imPC@ndo EN

Vulnerabilità Linux

14.775 CVE

CVE-2018-12929
Media 5.5

ntfs_read_locked_inode in the ntfs.ko filesystem driver in the Linux kernel 4.15.0 allows attackers to trigger a use-after-free read and possibly cause a denial of service (kernel oops or panic) via a crafted ntfs filesystem.

canonical ubuntu_linux · linux linux_kernel
0.00EPSS
CVE-2017-16645
Media 6.6

The ims_pcu_get_cdc_union_desc function in drivers/input/misc/ims-pcu.c in the Linux kernel through 4.13.11 allows local users to cause a denial of service (ims_pcu_parse_cdc_data out-of-bounds read and system crash) or possibly have unspecified other impact v…

linux linux_kernel
0.00EPSS
CVE-2017-7495
Media 5.5

fs/ext4/inode.c in the Linux kernel before 4.6.2, when ext4 data=ordered mode is used, mishandles a needs-flushing-before-commit list, which allows local users to obtain sensitive information from other users' files in opportunistic circumstances by waiting fo…

linux linux_kernel
0.00EPSS
CVE-2017-6345
Alta 7.8

The LLC subsystem in the Linux kernel before 4.9.13 does not ensure that a certain destructor exists in required circumstances, which allows local users to cause a denial of service (BUG_ON) or possibly have unspecified other impact via crafted system calls.

linux linux_kernel
0.00EPSS
CVE-2017-5551
Media 4.4

The simple_set_acl function in fs/posix_acl.c in the Linux kernel before 4.9.6 preserves the setgid bit during a setxattr call involving a tmpfs filesystem, which allows local users to gain group privileges by leveraging the existence of a setgid program with …

linux linux_kernel
0.00EPSS
CVE-2016-5728
Media 6.3

Race condition in the vop_ioctl function in drivers/misc/mic/vop/vop_vringh.c in the MIC VOP driver in the Linux kernel before 4.6.1 allows local users to obtain sensitive information from kernel memory or cause a denial of service (memory corruption and syste…

debian debian_linux · linux linux_kernel
0.00EPSS
CVE-2014-8173
Alta 7.2

The pmd_none_or_trans_huge_or_clear_bad function in include/asm-generic/pgtable.h in the Linux kernel before 3.13 on NUMA systems does not properly determine whether a Page Middle Directory (PMD) entry is a transparent huge-table entry, which allows local user…

linux linux_kernel
0.00EPSS
CVE-2011-0521
Alta 7.2

The dvb_ca_ioctl function in drivers/media/dvb/ttpci/av7110_ca.c in the Linux kernel before 2.6.38-rc2 does not check the sign of a certain integer field, which allows local users to cause a denial of service (memory corruption) or possibly have unspecified ot…

linux linux_kernel
0.00EPSS
CVE-2010-3477
Bassa 2.1

The tcf_act_police_dump function in net/sched/act_police.c in the actions implementation in the network queueing functionality in the Linux kernel before 2.6.36-rc4 does not properly initialize certain structure members, which allows local users to obtain pote…

canonical ubuntu_linux · debian debian_linux · linux linux_kernel
0.00EPSS
CVE-2007-6733
Media 4.7

The nfs_lock function in fs/nfs/file.c in the Linux kernel 2.6.9 does not properly remove POSIX locks on files that are setgid without group-execute permission, which allows local users to cause a denial of service (BUG and system crash) by locking a file on a…

linux linux_kernel
0.00EPSS
CVE-2010-0623
Media 4.9

The futex_lock_pi function in kernel/futex.c in the Linux kernel before 2.6.33-rc7 does not properly manage a certain reference count, which allows local users to cause a denial of service (OOPS) via vectors involving an unmount of an ext3 filesystem.

canonical ubuntu_linux · linux linux_kernel · opensuse opensuse
0.00EPSS
CVE-2026-46010
Alta 8.1

