imPC@ndo EN

Vulnerabilità Linux

14.775 CVE

CVE-2011-2898
Media 5.5

net/packet/af_packet.c in the Linux kernel before 2.6.39.3 does not properly restrict user-space access to certain packet data structures associated with VLAN Tag Control Information, which allows local users to obtain potentially sensitive information via a c…

linux linux_kernel
0.00EPSS
CVE-2011-2203
Bassa 2.1

The hfs_find_init function in the Linux kernel 2.6 allows local users to cause a denial of service (NULL pointer dereference and Oops) by mounting an HFS file system with a malformed MDB extent record.

linux linux_kernel
0.00EPSS
CVE-2008-4445
Media 4.7

The sctp_auth_ep_set_hmacs function in net/sctp/auth.c in the Stream Control Transmission Protocol (sctp) implementation in the Linux kernel before 2.6.26.4, when the SCTP-AUTH extension is enabled, does not verify that the identifier index is within the bound…

linux linux_kernel
0.00EPSS
CVE-2006-1056
Bassa 2.1

The Linux kernel before 2.6.16.9 and the FreeBSD kernel, when running on AMD64 and other 7th and 8th generation AuthenticAMD processors, only save/restore the FOP, FIP, and FDP x87 registers in FXSAVE/FXRSTOR when an exception is pending, which allows one proc…

freebsd freebsd · linux linux_kernel
0.00EPSS
CVE-2005-3784
Media 4.9

The auto-reap of child processes in Linux kernel 2.6 before 2.6.15 includes processes with ptrace attached, which leads to a dangling ptrace reference and allows local users to cause a denial of service (crash) and gain root privileges.

linux linux_kernel
0.00EPSS
CVE-2005-3105
Bassa 2.1

The mprotect code (mprotect.c) in Linux 2.6 on Itanium IA64 Montecito processors does not properly maintain cache coherency as required by the architecture, which allows local users to cause a denial of service and possibly corrupt data by modifying PTE protec…

linux linux_kernel
0.00EPSS
CVE-2005-0210
Media 4.9

Netfilter in the Linux kernel 2.6.8.1 allows local users to cause a denial of service (memory consumption) via certain packet fragments that are reassembled twice, which causes a data structure to be allocated twice.

linux linux_kernel
0.00EPSS
CVE-2025-22043
Alta 8.1

In the Linux kernel, the following vulnerability has been resolved: ksmbd: add bounds check for durable handle context Add missing bounds check for durable handle context.

linux linux_kernel
0.00EPSS
CVE-2024-46799
Alta 7.5

In the Linux kernel, the following vulnerability has been resolved: net: ethernet: ti: am65-cpsw: Fix NULL dereference on XDP_TX If number of TX queues are set to 1 we get a NULL pointer dereference during XDP_TX. ~# ethtool -L eth0 tx 1 ~# ./xdp-trafficgen…

linux linux_kernel
0.00EPSS
CVE-2014-9683
Bassa 3.6

Off-by-one error in the ecryptfs_decode_from_filename function in fs/ecryptfs/crypto.c in the eCryptfs subsystem in the Linux kernel before 3.18.2 allows local users to cause a denial of service (buffer overflow and system crash) or possibly gain privileges vi…

canonical ubuntu_linux · linux linux_kernel
0.00EPSS
CVE-2010-0410
Media 4.9

drivers/connector/connector.c in the Linux kernel before 2.6.32.8 allows local users to cause a denial of service (memory consumption and system crash) by sending the kernel many NETLINK_CONNECTOR messages.

canonical ubuntu_linux · debian debian_linux · linux linux_kernel
0.00EPSS
CVE-2006-4145
Media 4.9

The Universal Disk Format (UDF) filesystem driver in Linux kernel 2.6.17 and earlier allows local users to cause a denial of service (hang and crash) via certain operations involving truncated files, as demonstrated via the dd command.

