imPC@ndo IT

Linux vulnerabilities

14.775 CVE

CVE-2018-10879
Medium 4.2

A flaw was found in the Linux kernel's ext4 filesystem. A local user can cause a use-after-free in ext4_xattr_set_entry function and a denial of service or unspecified other impact may occur by renaming a file in a crafted ext4 filesystem image.

canonical ubuntu_linux · debian debian_linux · linux linux_kernel · redhat enterprise_linux · and 3 more
0.01EPSS
CVE-2024-44946
High 7.8

In the Linux kernel, the following vulnerability has been resolved: kcm: Serialise kcm_sendmsg() for the same socket. syzkaller reported UAF in kcm_release(). [0] The scenario is 1. Thread A builds a skb with MSG_MORE and sets kcm->seq_skb. 2. Thread …

linux linux_kernel
0.01EPSS
CVE-2006-5701
Medium 4.9

Double free vulnerability in squashfs module in the Linux kernel 2.6.x, as used in Fedora Core 5 and possibly other distributions, allows local users to cause a denial of service by mounting a crafted squashfs filesystem.

linux linux_kernel · redhat fedora_core
0.01EPSS
CVE-2021-28972
Medium 6.7

In drivers/pci/hotplug/rpadlpar_sysfs.c in the Linux kernel through 5.11.8, the RPA PCI Hotplug driver has a user-tolerable buffer overflow when writing a new device name to the driver from userspace, allowing userspace to write data to the kernel stack frame …

fedoraproject fedora · linux linux_kernel · netapp cloud_backup · netapp fas\/aff_baseboard_management_controller · and 1 more
0.01EPSS
CVE-2012-5375
Medium 4.0

The CRC32C feature in the Btrfs implementation in the Linux kernel before 3.8-rc1 allows local users to cause a denial of service (prevention of file creation) by leveraging the ability to write to a directory important to the victim, and creating a file with …

linux linux_kernel
0.01EPSS
CVE-2021-20292
Medium 6.7

There is a flaw reported in the Linux kernel in versions before 5.9 in drivers/gpu/drm/nouveau/nouveau_sgdma.c in nouveau_sgdma_create_ttm in Nouveau DRM subsystem. The issue results from the lack of validating the existence of an object prior to performing op…

debian debian_linux · fedoraproject fedora · linux linux_kernel · redhat enterprise_linux
0.01EPSS
CVE-2022-49407
Critical 9.8

In the Linux kernel, the following vulnerability has been resolved: dlm: fix plock invalid read This patch fixes an invalid read showed by KASAN. A unlock will allocate a "struct plock_op" and a followed send_op() will append it to a global send_list data st…

linux linux_kernel
0.01EPSS
CVE-2009-3043
Medium 4.9

The tty_ldisc_hangup function in drivers/char/tty_ldisc.c in the Linux kernel 2.6.31-rc before 2.6.31-rc8 allows local users to cause a denial of service (system crash, sometimes preceded by a NULL pointer dereference) or possibly gain privileges via certain p…

linux linux_kernel
0.01EPSS
CVE-2022-3646
Low 3.1

A vulnerability, which was classified as problematic, has been found in Linux Kernel. This issue affects the function nilfs_attach_log_writer of the file fs/nilfs2/segment.c of the component BPF. The manipulation leads to memory leak. The attack may be initiat…

debian debian_linux · linux linux_kernel
0.01EPSS
CVE-2023-52776
High 8.8

In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix dfs-radar and temperature event locking The ath12k active pdevs are protected by RCU but the DFS-radar and temperature event handling code calling ath12k_mac_get_ar_by_pdev…

linux linux_kernel
0.01EPSS
CVE-2023-5717
High 7.8

A heap out-of-bounds write vulnerability in the Linux kernel's Linux Kernel Performance Events (perf) component can be exploited to achieve local privilege escalation. If perf_read_group() is called while an event's sibling_list is smaller than its child's si…

linux linux_kernel
0.01EPSS
CVE-2021-47107
Critical 9.8

In the Linux kernel, the following vulnerability has been resolved: NFSD: Fix READDIR buffer overflow If a client sends a READDIR count argument that is too small (say, zero), then the buffer size calculation in the new init_dirlist helper functions results …

linux linux_kernel
0.01EPSS
CVE-2017-0536
Medium 4.7

An information disclosure vulnerability in the Synaptics touchscreen driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it first requires compromising a privileged process.…

linux linux_kernel
0.01EPSS
CVE-2005-0750
High 7.2

The bluez_sock_create function in the Bluetooth stack for Linux kernel 2.4.6 through 2.4.30-rc1 and 2.6 through 2.6.11.5 allows local users to gain privileges via (1) socket or (2) socketpair call with a negative protocol value.

conectiva linux · linux linux_kernel · redhat enterprise_linux · redhat enterprise_linux_desktop · and 4 more
0.01EPSS
CVE-2015-9004
High 7.8

kernel/events/core.c in the Linux kernel before 3.19 mishandles counter grouping, which allows local users to gain privileges via a crafted application, related to the perf_pmu_register and perf_event_open functions.

google android · linux linux_kernel
0.01EPSS
CVE-2016-8481
High 7.0

An elevation of privilege vulnerability in the Qualcomm sound driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process.…

google android · linux linux_kernel
0.01EPSS
CVE-2016-8476
High 7.0

An elevation of privilege vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process.…

google android · linux linux_kernel
0.01EPSS
CVE-2016-8421
High 7.0

An elevation of privilege vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process.…

google android · linux linux_kernel
0.01EPSS
CVE-2016-8420
High 7.0

An elevation of privilege vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process.…

google android · linux linux_kernel
0.01EPSS
CVE-2016-8419
High 7.0

An elevation of privilege vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process.…

google android · linux linux_kernel
0.01EPSS
CVE-2024-0193
High 7.8

A use-after-free flaw was found in the netfilter subsystem of the Linux kernel. If the catchall element is garbage-collected when the pipapo set is removed, the element can be deactivated twice. This can cause a use-after-free issue on an NFT_CHAIN object or N…

linux linux_kernel · redhat codeready_linux_builder · redhat codeready_linux_builder_for_eus · redhat codeready_linux_builder_for_ibm_z_systems · and 18 more
0.01EPSS
CVE-2021-47023
High 8.2

In the Linux kernel, the following vulnerability has been resolved: net: marvell: prestera: fix port event handling on init For some reason there might be a crash during ports creation if port events are handling at the same time because fw may send initial…

linux linux_kernel
0.01EPSS
CVE-2024-26924
High 7.8

In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_set_pipapo: do not free live element Pablo reports a crash with large batches of elements with a back-to-back add/remove pattern. Quoting Pablo: add_elem("00000000") timeo…

debian debian_linux · linux linux_kernel
0.01EPSS
CVE-2019-15218
Medium 4.6

An issue was discovered in the Linux kernel before 5.1.8. There is a NULL pointer dereference caused by a malicious USB device in the drivers/media/usb/siano/smsusb.c driver.

canonical ubuntu_linux · debian debian_linux · linux linux_kernel · netapp active_iq_unified_manager · and 6 more
0.01EPSS
CVE-2017-18509
High 7.8

An issue was discovered in net/ipv6/ip6mr.c in the Linux kernel before 4.11. By setting a specific socket option, an attacker can control a pointer in kernel land and cause an inet_csk_listen_stop general protection fault, or potentially execute arbitrary code…

canonical ubuntu_linux · debian debian_linux · linux linux_kernel
0.01EPSS