imPC@ndo EN

Vulnerabilità Linux

14.802 CVE

CVE-2022-48804
Media 5.5

In the Linux kernel, the following vulnerability has been resolved: vt_ioctl: fix array_index_nospec in vt_setactivate array_index_nospec ensures that an out-of-bounds value is set to zero on the transient path. Decreasing the value by one afterwards causes …

linux linux_kernel
0.00EPSS
CVE-2024-35914
Alta 7.5

In the Linux kernel, the following vulnerability has been resolved: nfsd: Fix error cleanup path in nfsd_rename() Commit a8b0026847b8 ("rename(): avoid a deadlock in the case of parents having no common ancestor") added an error bail out path. However this p…

linux linux_kernel
0.00EPSS
CVE-2020-36558
Media 5.1

A race condition in the Linux kernel before 5.5.7 involving VT_RESIZEX could lead to a NULL pointer dereference and general protection fault.

linux linux_kernel
0.00EPSS
CVE-2008-2544
Media 5.5

Mounting /proc filesystem via chroot command silently mounts it in read-write mode. The user could bypass the chroot environment and gain write access to files, he would never have otherwise.

linux linux_kernel
0.00EPSS
CVE-2018-7995
Media 4.7

Race condition in the store_int_with_restart() function in arch/x86/kernel/cpu/mcheck/mce.c in the Linux kernel through 4.15.7 allows local users to cause a denial of service (panic) by leveraging root access to write to the check_interval file in a /sys/devic…

canonical ubuntu_linux · debian debian_linux · linux linux_kernel
0.00EPSS
CVE-2008-1375
Media 6.9

Race condition in the directory notification subsystem (dnotify) in Linux kernel 2.6.x before 2.6.24.6, and 2.6.25 before 2.6.25.1, allows local users to cause a denial of service (OOPS) and possibly gain privileges via unspecified vectors.

canonical ubuntu_linux · debian debian_linux · fedoraproject fedora · linux linux_kernel · e altri 4
0.00EPSS
CVE-2022-50171
Alta 7.5

In the Linux kernel, the following vulnerability has been resolved: crypto: hisilicon/sec - don't sleep when in softirq When kunpeng920 encryption driver is used to deencrypt and decrypt packets during the softirq, it is not allowed to use mutex lock. The ke…

linux linux_kernel
0.00EPSS
CVE-2022-49264
Alta 7.8

In the Linux kernel, the following vulnerability has been resolved: exec: Force single empty string when argv is empty Quoting[1] Ariadne Conill: "In several other operating systems, it is a hard requirement that the second argument to execve(2) be the name…

linux linux_kernel
0.00EPSS
CVE-2022-49217
Media 5.5

In the Linux kernel, the following vulnerability has been resolved: scsi: pm8001: Fix abort all task initialization In pm80xx_send_abort_all(), the n_elem field of the ccb used is not initialized to 0. This missing initialization sometimes lead to the task c…

linux linux_kernel
0.00EPSS
CVE-2024-53149
Media 4.6

In the Linux kernel, the following vulnerability has been resolved: usb: typec: ucsi: glink: fix off-by-one in connector_status UCSI connector's indices start from 1 up to 3, PMIC_GLINK_MAX_PORTS. Correct the condition in the pmic_glink_ucsi_connector_status…

linux linux_kernel
0.00EPSS
CVE-2024-53061
Alta 7.3

In the Linux kernel, the following vulnerability has been resolved: media: s5p-jpeg: prevent buffer overflows The current logic allows word to be less than 2. If this happens, there will be buffer overflows, as reported by smatch. Add extra checks to prevent…

linux linux_kernel
0.00EPSS
CVE-2024-40906
Alta 7.8

In the Linux kernel, the following vulnerability has been resolved: net/mlx5: Always stop health timer during driver removal Currently, if teardown_hca fails to execute during driver removal, mlx5 does not stop the health timer. Afterwards, mlx5 continue wit…

linux linux_kernel
0.00EPSS
CVE-2024-26898
Alta 7.8

In the Linux kernel, the following vulnerability has been resolved: aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts This patch is against CVE-2023-6270. The description of cve is: A flaw was found in the ATA over Ethernet (AoE) driver in …

linux linux_kernel
0.00EPSS
CVE-2023-51782
Alta 7.0

An issue was discovered in the Linux kernel before 6.6.8. rose_ioctl in net/rose/af_rose.c has a use-after-free because of a rose_accept race condition.

