerability in kernel components including the ION subsystem, Binder, USB driver and networking subsystem could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate be…

linux linux_kernel
0.01EPSS
CVE-2016-8403
Medium 4.7

An information disclosure vulnerability in kernel components including the ION subsystem, Binder, USB driver and networking subsystem could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate be…

linux linux_kernel
0.01EPSS
CVE-2016-8402
Medium 4.7

An information disclosure vulnerability in kernel components including the ION subsystem, Binder, USB driver and networking subsystem could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate be…

linux linux_kernel
0.01EPSS
CVE-2016-8401
Medium 4.7

An information disclosure vulnerability in kernel components including the ION subsystem, Binder, USB driver and networking subsystem could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate be…

linux linux_kernel
0.01EPSS
CVE-2010-4077
Low 1.9

The ntty_ioctl_tiocgicount function in drivers/char/nozomi.c in the Linux kernel 2.6.36.1 and earlier does not properly initialize a certain structure member, which allows local users to obtain potentially sensitive information from kernel stack memory via a T…

linux linux_kernel
0.01EPSS
CVE-2013-1773
Medium 6.2

Buffer overflow in the VFAT filesystem implementation in the Linux kernel before 3.3 allows local users to gain privileges or cause a denial of service (system crash) via a VFAT write operation on a filesystem with the utf8 mount option, which is not properly …

linux linux_kernel · redhat enterprise_linux · redhat enterprise_mrg
0.01EPSS
CVE-2004-1335
Low 2.1

Memory leak in the ip_options_get function in the Linux kernel before 2.6.10 allows local users to cause a denial of service (memory consumption) by repeatedly calling the ip_cmsg_send function.

linux linux_kernel · redhat fedora_core · redhat linux
0.01EPSS