imPC@ndo EN

Vulnerabilità Linux

14.775 CVE

CVE-2021-45485
Alta 7.5

In the IPv6 implementation in the Linux kernel before 5.13.3, net/ipv6/output_core.c has an information leak because of certain use of a hash table which, although big, doesn't properly consider that IPv6-based attackers can typically choose among many IPv6 so…

linux linux_kernel · netapp aff_a400_firmware · netapp all_flash_fabric-attached_storage_8300_firmware · netapp all_flash_fabric-attached_storage_8700_firmware · e altri 23
0.04EPSS
CVE-2022-47942
Alta 8.8

An issue was discovered in ksmbd in the Linux kernel 5.15 through 5.19 before 5.19.2. There is a heap-based buffer overflow in set_ntacl_dacl, related to use of SMB2_QUERY_INFO_HE after a malformed SMB2_SET_INFO_HE command.

linux linux_kernel
0.04EPSS
CVE-2019-12615
Alta 7.5

An issue was discovered in get_vdev_port_node_info in arch/sparc/kernel/mdesc.c in the Linux kernel through 5.1.6. There is an unchecked kstrdup_const of node_info->vdev_port.name, which might allow an attacker to cause a denial of service (NULL pointer derefe…

linux linux_kernel · netapp active_iq_unified_manager · netapp aff_a700s_firmware · netapp cn1610_firmware · e altri 3
0.04EPSS
CVE-2010-1087
Alta 7.8

The nfs_wait_on_request function in fs/nfs/pagelist.c in Linux kernel 2.6.x through 2.6.33-rc5 allows attackers to cause a denial of service (Oops) via unknown vectors related to truncating a file and an operation that is not interruptible.

debian debian_linux · linux linux_kernel
0.04EPSS
CVE-2010-0006
Alta 7.1

The ipv6_hop_jumbo function in net/ipv6/exthdrs.c in the Linux kernel before 2.6.32.4, when network namespaces are enabled, allows remote attackers to cause a denial of service (NULL pointer dereference) via an invalid IPv6 jumbogram, a related issue to CVE-20…

linux linux_kernel
0.04EPSS
CVE-2019-19049
Alta 7.5

A memory leak in the unittest_data_add() function in drivers/of/unittest.c in the Linux kernel before 5.3.10 allows attackers to cause a denial of service (memory consumption) by triggering of_fdt_unflatten_tree() failures, aka CID-e13de8fe0d6a. NOTE: third pa…

linux linux_kernel · opensuse leap
0.04EPSS
CVE-2023-2163
Critica 10.0

Incorrect verifier pruning in BPF in Linux Kernel >=5.4 leads to unsafe code paths being incorrectly marked as safe, resulting in arbitrary read/write in kernel memory, lateral privilege escalation, and container escape.

linux linux_kernel
0.04EPSS
CVE-2018-1000004
Media 5.9

In the Linux kernel 4.12, 3.10, 2.6 and possibly earlier versions a race condition vulnerability exists in the sound system, this can lead to a deadlock and denial of service condition.

linux linux_kernel
0.04EPSS
CVE-2005-3180
Media 5.0

The Orinoco driver (orinoco.c) in Linux kernel 2.6.13 and earlier does not properly clear memory from a previously used packet whose length is increased, which allows remote attackers to obtain sensitive information.

linux linux_kernel
0.04EPSS
CVE-2008-0600
Alta 7.2

The vmsplice_to_pipe function in Linux kernel 2.6.17 through 2.6.24.1 does not validate a certain userspace pointer before dereference, which allows local users to gain root privileges via crafted arguments in a vmsplice system call, a different vulnerability …

linux linux_kernel
0.04EPSS
CVE-2019-19447
Alta 7.8

In the Linux kernel 5.0.21, mounting a crafted ext4 filesystem image, performing some operations, and unmounting can lead to a use-after-free in ext4_put_super in fs/ext4/super.c, related to dump_orphan_list in fs/ext4/super.c.

linux linux_kernel · netapp active_iq_unified_manager · netapp cloud_backup · netapp data_availability_services · e altri 3
0.04EPSS
CVE-2020-24588
Bassa 3.5

The 802.11 standard that underpins Wi-Fi Protected Access (WPA, WPA2, and WPA3) and Wired Equivalent Privacy (WEP) doesn't require that the A-MSDU flag in the plaintext QoS header field is authenticated. Against devices that support receiving non-SSP A-MSDU fr…

arista c-100_firmware · arista c-110_firmware · arista c-120_firmware · arista c-130_firmware · e altri 177
0.04EPSS
CVE-2010-3081
Alta 7.8

The compat_alloc_user_space functions in include/asm/compat.h files in the Linux kernel before 2.6.36-rc4-git2 on 64-bit platforms do not properly allocate the userspace memory required for the 32-bit compatibility layer, which allows local users to gain privi…

linux linux_kernel · suse suse_linux_enterprise_desktop · suse suse_linux_enterprise_server · vmware esx
0.04EPSS
CVE-2019-16995
Alta 7.5

