imPC@ndo EN

Vulnerabilità Linux

14.796 CVE

CVE-2020-29569
Alta 8.8

An issue was discovered in the Linux kernel through 5.10.1, as used with Xen through 4.14.x. The Linux kernel PV block backend expects the kernel thread handler to reset ring->xenblkd to NULL when stopped. However, the handler may not have time to run if the f…

debian debian_linux · linux linux_kernel · netapp hci_compute_node_bios · netapp solidfire_\&_hci_management_node · e altri 2
0.00EPSS
CVE-2017-17854
Alta 7.8

kernel/bpf/verifier.c in the Linux kernel through 4.14.8 allows local users to cause a denial of service (integer overflow and memory corruption) or possibly have unspecified other impact by leveraging unrestricted integer values for pointer arithmetic.

debian debian_linux · linux linux_kernel
0.00EPSS
CVE-2017-17853
Alta 7.8

kernel/bpf/verifier.c in the Linux kernel through 4.14.8 allows local users to cause a denial of service (memory corruption) or possibly have unspecified other impact by leveraging incorrect BPF_RSH signed bounds calculations.

debian debian_linux · linux linux_kernel
0.00EPSS
CVE-2017-1000377
Media 5.9

An issue was discovered in the size of the default stack guard page on PAX Linux (originally from GRSecurity but shipped by other Linux vendors), specifically the default stack guard page is not sufficiently large and can be "jumped" over (the stack guard page…

linux linux_kernel
0.00EPSS
CVE-2016-7916
Media 5.5

Race condition in the environ_read function in fs/proc/base.c in the Linux kernel before 4.5.4 allows local users to obtain sensitive information from kernel memory by reading a /proc/*/environ file during a process-setup time interval in which environment-var…

linux linux_kernel
0.00EPSS
CVE-2013-3237
Media 4.9

The vsock_stream_sendmsg function in net/vmw_vsock/af_vsock.c in the Linux kernel before 3.9-rc7 does not initialize a certain length variable, which allows local users to obtain sensitive information from kernel stack memory via a crafted recvmsg or recvfrom …

linux linux_kernel
0.00EPSS
CVE-2013-2548
Bassa 2.1

The crypto_report_one function in crypto/crypto_user.c in the report API in the crypto user configuration API in the Linux kernel through 3.8.2 uses an incorrect length value during a copy operation, which allows local users to obtain sensitive information fro…

linux linux_kernel · redhat enterprise_mrg
0.00EPSS
CVE-2013-2547
Bassa 2.1

The crypto_report_one function in crypto/crypto_user.c in the report API in the crypto user configuration API in the Linux kernel through 3.8.2 does not initialize certain structure members, which allows local users to obtain sensitive information from kernel …

linux linux_kernel · redhat enterprise_mrg
0.00EPSS
CVE-2013-1774
Media 4.0

The chase_port function in drivers/usb/serial/io_ti.c in the Linux kernel before 3.7.4 allows local users to cause a denial of service (NULL pointer dereference and system crash) via an attempted /dev/ttyUSB read or write operation on a disconnected Edgeport U…

linux linux_kernel · redhat enterprise_linux · redhat enterprise_mrg
0.00EPSS
CVE-2011-2484
Media 4.9

The add_del_listener function in kernel/taskstats.c in the Linux kernel 2.6.39.1 and earlier does not prevent multiple registrations of exit handlers, which allows local users to cause a denial of service (memory and CPU consumption), and bypass the OOM Killer…

linux linux_kernel
0.00EPSS
CVE-2008-6107
Media 4.9

The (1) sys32_mremap function in arch/sparc64/kernel/sys_sparc32.c, the (2) sparc_mmap_check function in arch/sparc/kernel/sys_sparc.c, and the (3) sparc64_mmap_check function in arch/sparc64/kernel/sys_sparc.c, in the Linux kernel before 2.6.25.4, omit some v…

linux linux_kernel
0.00EPSS
CVE-2008-2148
Bassa 3.6

The utimensat system call (sys_utimensat) in Linux kernel 2.6.22 and other versions before 2.6.25.3 does not check file permissions when certain UTIME_NOW and UTIME_OMIT combinations are used, which allows local users to modify file times of arbitrary files, p…

linux linux_kernel
0.00EPSS
CVE-2005-0204
Bassa 2.1

Linux kernel before 2.6.9, when running on the AMD64 and Intel EM64T architectures, allows local users to write to privileged IO ports via the OUTS instruction.

