imPC@ndo EN

Vulnerabilità Linux

14.775 CVE

CVE-2013-2897
Media 4.7

Multiple array index errors in drivers/hid/hid-multitouch.c in the Human Interface Device (HID) subsystem in the Linux kernel through 3.11, when CONFIG_HID_MULTITOUCH is enabled, allow physically proximate attackers to cause a denial of service (heap memory co…

linux linux_kernel
0.00EPSS
CVE-2009-1895
Alta 7.2

The personality subsystem in the Linux kernel before 2.6.31-rc3 has a PER_CLEAR_ON_SETID setting that does not clear the ADDR_COMPAT_LAYOUT and MMAP_PAGE_ZERO flags when executing a setuid or setgid program, which makes it easier for local users to leverage th…

canonical ubuntu_linux · debian debian_linux · linux linux_kernel
0.00EPSS
CVE-2007-6434
Bassa 2.1

Linux kernel 2.6.23 allows local users to create low pages in virtual userspace memory and bypass mmap_min_addr protection via a crafted executable file that calls the do_brk function.

linux linux_kernel
0.00EPSS
CVE-2025-39841
Critica 9.8

In the Linux kernel, the following vulnerability has been resolved: scsi: lpfc: Fix buffer free/clear order in deferred receive path Fix a use-after-free window by correcting the buffer release sequence in the deferred receive path. The code freed the RQ buf…

debian debian_linux · linux linux_kernel
0.00EPSS
CVE-2017-6347
Alta 7.8

The ip_cmsg_recv_checksum function in net/ipv4/ip_sockglue.c in the Linux kernel before 4.10.1 has incorrect expectations about skb data layout, which allows local users to cause a denial of service (buffer over-read) or possibly have unspecified other impact …

linux linux_kernel
0.00EPSS
CVE-2009-3288
Media 4.9

The sg_build_indirect function in drivers/scsi/sg.c in Linux kernel 2.6.28-rc1 through 2.6.31-rc8 uses an incorrect variable when accessing an array, which allows local users to cause a denial of service (kernel OOPS and NULL pointer dereference), as demonstra…

kernel linux_kernel · linux linux_kernel
0.00EPSS
CVE-2006-1525
Media 4.9

ip_route_input in Linux kernel 2.6 before 2.6.16.8 allows local users to cause a denial of service (panic) via a request for a route for a multicast IP address, which triggers a null dereference.

linux linux_kernel
0.00EPSS
CVE-2006-1522
Media 4.9

The sys_add_key function in the keyring code in Linux kernel 2.6.16.1 and 2.6.17-rc1, and possibly earlier versions, allows local users to cause a denial of service (OOPS) via keyctl requests that add a key to a user key instead of a keyring key, which causes …

linux linux_kernel
0.00EPSS
CVE-2026-31717
Alta 8.8

In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate owner of durable handle on reconnect Currently, ksmbd does not verify if the user attempting to reconnect to a durable handle is the same user who originally opened the file.…

linux linux_kernel
0.00EPSS
CVE-2025-37935
Critica 9.8

In the Linux kernel, the following vulnerability has been resolved: net: ethernet: mtk_eth_soc: fix SER panic with 4GB+ RAM If the mtk_poll_rx() function detects the MTK_RESETTING flag, it will jump to release_desc and refill the high word of the SDP on the …

linux linux_kernel
0.00EPSS
CVE-2023-3141
Alta 7.1

A use-after-free flaw was found in r592_remove in drivers/memstick/host/r592.c in media access in the Linux Kernel. This flaw allows a local attacker to crash the system at device disconnect, possibly leading to a kernel information leak.

