imPC@ndo EN

Vulnerabilità Linux

14.775 CVE

CVE-2022-0494
Media 4.4

A kernel information leak flaw was identified in the scsi_ioctl function in drivers/scsi/scsi_ioctl.c in the Linux kernel. This flaw allows a local attacker with a special user privilege (CAP_SYS_ADMIN or CAP_SYS_RAWIO) to create issues with confidentiality.

debian debian_linux · linux linux_kernel
0.00EPSS
CVE-2021-45402
Media 5.5

The check_alu_op() function in kernel/bpf/verifier.c in the Linux kernel through v5.16-rc5 did not properly update bounds while handling the mov32 instruction, which allows local users to obtain potentially sensitive address information, aka a "pointer leak."

linux linux_kernel
0.00EPSS
CVE-2020-14385
Media 5.5

A flaw was found in the Linux kernel before 5.9-rc4. A failure of the file system metadata validator in XFS can cause an inode with a valid, user-creatable extended attribute to be flagged as corrupt. This can lead to the filesystem being shutdown, or otherwis…

canonical ubuntu_linux · debian debian_linux · linux linux_kernel
0.00EPSS
CVE-2020-8992
Media 5.5

ext4_protect_reserved_inode in fs/ext4/block_validity.c in the Linux kernel through 5.5.3 allows attackers to cause a denial of service (soft lockup) via a crafted journal size.

canonical ubuntu_linux · linux linux_kernel · netapp active_iq_unified_manager · netapp cloud_backup · e altri 6
0.00EPSS
CVE-2015-9289
Media 5.5

In the Linux kernel before 4.1.4, a buffer overflow occurs when checking userspace params in drivers/media/dvb-frontends/cx24116.c. The maximum size for a DiSEqC command is 6, according to the userspace API. However, the code allows larger values such as 23.

linux linux_kernel
0.00EPSS
CVE-2010-3080
Alta 7.2

Double free vulnerability in the snd_seq_oss_open function in sound/core/seq/oss/seq_oss_init.c in the Linux kernel before 2.6.36-rc4 might allow local users to cause a denial of service or possibly have unspecified other impact via an unsuccessful attempt to …

canonical ubuntu_linux · linux linux_kernel · opensuse opensuse · suse linux_enterprise_desktop · e altri 2
0.00EPSS
CVE-2010-1187
Media 4.9

The Transparent Inter-Process Communication (TIPC) functionality in Linux kernel 2.6.16-rc1 through 2.6.33, and possibly other versions, allows local users to cause a denial of service (kernel OOPS) by sending datagrams through AF_TIPC before entering network …

canonical ubuntu_linux · debian debian_linux · linux linux_kernel
0.00EPSS
CVE-2006-1855
Bassa 2.1

choose_new_parent in Linux kernel before 2.6.11.12 includes certain debugging code, which allows local users to cause a denial of service (panic) by causing certain circumstances involving termination of a parent process.

linux linux_kernel
0.00EPSS
CVE-2026-31739
Alta 8.8

In the Linux kernel, the following vulnerability has been resolved: crypto: tegra - Add missing CRYPTO_ALG_ASYNC The tegra crypto driver failed to set the CRYPTO_ALG_ASYNC on its asynchronous algorithms, causing the crypto API to select them for users that r…

linux linux_kernel
0.00EPSS
CVE-2026-31612
Alta 7.5

In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate EaNameLength in smb2_get_ea() smb2_get_ea() reads ea_req->EaNameLength from the client request and passes it directly to strncmp() as the comparison length without verifying …

linux linux_kernel
0.00EPSS
CVE-2025-37757
Alta 7.5

In the Linux kernel, the following vulnerability has been resolved: tipc: fix memory leak in tipc_link_xmit In case the backlog transmit queue for system-importance messages is overloaded, tipc_link_xmit() returns -ENOBUFS but the skb list is not purged. Thi…

debian debian_linux · linux linux_kernel
0.00EPSS
CVE-2023-39193
Media 6.1

A flaw was found in the Netfilter subsystem in the Linux kernel. The sctp_mt_check did not validate the flag_count field. This flaw allows a local privileged (CAP_NET_ADMIN) attacker to trigger an out-of-bounds read, leading to a crash or information disclosur…

fedoraproject fedora · linux linux_kernel · redhat enterprise_linux
0.00EPSS
CVE-2020-27673
Media 5.5