In the Linux kernel before 5.0.3, a memory leak exits in hsr_dev_finalize() in net/hsr/hsr_device.c if hsr_add_port fails to add a port, which may cause denial of service, aka CID-6caabe7f197d.

linux linux_kernel · netapp aff_a700s_firmware · netapp data_availability_services · netapp h300e_firmware · e altri 13
0.04EPSS
CVE-2010-4342
Alta 7.1

The aun_incoming function in net/econet/af_econet.c in the Linux kernel before 2.6.37-rc6, when Econet is enabled, allows remote attackers to cause a denial of service (NULL pointer dereference and OOPS) by sending an Acorn Universal Networking (AUN) packet ov…

linux linux_kernel · suse linux_enterprise_server
0.04EPSS
CVE-2010-0741
Alta 7.8

The virtio_net_bad_features function in hw/virtio-net.c in the virtio-net driver in the Linux kernel before 2.6.26, when used on a guest OS in conjunction with qemu-kvm 0.11.0 or KVM 83, allows remote attackers to cause a denial of service (guest OS crash, and…

linux linux_kernel
0.04EPSS
CVE-2022-47943
Alta 8.1

An issue was discovered in ksmbd in the Linux kernel 5.15 through 5.19 before 5.19.2. There is an out-of-bounds read and OOPS for SMB2_WRITE, when there is a large length in the zero DataOffset case.

linux linux_kernel
0.04EPSS
CVE-2008-3526
Alta 7.8

Integer overflow in the sctp_setsockopt_auth_key function in net/sctp/socket.c in the Stream Control Transmission Protocol (sctp) implementation in the Linux kernel 2.6.24-rc1 through 2.6.26.3 allows remote attackers to cause a denial of service (panic) or pos…

linux linux_kernel
0.03EPSS
CVE-2011-1093
Alta 7.8

The dccp_rcv_state_process function in net/dccp/input.c in the Datagram Congestion Control Protocol (DCCP) implementation in the Linux kernel before 2.6.38 does not properly handle packets for a CLOSED endpoint, which allows remote attackers to cause a denial …

linux linux_kernel · redhat enterprise_linux_aus · redhat enterprise_linux_desktop · redhat enterprise_linux_eus · e altri 2
0.03EPSS
CVE-2009-3623
Alta 7.8

The lookup_cb_cred function in fs/nfsd/nfs4callback.c in the nfsd4 subsystem in the Linux kernel before 2.6.31.2 attempts to access a credentials cache even when a client specifies the AUTH_NULL authentication flavor, which allows remote attackers to cause a d…

linux linux_kernel
0.03EPSS
CVE-2006-5158
Alta 7.5

The nlmclnt_mark_reclaim in clntlock.c in NFS lockd in Linux kernel before 2.6.16 allows remote attackers to cause a denial of service (process crash) and deny access to NFS exports via unspecified vectors that trigger a kernel oops (null dereference) and a de…

canonical ubuntu_linux · linux linux_kernel · redhat enterprise_linux_desktop · redhat enterprise_linux_eus · e altri 2
0.03EPSS
CVE-2009-4308
Alta 7.1

The ext4_decode_error function in fs/ext4/super.c in the ext4 filesystem in the Linux kernel before 2.6.32 allows user-assisted remote attackers to cause a denial of service (NULL pointer dereference), and possibly have unspecified other impact, via a crafted …

linux linux_kernel
0.03EPSS
CVE-2007-3380
Media 5.0

The Distributed Lock Manager (DLM) in the cluster manager for Linux kernel 2.6.15 allows remote attackers to cause a denial of service (loss of lock services) by connecting to the DLM port, which probably prevents other processes from accessing the service.

linux linux_kernel
0.03EPSS
CVE-2018-1066
Media 6.5

The Linux kernel before version 4.11 is vulnerable to a NULL pointer dereference in fs/cifs/cifsencrypt.c:setup_ntlmv2_rsp() that allows an attacker controlling a CIFS server to kernel panic a client that has this server mounted, because an empty TargetInfo fi…

canonical ubuntu_linux · debian debian_linux · linux linux_kernel
0.03EPSS
CVE-2019-18805
Critica 9.8

An issue was discovered in net/ipv4/sysctl_net_ipv4.c in the Linux kernel before 5.0.11. There is a net/ipv4/tcp_input.c signed integer overflow in tcp_ack_update_rtt() when userspace writes a very large integer to /proc/sys/net/ipv4/tcp_min_rtt_wlen, leading …

broadcom fabric_operating_system · linux linux_kernel · netapp active_iq_unified_manager · netapp aff_a400_firmware · e altri 13
0.03EPSS