debian debian_linux · linux linux_kernel · netapp hci_baseboard_management_controller
0.00EPSS
CVE-2017-17862
Media 5.5

kernel/bpf/verifier.c in the Linux kernel through 4.14.8 ignores unreachable code, even though it would still be processed by JIT compilers. This behavior, also considered an improper branch-pruning logic issue, could possibly be used by local users for denial…

debian debian_linux · linux linux_kernel
0.00EPSS
CVE-2016-9576
Alta 7.8

The blk_rq_map_user_iov function in block/blk-map.c in the Linux kernel before 4.8.14 does not properly restrict the type of iterator, which allows local users to read or write to arbitrary kernel memory locations or cause a denial of service (use-after-free) …

linux linux_kernel
0.00EPSS
CVE-2015-7884
Bassa 2.3

The vivid_fb_ioctl function in drivers/media/platform/vivid/vivid-osd.c in the Linux kernel through 4.3.3 does not initialize a certain structure member, which allows local users to obtain sensitive information from kernel memory via a crafted application.

linux linux_kernel
0.00EPSS
CVE-2011-1759
Media 6.2

Integer overflow in the sys_oabi_semtimedop function in arch/arm/kernel/sys_oabi-compat.c in the Linux kernel before 2.6.39 on the ARM platform, when CONFIG_OABI_COMPAT is enabled, allows local users to gain privileges or cause a denial of service (heap memory…

linux linux_kernel
0.00EPSS
CVE-2005-3356
Bassa 2.1

The mq_open system call in Linux kernel 2.6.9, in certain situations, can decrement a counter twice ("double decrement") as a result of multiple calls to the mntput function when the dentry_open function call fails, which allows local users to cause a denial o…

linux linux_kernel
0.00EPSS
CVE-2005-1762
Bassa 2.1

The ptrace call in the Linux kernel 2.6.8.1 and 2.6.10 for the AMD64 platform allows local users to cause a denial of service (kernel crash) via a "non-canonical" address.

linux linux_kernel
0.00EPSS
CVE-2005-0756
Bassa 2.1

ptrace in Linux kernel 2.6.8.1 does not properly verify addresses on the amd64 platform, which allows local users to cause a denial of service (kernel crash).

linux linux_kernel
0.00EPSS
CVE-2005-0135
Bassa 2.1

The unw_unwind_to_user function in unwind.c on Itanium (ia64) architectures in Linux kernel 2.6 allows local users to cause a denial of service (system crash).

linux linux_kernel
0.00EPSS
CVE-2025-21646
Alta 7.5

In the Linux kernel, the following vulnerability has been resolved: afs: Fix the maximum cell name length The kafs filesystem limits the maximum length of a cell to 256 bytes, but a problem occurs if someone actually does that: kafs tries to create a directo…

linux linux_kernel
0.00EPSS
CVE-2021-20226
Alta 7.8

A use-after-free flaw was found in the io_uring in Linux kernel, where a local attacker with a user privilege could cause a denial of service problem on the system The issue results from the lack of validating the existence of an object prior to performing ope…

linux linux_kernel · netapp cloud_backup
0.00EPSS
CVE-2019-14898
Alta 7.0

The fix for CVE-2019-11599, affecting the Linux kernel before 5.0.10 was not complete. A local user could use this flaw to obtain sensitive information, cause a denial of service, or possibly have other unspecified impacts by triggering a race condition with m…

linux linux_kernel · redhat enterprise_mrg
0.00EPSS
CVE-2019-16234
Media 4.7

drivers/net/wireless/intel/iwlwifi/pcie/trans.c in the Linux kernel 5.2.14 does not check the alloc_workqueue return value, leading to a NULL pointer dereference.

canonical ubuntu_linux · linux linux_kernel · opensuse leap
0.00EPSS
CVE-2017-17449
Media 4.7

The __netlink_deliver_tap_skb function in net/netlink/af_netlink.c in the Linux kernel through 4.14.4, when CONFIG_NLMON is enabled, does not restrict observations of Netlink messages to a single net namespace, which allows local users to obtain sensitive info…

linux linux_kernel
0.00EPSS
CVE-2017-13695
Media 5.5

The acpi_ns_evaluate() function in drivers/acpi/acpica/nseval.c in the Linux kernel through 4.12.9 does not flush the operand cache and causes a kernel stack dump, which allows local users to obtain sensitive information from kernel memory and bypass the KASLR…

linux linux_kernel
0.00EPSS