imPC@ndo EN

Vulnerabilità Linux

14.775 CVE

CVE-2005-2098
Media 5.0

The KEYCTL_JOIN_SESSION_KEYRING operation in the Linux kernel before 2.6.12.5 contains an error path that does not properly release the session management semaphore, which allows local users or remote attackers to cause a denial of service (semaphore hang) via…

linux linux_kernel
0.03EPSS
CVE-2021-38202
Alta 7.5

fs/nfsd/trace.h in the Linux kernel before 5.13.4 might allow remote attackers to cause a denial of service (out-of-bounds read in strlen) by sending NFS traffic when the trace event framework is being used for nfsd.

linux linux_kernel · netapp element_software · netapp hci_bootstrap_os · netapp hci_management_node · e altri 1
0.03EPSS
CVE-2009-1360
Alta 7.1

The __inet6_check_established function in net/ipv6/inet6_hashtables.c in the Linux kernel before 2.6.29, when Network Namespace Support (aka NET_NS) is enabled, allows remote attackers to cause a denial of service (NULL pointer dereference and system crash) vi…

linux linux_kernel
0.03EPSS
CVE-2013-4345
Media 5.8

Off-by-one error in the get_prng_bytes function in crypto/ansi_cprng.c in the Linux kernel through 3.11.4 makes it easier for context-dependent attackers to defeat cryptographic protection mechanisms via multiple requests for small amounts of data, leading to …

fedoraproject fedora · linux linux_kernel · redhat enterprise_linux · redhat enterprise_mrg
0.03EPSS
CVE-2009-1265
Media 5.0

Integer overflow in rose_sendmsg (sys/net/af_rose.c) in the Linux kernel 2.6.24.4, and other versions before 2.6.30-rc1, might allow remote attackers to obtain sensitive information via a large length value, which causes "garbage" memory to be sent.

linux linux_kernel
0.03EPSS
CVE-2019-19076
Media 5.9

A memory leak in the nfp_abm_u32_knode_replace() function in drivers/net/ethernet/netronome/nfp/abm/cls.c in the Linux kernel before 5.3.6 allows attackers to cause a denial of service (memory consumption), aka CID-78beef629fd9. NOTE: This has been argued as n…

canonical ubuntu_linux · linux linux_kernel · redhat enterprise_linux
0.03EPSS
CVE-2023-38428
Critica 9.1

An issue was discovered in the Linux kernel before 6.3.4. fs/ksmbd/smb2pdu.c in ksmbd does not properly check the UserName value because it does not consider the address of security buffer, leading to an out-of-bounds read.

linux linux_kernel · netapp h300s · netapp h410s · netapp h500s · e altri 3
0.03EPSS
CVE-2006-3085
Alta 7.8

xt_sctp in netfilter for Linux kernel before 2.6.17.1 allows attackers to cause a denial of service (infinite loop) via an SCTP chunk with a 0 length.

linux linux_kernel
0.03EPSS
CVE-2020-25672
Alta 7.5

A memory leak vulnerability was found in Linux kernel in llcp_sock_connect

debian debian_linux · fedoraproject fedora · linux linux_kernel · netapp active_iq_unified_manager · e altri 10
0.03EPSS
CVE-2009-4031
Alta 7.8

The do_insn_fetch function in arch/x86/kvm/emulate.c in the x86 emulator in the KVM subsystem in the Linux kernel before 2.6.32-rc8-next-20091125 tries to interpret instructions that contain too many bytes to be valid, which allows guest OS users to cause a de…

linux linux_kernel
0.03EPSS
CVE-2005-3272
Media 5.0

Linux kernel before 2.6.12 allows remote attackers to poison the bridge forwarding table using frames that have already been dropped by filtering, which can cause the bridge to forward spoofed packets.

linux linux_kernel
0.03EPSS
CVE-2015-8746
Alta 7.5

fs/nfs/nfs4proc.c in the NFS client in the Linux kernel before 4.2.2 does not properly initialize memory for migration recovery operations, which allows remote NFS servers to cause a denial of service (NULL pointer dereference and panic) via crafted network tr…

linux linux_kernel
0.03EPSS
CVE-2020-10711
Media 5.9

A NULL pointer dereference flaw was found in the Linux kernel's SELinux subsystem in versions before 5.7. This flaw occurs while importing the Commercial IP Security Option (CIPSO) protocol's category bitmap into the SELinux extensible bitmap via the' ebitmap_…

canonical ubuntu_linux · debian debian_linux · linux linux_kernel · opensuse leap · e altri 7
0.03EPSS
CVE-2001-0851
Media 5.0