debian debian_linux · linux linux_kernel
0.00EPSS
CVE-2021-29649
Media 5.5

An issue was discovered in the Linux kernel before 5.11.11. The user mode driver (UMD) has a copy_process() memory leak, related to a lack of cleanup steps in kernel/usermode_driver.c and kernel/bpf/preload/bpf_preload_kern.c, aka CID-f60a85cad677.

fedoraproject fedora · linux linux_kernel
0.00EPSS
CVE-2021-28375
Alta 7.8

An issue was discovered in the Linux kernel through 5.11.6. fastrpc_internal_invoke in drivers/misc/fastrpc.c does not prevent user applications from sending kernel RPC messages, aka CID-20c40794eb85. This is a related issue to CVE-2019-2308.

fedoraproject fedora · linux linux_kernel · netapp cloud_backup · netapp solidfire_baseboard_management_controller_firmware
0.00EPSS
CVE-2016-0823
Media 4.0

The pagemap_open function in fs/proc/task_mmu.c in the Linux kernel before 3.19.3, as used in Android 6.0.1 before 2016-03-01, allows local users to obtain sensitive physical-address information by reading a pagemap file, aka Android internal bug 25739721.

google android · linux linux_kernel
0.00EPSS
CVE-2026-53086
Critica 9.8

In the Linux kernel, the following vulnerability has been resolved: net: bcmgenet: fix racing timeout handler The bcmgenet_timeout handler tries to take down all tx queues when a single queue times out. This is over zealous and causes many race conditions wi…

linux linux_kernel
0.00EPSS
CVE-2025-38331
Alta 7.5

In the Linux kernel, the following vulnerability has been resolved: net: ethernet: cortina: Use TOE/TSO on all TCP It is desireable to push the hardware accelerator to also process non-segmented TCP frames: we pass the skb->len to the "TOE/TSO" offloader and…

debian debian_linux · linux linux_kernel
0.00EPSS
CVE-2023-52650
Media 5.5

In the Linux kernel, the following vulnerability has been resolved: drm/tegra: dsi: Add missing check for of_find_device_by_node Add check for the return value of of_find_device_by_node() and return the error if it fails in order to avoid NULL pointer derefe…

debian debian_linux · linux linux_kernel
0.00EPSS
CVE-2008-0163
Media 4.4

Linux kernel 2.6, when using vservers, allows local users to access resources of other vservers via a symlink attack in /proc.

linux linux_kernel
0.00EPSS
CVE-2024-49953
Media 5.5

In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: Fix crash caused by calling __xfrm_state_delete() twice The km.state is not checked in driver's delayed work. When xfrm_state_check_expire() is called, the state can be reset to X…

linux linux_kernel
0.00EPSS
CVE-2024-40970
Alta 7.8

In the Linux kernel, the following vulnerability has been resolved: Avoid hw_desc array overrun in dw-axi-dmac I have a use case where nr_buffers = 3 and in which each descriptor is composed by 3 segments, resulting in the DMA channel descs_allocated to be 9…

linux linux_kernel
0.00EPSS
CVE-2023-4207
Alta 7.8

A use-after-free vulnerability in the Linux kernel's net/sched: cls_fw component can be exploited to achieve local privilege escalation. When fw_change() is called on an existing filter, the whole tcf_result struct is always copied into the new instance of th…

debian debian_linux · linux linux_kernel
0.00EPSS
CVE-2022-3303
Media 4.7

A race condition flaw was found in the Linux kernel sound subsystem due to improper locking. It could lead to a NULL pointer dereference while handling the SNDCTL_DSP_SYNC ioctl. A privileged local user (root or member of the audio group) could use this flaw t…

debian debian_linux · linux linux_kernel
0.00EPSS