imPC@ndo IT

Linux vulnerabilities

14.775 CVE

CVE-2019-14899
High 7.4

A vulnerability was discovered in Linux, FreeBSD, OpenBSD, MacOS, iOS, and Android that allows a malicious access point, or an adjacent user, to determine if a connected user is using a VPN, make positive inferences about the websites they are visiting, and de…

apple ipados · apple iphone_os · apple mac_os_x · apple macos · and 4 more
0.01EPSS
CVE-2005-3857
Medium 4.9

The time_out_leases function in locks.c for Linux kernel before 2.6.15-rc3 allows local users to cause a denial of service (kernel log message consumption) by causing a large number of broken leases, which is recorded to the log using the printk function.

linux linux_kernel
0.01EPSS
CVE-2011-3363
Medium 6.5

The setup_cifs_sb function in fs/cifs/connect.c in the Linux kernel before 2.6.39 does not properly handle DFS referrals, which allows remote CIFS servers to cause a denial of service (system crash) by placing a referral at the root of a share.

linux linux_kernel · redhat enterprise_linux
0.01EPSS
CVE-2024-26690
High 7.5

In the Linux kernel, the following vulnerability has been resolved: net: stmmac: protect updates of 64-bit statistics counters As explained by a comment in <linux/u64_stats_sync.h>, write side of struct u64_stats_sync must ensure mutual exclusion, or one seq…

linux linux_kernel
0.01EPSS
CVE-2022-2639
High 7.8

An integer coercion error was found in the openvswitch kernel module. Given a sufficiently large number of actions, while copying and reserving memory for a new action of a new flow, the reserve_sfa_size() function does not return -EMSGSIZE as expected, potent…

linux linux_kernel · redhat enterprise_linux
0.01EPSS
CVE-2016-4569
Medium 5.5

The snd_timer_user_params function in sound/core/timer.c in the Linux kernel through 4.6 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel stack memory via crafted use of the ALSA timer interface…

canonical ubuntu_linux · linux linux_kernel · novell suse_linux_enterprise_debuginfo · novell suse_linux_enterprise_desktop · and 6 more
0.01EPSS
CVE-2023-4458
Medium 4.0

A flaw was found within the parsing of extended attributes in the kernel ksmbd module. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this to …

linux linux_kernel
0.01EPSS
CVE-2022-42720
High 7.8

Various refcounting bugs in the multi-BSS handling in the mac80211 stack in the Linux kernel 5.1 through 5.19.x before 5.19.16 could be used by local attackers (able to inject WLAN frames) to trigger use-after-free conditions to potentially execute code.

debian debian_linux · fedoraproject fedora · linux linux_kernel
0.01EPSS
CVE-2015-8967
High 7.8

arch/arm64/kernel/sys.c in the Linux kernel before 4.0 allows local users to bypass the "strict page permissions" protection mechanism and modify the system-call table, and consequently gain privileges, by leveraging write access.

google android · linux linux_kernel
0.01EPSS
CVE-2010-0307
Medium 4.7

The load_elf_binary function in fs/binfmt_elf.c in the Linux kernel before 2.6.32.8 on the x86_64 platform does not ensure that the ELF interpreter is available before a call to the SET_PERSONALITY macro, which allows local users to cause a denial of service (…

canonical ubuntu_linux · debian debian_linux · linux linux_kernel
0.01EPSS
CVE-2008-4113
Medium 4.7

The sctp_getsockopt_hmac_ident function in net/sctp/socket.c in the Stream Control Transmission Protocol (sctp) implementation in the Linux kernel before 2.6.26.4, when the SCTP-AUTH extension is enabled, relies on an untrusted length value to limit copying of…

linux linux_kernel
0.01EPSS
CVE-2020-14381
High 7.8

A flaw was found in the Linux kernel’s futex implementation. This flaw allows a local attacker to corrupt system memory or escalate their privileges when creating a futex on a filesystem that is about to be unmounted. The highest threat from this vulnerability…

linux linux_kernel
0.01EPSS
CVE-2010-1636
Low 2.1

The btrfs_ioctl_clone function in fs/btrfs/ioctl.c in the btrfs functionality in the Linux kernel 2.6.29 through 2.6.32, and possibly other versions, does not ensure that a cloned file descriptor has been opened for reading, which allows local users to read se…

linux linux_kernel
0.01EPSS
CVE-2003-0501
Low 2.1

The /proc filesystem in Linux allows local users to obtain sensitive information by opening various entries in /proc/self before executing a setuid program, which causes the program to fail to change the ownership and permissions of those entries.