linux linux_kernel
0.00EPSS
CVE-2004-1068
Media 6.2

A "missing serialization" error in the unix_dgram_recvmsg function in Linux 2.4.27 and earlier, and 2.6.x up to 2.6.9, allows local users to gain privileges via a race condition.

linux linux_kernel · redhat enterprise_linux · redhat enterprise_linux_desktop · redhat linux_advanced_workstation · e altri 1
0.00EPSS
CVE-2003-1040
Bassa 2.1

kmod in the Linux kernel does not set its uid, suid, gid, or sgid to 0, which allows local users to cause a denial of service (crash) by sending certain signals to kmod.

linux linux_kernel
0.00EPSS
CVE-2026-43296
Alta 7.5

In the Linux kernel, the following vulnerability has been resolved: octeontx2-af: Workaround SQM/PSE stalls by disabling sticky NIX SQ manager sticky mode is known to cause stalls when multiple SQs share an SMQ and transmit concurrently. Additionally, PSE ma…

linux linux_kernel
0.00EPSS
CVE-2026-43232
Alta 8.8

In the Linux kernel, the following vulnerability has been resolved: net: wan: farsync: Fix use-after-free bugs caused by unfinished tasklets When the FarSync T-series card is being detached, the fst_card_info is deallocated in fst_remove_one(). However, the …

linux linux_kernel
0.00EPSS
CVE-2025-38124
Alta 7.5

In the Linux kernel, the following vulnerability has been resolved: net: fix udp gso skb_segment after pull from frag_list Commit a1e40ac5b5e9 ("net: gso: fix udp gso fraglist segmentation after pull from frag_list") detected invalid geometry in frag_list sk…

debian debian_linux · linux linux_kernel
0.00EPSS
CVE-2023-1989
Alta 7.0

A use-after-free flaw was found in btsdio_remove in drivers\bluetooth\btsdio.c in the Linux Kernel. In this flaw, a call to btsdio_remove with an unfinished job, may cause a race problem leading to a UAF on hdev devices.

debian debian_linux · linux linux_kernel · netapp h300s · netapp h410c · e altri 3
0.00EPSS
CVE-2021-4095
Media 5.5

A NULL pointer dereference was found in the Linux kernel's KVM when dirty ring logging is enabled without an active vCPU context. An unprivileged local attacker on the host may use this flaw to cause a kernel oops condition and thus a denial of service by issu…

fedoraproject fedora · linux linux_kernel
0.00EPSS
CVE-2019-19056
Media 4.7

A memory leak in the mwifiex_pcie_alloc_cmdrsp_buf() function in drivers/net/wireless/marvell/mwifiex/pcie.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering mwifiex_map_pci_memory() failures, …

canonical ubuntu_linux · debian debian_linux · fedoraproject fedora · linux linux_kernel · e altri 1
0.00EPSS
CVE-2019-16089
Media 4.1

An issue was discovered in the Linux kernel through 5.2.13. nbd_genl_status in drivers/block/nbd.c does not check the nla_nest_start_noflag return value.

linux linux_kernel
0.00EPSS
CVE-2017-18552
Alta 7.8

An issue was discovered in net/rds/af_rds.c in the Linux kernel before 4.11. There is an out of bounds write and read in the function rds_recv_track_latency.

linux linux_kernel
0.00EPSS
CVE-2010-5332
Media 5.6

In the Linux kernel before 2.6.37, an out of bounds array access happened in drivers/net/mlx4/port.c. When searching for a free entry in either mlx4_register_vlan() or mlx4_register_mac(), and there is no free entry, the loop terminates without updating the lo…

linux linux_kernel
0.00EPSS
CVE-2017-7477
Alta 7.0

Heap-based buffer overflow in drivers/net/macsec.c in the MACsec module in the Linux kernel through 4.10.12 allows attackers to cause a denial of service or possibly have unspecified other impact by leveraging the use of a MAX_SKB_FRAGS+1 size in conjunction w…

linux linux_kernel
0.00EPSS