Linux kernel 2.0, 2.2 and 2.4 with syncookies enabled allows remote attackers to bypass firewall rules by brute force guessing the cookie.

caldera openlinux · caldera openlinux_edesktop · caldera openlinux_eserver · caldera openlinux_server · e altri 3
0.03EPSS
CVE-2016-10764
Critica 9.8

In the Linux kernel before 4.9.6, there is an off by one in the drivers/mtd/spi-nor/cadence-quadspi.c cqspi_setup_flash() function. There are CQSPI_MAX_CHIPSELECT elements in the ->f_pdata array so the ">" should be ">=" instead.

linux linux_kernel
0.03EPSS
CVE-2009-4026
Alta 7.8

The mac80211 subsystem in the Linux kernel before 2.6.32-rc8-next-20091201 allows remote attackers to cause a denial of service (panic) via a crafted Delete Block ACK (aka DELBA) packet, related to an erroneous "code shuffling patch."

linux linux_kernel
0.03EPSS
CVE-2015-2922
Bassa 3.3

The ndisc_router_discovery function in net/ipv6/ndisc.c in the Neighbor Discovery (ND) protocol implementation in the IPv6 stack in the Linux kernel before 3.19.6 allows remote attackers to reconfigure a hop-limit setting via a small hop_limit value in a Route…

debian debian_linux · fedoraproject fedora · linux linux_kernel · oracle linux · e altri 2
0.03EPSS
CVE-2023-38426
Critica 9.1

An issue was discovered in the Linux kernel before 6.3.4. ksmbd has an out-of-bounds read in smb2_find_context_vals when create_context's name_len is larger than the tag length.

linux linux_kernel · netapp h300s · netapp h410s · netapp h500s · e altri 3
0.03EPSS
CVE-2009-1633
Alta 7.1

Multiple buffer overflows in the cifs subsystem in the Linux kernel before 2.6.29.4 allow remote CIFS servers to cause a denial of service (memory corruption) and possibly have unspecified other impact via (1) a malformed Unicode string, related to Unicode str…

canonical ubuntu_linux · debian debian_linux · linux linux_kernel
0.03EPSS
CVE-2019-17666
Alta 8.8

rtl_p2p_noa_ie in drivers/net/wireless/realtek/rtlwifi/ps.c in the Linux kernel through 5.3.6 lacks a certain upper-bound check, leading to a buffer overflow.

canonical ubuntu_linux · debian debian_linux · linux linux_kernel
0.03EPSS
CVE-2007-1497
Media 5.0

nf_conntrack in netfilter in the Linux kernel before 2.6.20.3 does not set nfctinfo during reassembly of fragmented packets, which leaves the default value as IP_CT_ESTABLISHED and might allow remote attackers to bypass certain rulesets using IPv6 fragments.

linux linux_kernel
0.03EPSS
CVE-2005-2548
Media 5.0

vlan_dev.c in the VLAN code for Linux kernel 2.6.8 allows remote attackers to cause a denial of service (kernel oops from null dereference) via certain UDP packets that lead to a function call with the wrong argument, as demonstrated using snmpwalk on snmpd.

linux linux_kernel
0.03EPSS
CVE-2010-4563
Media 5.0

The Linux kernel, when using IPv6, allows remote attackers to determine whether a host is sniffing the network by sending an ICMPv6 Echo Request to a multicast address and determining whether an Echo Reply is sent, as demonstrated by thcping.

linux linux_kernel
0.03EPSS
CVE-2011-4604
Media 6.8

The bat_socket_read function in net/batman-adv/icmp_socket.c in the Linux kernel before 3.3 allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a crafted batman-adv ICMP packet.

linux linux_kernel
0.03EPSS
CVE-2014-0100
Alta 9.3

Race condition in the inet_frag_intern function in net/ipv4/inet_fragment.c in the Linux kernel through 3.13.6 allows remote attackers to cause a denial of service (use-after-free error) or possibly have unspecified other impact via a large series of fragmente…

linux linux_kernel
0.03EPSS