linux linux_kernel
0.01EPSS
CVE-2024-26901
Medium 5.5

In the Linux kernel, the following vulnerability has been resolved: do_sys_name_to_handle(): use kzalloc() to fix kernel-infoleak syzbot identified a kernel information leak vulnerability in do_sys_name_to_handle() and issued the following report [1]. [1] "…

linux linux_kernel
0.01EPSS
CVE-2024-26731
Medium 5.3

In the Linux kernel, the following vulnerability has been resolved: bpf, sockmap: Fix NULL pointer dereference in sk_psock_verdict_data_ready() syzbot reported the following NULL pointer dereference issue [1]: BUG: kernel NULL pointer dereference, address…

linux linux_kernel
0.01EPSS
CVE-2005-2800
Low 2.1

Memory leak in the seq_file implementation in the SCSI procfs interface (sg.c) in Linux kernel 2.6.13 and earlier allows local users to cause a denial of service (memory consumption) via certain repeated reads from the /proc/scsi/sg/devices file, which is not …

linux linux_kernel
0.01EPSS
CVE-2021-42327
Medium 6.7

dp_link_settings_write in drivers/gpu/drm/amd/display/amdgpu_dm/amdgpu_dm_debugfs.c in the Linux kernel through 5.14.14 allows a heap-based buffer overflow by an attacker who can write a string to the AMD GPU display drivers debug filesystem. There are no chec…

fedoraproject fedora · linux linux_kernel · netapp h300e_firmware · netapp h300s_firmware · and 6 more
0.01EPSS
CVE-2024-49569
High 7.5

In the Linux kernel, the following vulnerability has been resolved: nvme-rdma: unquiesce admin_q before destroy it Kernel will hang on destroy admin_q while we create ctrl failed, such as following calltrace: PID: 23644 TASK: ff2d52b40f439fc0 CPU: 2 …

linux linux_kernel
0.01EPSS
CVE-2024-38558
Critical 10.0

In the Linux kernel, the following vulnerability has been resolved: net: openvswitch: fix overwriting ct original tuple for ICMPv6 OVS_PACKET_CMD_EXECUTE has 3 main attributes: - OVS_PACKET_ATTR_KEY - Packet metadata in a netlink format. - OVS_PACKET_ATTR_…

linux linux_kernel
0.01EPSS
CVE-2024-27398
High 8.0

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: Fix use-after-free bugs caused by sco_sock_timeout When the sco connection is established and then, the sco socket is releasing, timeout_work will be scheduled to judge whether th…

debian debian_linux · fedoraproject fedora · linux linux_kernel
0.01EPSS
CVE-2013-1860
Medium 6.9

Heap-based buffer overflow in the wdm_in_callback function in drivers/usb/class/cdc-wdm.c in the Linux kernel before 3.8.4 allows physically proximate attackers to cause a denial of service (system crash) or possibly execute arbitrary code via a crafted cdc-wd…

canonical ubuntu_linux · linux linux_kernel
0.01EPSS
CVE-2007-4573
High 7.2

The IA32 system call emulation functionality in Linux kernel 2.4.x and 2.6.x before 2.6.22.7, when running on the x86_64 architecture, does not zero extend the eax register after the 32bit entry path to ptrace is used, which might allow local users to gain pri…

linux linux_kernel
0.01EPSS
CVE-2021-33034
High 7.8

In the Linux kernel before 5.12.4, net/bluetooth/hci_event.c has a use-after-free when destroying an hci_chan, aka CID-5c4c8c954409. This leads to writing an arbitrary value.

debian debian_linux · fedoraproject fedora · linux linux_kernel
0.01EPSS
CVE-2016-8480
High 7.0

An elevation of privilege vulnerability in the Qualcomm Secure Execution Environment Communicator driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first require…

google android · linux linux_kernel
0.01EPSS