imPC@ndo EN

Vulnerabilità Linux

14.802 CVE

CVE-2025-71161
Alta 7.5

In the Linux kernel, the following vulnerability has been resolved: dm-verity: disable recursive forward error correction There are two problems with the recursive correction: 1. It may cause denial-of-service. In fec_read_bufs, there is a loop that has 253…

linux linux_kernel
0.00EPSS
CVE-2022-49519
Alta 8.8

In the Linux kernel, the following vulnerability has been resolved: ath10k: skip ath10k_halt during suspend for driver state RESTARTING Double free crash is observed when FW recovery(caused by wmi timeout/crash) is followed by immediate suspend event. The FW…

linux linux_kernel
0.00EPSS
CVE-2024-35937
Alta 8.1

In the Linux kernel, the following vulnerability has been resolved: wifi: cfg80211: check A-MSDU format more carefully If it looks like there's another subframe in the A-MSDU but the header isn't fully there, we can end up reading data out of bounds, only to…

linux linux_kernel
0.00EPSS
CVE-2022-3629
Bassa 2.6

A vulnerability was found in Linux Kernel. It has been declared as problematic. This vulnerability affects the function vsock_connect of the file net/vmw_vsock/af_vsock.c. The manipulation leads to memory leak. The complexity of an attack is rather high. The e…

debian debian_linux · linux linux_kernel
0.00EPSS
CVE-2022-2905
Media 5.5

An out-of-bounds memory read flaw was found in the Linux kernel's BPF subsystem in how a user calls the bpf_tail_call function with a key larger than the max_entries of the map. This flaw allows a local user to gain unauthorized access to data.

debian debian_linux · linux linux_kernel · redhat enterprise_linux
0.00EPSS
CVE-2013-3236
Media 4.9

The vmci_transport_dgram_dequeue function in net/vmw_vsock/vmci_transport.c in the Linux kernel before 3.9-rc7 does not properly initialize a certain length variable, which allows local users to obtain sensitive information from kernel stack memory via a craft…

linux linux_kernel
0.00EPSS
CVE-2010-4525
Bassa 1.9

Linux kernel 2.6.33 and 2.6.34.y does not initialize the kvm_vcpu_events->interrupt.pad structure member, which allows local users to obtain potentially sensitive information from kernel stack memory via unspecified vectors.

linux linux_kernel
0.00EPSS
CVE-2004-2302
Bassa 2.6

Race condition in the sysfs_read_file and sysfs_write_file functions in Linux kernel before 2.6.10 allows local users to read kernel memory and cause a denial of service (crash) via large offsets in sysfs files.

linux linux_kernel
0.00EPSS
CVE-2026-53180
Alta 7.5

In the Linux kernel, the following vulnerability has been resolved: timers/migration: Fix livelock in tmigr_handle_remote_up() tmigr_handle_remote_cpu() skips timer_expire_remote() when cpu == smp_processor_id(), assuming the local softirq path already handl…

linux linux_kernel
0.00EPSS
CVE-2026-43253
Alta 7.5

In the Linux kernel, the following vulnerability has been resolved: iommu/amd: move wait_on_sem() out of spinlock With iommu.strict=1, the existing completion wait path can cause soft lockups under stressed environment, as wait_on_sem() busy-waits under the …

linux linux_kernel
0.00EPSS
CVE-2022-50241
Alta 8.8

In the Linux kernel, the following vulnerability has been resolved: NFSD: fix use-after-free on source server when doing inter-server copy Use-after-free occurred when the laundromat tried to free expired cpntf_state entry on the s2s_cp_stateids list after i…

linux linux_kernel
0.00EPSS
CVE-2023-2019
Media 4.4

A flaw was found in the Linux kernel's netdevsim device driver, within the scheduling of events. This issue results from the improper management of a reference count. This may allow an attacker to create a denial of service condition on the system.