In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix error handling in rxgk_extract_token() Fix a missing bit of error handling in rxgk_extract_token(): in the event that rxgk_decrypt_skb() returns -ENOMEM, it should just return tha…

linux linux_kernel
0.00EPSS
CVE-2026-43067
Critica 9.8

In the Linux kernel, the following vulnerability has been resolved: ext4: handle wraparound when searching for blocks for indirect mapped blocks Commit 4865c768b563 ("ext4: always allocate blocks only from groups inode can use") restricts what blocks will be…

linux linux_kernel
0.00EPSS
CVE-2025-21850
Critica 9.8

In the Linux kernel, the following vulnerability has been resolved: nvmet: Fix crash when a namespace is disabled The namespace percpu counter protects pending I/O, and we can only safely diable the namespace once the counter drop to zero. Otherwise we end u…

linux linux_kernel
0.00EPSS
CVE-2023-42755
Media 6.5

A flaw was found in the IPv4 Resource Reservation Protocol (RSVP) classifier in the Linux kernel. The xprt pointer may go beyond the linear part of the skb, leading to an out-of-bounds read in the `rsvp_classify` function. This issue may allow a local user to …

debian debian_linux · linux linux_kernel · redhat enterprise_linux
0.00EPSS
CVE-2018-1118
Bassa 2.3

Linux kernel vhost since version 4.8 does not properly initialize memory in messages passed between virtual guests and the host operating system in the vhost/vhost.c:vhost_new_msg() function. This can allow local privileged users to read some kernel memory con…

canonical ubuntu_linux · debian debian_linux · linux linux_kernel · redhat enterprise_linux_desktop · e altri 3
0.00EPSS
CVE-2014-2678
Media 4.7

The rds_iw_laddr_check function in net/rds/iw.c in the Linux kernel through 3.14 allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact via a bind system call for an RDS socket on a…

fedoraproject fedora · linux linux_kernel · oracle linux
0.00EPSS
CVE-2011-2182
Alta 7.2

The ldm_frag_add function in fs/partitions/ldm.c in the Linux kernel before 2.6.39.1 does not properly handle memory allocation for non-initial fragments, which might allow local users to conduct buffer overflow attacks, and gain privileges or obtain sensitive…

linux linux_kernel
0.00EPSS
CVE-2011-2518
Media 4.9

The tomoyo_mount_acl function in security/tomoyo/mount.c in the Linux kernel before 2.6.39.2 calls the kern_path function with arguments taken directly from a mount system call, which allows local users to cause a denial of service (OOPS) or possibly have unsp…

linux linux_kernel
0.00EPSS
CVE-2010-0007
Bassa 2.1

net/bridge/netfilter/ebtables.c in the ebtables module in the netfilter framework in the Linux kernel before 2.6.33-rc4 does not require the CAP_NET_ADMIN capability for setting or modifying rules, which allows local users to bypass intended access restriction…

linux linux_kernel
0.00EPSS
CVE-2026-43464
Alta 7.5

In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: RX, Fix XDP multi-buf frag counting for legacy RQ XDP multi-buf programs can modify the layout of the XDP buffer when the program calls bpf_xdp_pull_data() or bpf_xdp_adjust_tail(…

linux linux_kernel
0.00EPSS
CVE-2022-50401
Critica 9.8

In the Linux kernel, the following vulnerability has been resolved: nfsd: under NFSv4.1, fix double svc_xprt_put on rpc_create failure On error situation `clp->cl_cb_conn.cb_xprt` should not be given a reference to the xprt otherwise both client cleanup and …

linux linux_kernel
0.00EPSS
CVE-2025-38146
Critica 9.4

In the Linux kernel, the following vulnerability has been resolved: net: openvswitch: Fix the dead loop of MPLS parse The unexpected MPLS packet may not end with the bottom label stack. When there are many stacks, The label count value has wrapped around. A …

debian debian_linux · linux linux_kernel
0.00EPSS
CVE-2023-3777
Alta 7.8

A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local privilege escalation. When nf_tables_delrule() is flushing table rules, it is not checked whether the chain is bound and the chain's owner ru…

canonical ubuntu_linux · debian debian_linux · linux linux_kernel
0.00EPSS
CVE-2022-1158
Alta 7.8

A flaw was found in KVM. When updating a guest's page table entry, vm_pgoff was improperly used as the offset to get the page's pfn. As vaddr and vm_pgoff are controllable by user-mode processes, this flaw allows unprivileged local users on the host to write o…

fedoraproject fedora · linux linux_kernel · redhat enterprise_linux
0.00EPSS