An issue was discovered in the Linux kernel through 5.9.1, as used with Xen through 4.14.x. Guest OS users can cause a denial of service (host OS hang) via a high rate of events to dom0, aka CID-e99502f76271.

debian debian_linux · linux linux_kernel · opensuse leap · xen xen
0.00EPSS
CVE-2018-1065
Media 4.7

The netfilter subsystem in the Linux kernel through 4.15.7 mishandles the case of a rule blob that contains a jump but lacks a user-defined chain, which allows local users to cause a denial of service (NULL pointer dereference) by leveraging the CAP_NET_RAW or…

linux linux_kernel
0.00EPSS
CVE-2017-15951
Alta 7.8

The KEYS subsystem in the Linux kernel before 4.13.10 does not correctly synchronize the actions of updating versus finding a key in the "negative" state to avoid a race condition, which allows local users to cause a denial of service or possibly have unspecif…

linux linux_kernel
0.00EPSS
CVE-2016-3070
Alta 7.8

The trace_writeback_dirty_page implementation in include/trace/events/writeback.h in the Linux kernel before 4.4 improperly interacts with mm/migrate.c, which allows local users to cause a denial of service (NULL pointer dereference and system crash) or possib…

debian debian_linux · linux linux_kernel
0.00EPSS
CVE-2010-2955
Bassa 2.1

The cfg80211_wext_giwessid function in net/wireless/wext-compat.c in the Linux kernel before 2.6.36-rc3-next-20100831 does not properly initialize certain structure members, which allows local users to leverage an off-by-one error in the ioctl_standard_iw_poin…

canonical ubuntu_linux · linux linux_kernel · opensuse opensuse · suse linux_enterprise_desktop · e altri 2
0.00EPSS
CVE-2010-0003
Media 5.4

The print_fatal_signal function in kernel/signal.c in the Linux kernel before 2.6.32.4 on the i386 platform, when print-fatal-signals is enabled, allows local users to discover the contents of arbitrary memory locations by jumping to an address and then readin…

debian debian_linux · linux linux_kernel
0.00EPSS
CVE-2001-1551
Bassa 2.1

Linux kernel 2.2.19 enables CAP_SYS_RESOURCE for setuid processes, which allows local users to exceed disk quota restrictions during execution of setuid programs.

linux linux_kernel
0.00EPSS
CVE-2026-43465
Critica 9.8

In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: RX, Fix XDP multi-buf frag counting for striding RQ XDP multi-buf programs can modify the layout of the XDP buffer when the program calls bpf_xdp_pull_data() or bpf_xdp_adjust_tai…

linux linux_kernel
0.00EPSS
CVE-2026-43365
Alta 8.2

In the Linux kernel, the following vulnerability has been resolved: xfs: fix undersized l_iclog_roundoff values If the superblock doesn't list a log stripe unit, we set the incore log roundoff value to 512. This leads to corrupt logs and unmountable filesys…

linux linux_kernel
0.00EPSS
CVE-2025-38399
Alta 7.5

In the Linux kernel, the following vulnerability has been resolved: scsi: target: Fix NULL pointer dereference in core_scsi3_decode_spec_i_port() The function core_scsi3_decode_spec_i_port(), in its error code path, unconditionally calls core_scsi3_lunacl_un…

debian debian_linux · linux linux_kernel
0.00EPSS
CVE-2024-57843
Critica 9.8

In the Linux kernel, the following vulnerability has been resolved: virtio-net: fix overflow inside virtnet_rq_alloc When the frag just got a page, then may lead to regression on VM. Specially if the sysctl net.core.high_order_alloc_disable value is 1, then …

linux linux_kernel
0.00EPSS
CVE-2017-18241
Media 5.5

fs/f2fs/segment.c in the Linux kernel before 4.13 allows local users to cause a denial of service (NULL pointer dereference and panic) by using a noflush_merge option that triggers a NULL value for a flush_cmd_control data structure.

canonical ubuntu_linux · debian debian_linux · linux linux_kernel
0.00EPSS
CVE-2017-14991
Media 5.5

The sg_ioctl function in drivers/scsi/sg.c in the Linux kernel before 4.13.4 allows local users to obtain sensitive information from uninitialized kernel heap-memory locations via an SG_GET_REQUEST_TABLE ioctl call for /dev/sg0.

linux linux_kernel
0.00EPSS