linux linux_kernel
0.00EPSS
CVE-2023-53335
Alta 7.5

In the Linux kernel, the following vulnerability has been resolved: RDMA/cxgb4: Fix potential null-ptr-deref in pass_establish() If get_ep_from_tid() fails to lookup non-NULL value for ep, ep is dereferenced later regardless of whether it is empty. This patc…

linux linux_kernel
0.00EPSS
CVE-2024-56717
Alta 7.5

In the Linux kernel, the following vulnerability has been resolved: net: mscc: ocelot: fix incorrect IFH SRC_PORT field in ocelot_ifh_set_basic() Packets injected by the CPU should have a SRC_PORT field equal to the CPU port module index in the Analyzer bloc…

linux linux_kernel
0.00EPSS
CVE-2024-40910
Alta 8.8

In the Linux kernel, the following vulnerability has been resolved: ax25: Fix refcount imbalance on inbound connections When releasing a socket in ax25_release(), we call netdev_put() to decrease the refcount on the associated ax.25 device. However, the exec…

linux linux_kernel
0.00EPSS
CVE-2019-19054
Media 4.7

A memory leak in the cx23888_ir_probe() function in drivers/media/pci/cx23885/cx23888-ir.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering kfifo_alloc() failures, aka CID-a7b2df76b42b.

broadcom brocade_fabric_operating_system_firmware · canonical ubuntu_linux · fedoraproject fedora · linux linux_kernel · e altri 14
0.00EPSS
CVE-2019-12378
Media 5.5

An issue was discovered in ip6_ra_control in net/ipv6/ipv6_sockglue.c in the Linux kernel through 5.1.5. There is an unchecked kmalloc of new_ra, which might allow an attacker to cause a denial of service (NULL pointer dereference and system crash). NOTE: This…

linux linux_kernel
0.00EPSS
CVE-2016-5828
Alta 7.8

The start_thread function in arch/powerpc/kernel/process.c in the Linux kernel through 4.6.3 on powerpc platforms mishandles transactional state, which allows local users to cause a denial of service (invalid process state or TM Bad Thing exception, and system…

canonical ubuntu_linux · debian debian_linux · linux linux_kernel · novell suse_linux_enterprise_real_time_extension
0.00EPSS
CVE-2013-4515
Media 4.9

The bcm_char_ioctl function in drivers/staging/bcm/Bcmchar.c in the Linux kernel before 3.12 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel memory via an IOCTL_BCM_GET_DEVICE_DRIVER_INFO ioctl…

linux linux_kernel
0.00EPSS
CVE-2008-2137
Media 4.4

The (1) sparc_mmap_check function in arch/sparc/kernel/sys_sparc.c and the (2) sparc64_mmap_check function in arch/sparc64/kernel/sys_sparc.c, in the Linux kernel 2.4 before 2.4.36.5 and 2.6 before 2.6.25.3, omit some virtual-address range (aka span) checks wh…

debian debian_linux · linux linux_kernel
0.00EPSS
CVE-2005-3276
Bassa 2.1

The sys_get_thread_area function in process.c in Linux 2.6 before 2.6.12.4 and 2.6.13 does not clear a data structure before copying it to userspace, which might allow a user process to obtain sensitive information.

linux linux_kernel
0.00EPSS
CVE-2005-2555
Media 4.6

Linux kernel 2.6.x does not properly restrict socket policy access to users with the CAP_NET_ADMIN capability, which could allow local users to conduct unauthorized activities via (1) ipv4/ip_sockglue.c and (2) ipv6/ipv6_sockglue.c.

debian debian_linux · linux linux_kernel
0.00EPSS
CVE-2005-0749
Alta 7.2

The load_elf_library in the Linux kernel before 2.6.11.6 allows local users to cause a denial of service (kernel crash) via a crafted ELF library or executable, which causes a free of an invalid pointer.

linux linux_kernel
0.00EPSS
CVE-2026-52983
Alta 7.5

In the Linux kernel, the following vulnerability has been resolved: net: airoha: fix BQL imbalance in TX path Fix a possible BQL imbalance in airoha_dev_xmit(), where inflight packets are accounted only for the AIROHA_NUM_TX_RING netdev TX queues. The queue …

linux linux_kernel
0.00EPSS
CVE-2023-53110
Alta 7.5

In the Linux kernel, the following vulnerability has been resolved: net/smc: fix NULL sndbuf_desc in smc_cdc_tx_handler() When performing a stress test on SMC-R by rmmod mlx5_ib driver during the wrk/nginx test, we found that there is a probability of trigge…

linux linux_kernel
0.00EPSS