linux linux_kernel · redhat enterprise_linux
0.00EPSS
CVE-2022-43750
Media 6.7

drivers/usb/mon/mon_bin.c in usbmon in the Linux kernel before 5.19.15 and 6.x before 6.0.1 allows a user-space client to corrupt the monitor's internal memory.

debian debian_linux · linux linux_kernel
0.00EPSS
CVE-2016-6162
Alta 7.8

net/core/skbuff.c in the Linux kernel 4.7-rc6 allows local users to cause a denial of service (panic) or possibly have unspecified other impact via certain IPv6 socket operations.

linux linux_kernel
0.00EPSS
CVE-2013-2851
Media 6.0

Format string vulnerability in the register_disk function in block/genhd.c in the Linux kernel through 3.9.4 allows local users to gain privileges by leveraging root access and writing format string specifiers to /sys/module/md_mod/parameters/new_array in orde…

linux linux_kernel
0.00EPSS
CVE-2013-1958
Bassa 1.9

The scm_check_creds function in net/core/scm.c in the Linux kernel before 3.8.6 does not properly enforce capability requirements for controlling the PID value associated with a UNIX domain socket, which allows local users to bypass intended access restriction…

linux linux_kernel
0.00EPSS
CVE-2011-0006
Bassa 1.9

The ima_lsm_rule_init function in security/integrity/ima/ima_policy.c in the Linux kernel before 2.6.37, when the Linux Security Modules (LSM) framework is disabled, allows local users to bypass Integrity Measurement Architecture (IMA) rules in opportunistic c…

linux linux_kernel
0.00EPSS
CVE-2010-1446
Bassa 1.9

arch/powerpc/mm/fsl_booke_mmu.c in KGDB in the Linux kernel 2.6.30 and other versions before 2.6.33, when running on PowerPC, does not properly perform a security check for access to a kernel page, which allows local users to overwrite arbitrary kernel memory,…

linux linux_kernel
0.00EPSS
CVE-2010-1488
Bassa 2.1

The proc_oom_score function in fs/proc/base.c in the Linux kernel before 2.6.34-rc4 uses inappropriate data structures during selection of a candidate for the OOM killer, which might allow local users to cause a denial of service via unspecified patterns of ta…

linux linux_kernel
0.00EPSS
CVE-2007-3850
Bassa 1.9

The eHCA driver in Linux kernel 2.6 before 2.6.22, when running on PowerPC, does not properly map userspace resources, which allows local users to read portions of physical address space.

linux linux_kernel
0.00EPSS
CVE-2006-1066
Bassa 1.2

Linux kernel 2.6.16-rc2 and earlier, when running on x86_64 systems with preemption enabled, allows local users to cause a denial of service (oops) via multiple ptrace tasks that perform single steps, which can cause corruption of the DEBUG_STACK stack during …

linux linux_kernel
0.00EPSS
CVE-2003-0986
Bassa 1.7

Various routines for the ppc64 architecture on Linux kernel 2.6 prior to 2.6.2 and 2.4 prior to 2.4.24 do not use the copy_from_user function when copying data from userspace to kernelspace, which crosses security boundaries and allows local users to cause a d…

linux linux_kernel · redhat enterprise_linux
0.00EPSS
CVE-1999-1276
Alta 7.2

fte-console in the fte package before 0.46b-4.1 does not drop root privileges, which allows local users to gain root access via the virtual console device.

debian debian_linux · linux linux_kernel
0.00EPSS
CVE-2024-58239
Alta 8.2

In the Linux kernel, the following vulnerability has been resolved: tls: stop recv() if initial process_rx_list gave us non-DATA If we have a non-DATA record on the rx_list and another record of the same type still on the queue, we will end up merging them: …

linux linux_kernel
0.00EPSS
CVE-2024-49955
Media 5.5

In the Linux kernel, the following vulnerability has been resolved: ACPI: battery: Fix possible crash when unregistering a battery hook When a battery hook returns an error when adding a new battery, then the battery hook is automatically unregistered. Howev…

linux linux_kernel
0.00EPSS