imPC@ndo EN

Vulnerabilità Linux

14.775 CVE

CVE-2023-3269
Alta 7.8

A vulnerability exists in the memory management subsystem of the Linux kernel. The lock handling for accessing and updating virtual memory areas (VMAs) is incorrect, leading to use-after-free problems. This issue can be successfully exploited to execute arbitr…

fedoraproject fedora · linux linux_kernel · redhat enterprise_linux
0.01EPSS
CVE-2014-9410
Critica 9.8

The vfe31_proc_general function in drivers/media/video/msm/vfe/msm_vfe31.c in the MSM-VFE31 driver for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, does not validate a certain id v…

linux linux_kernel
0.01EPSS
CVE-2016-8468
Alta 7.0

An elevation of privilege vulnerability in Binder could enable a local malicious application to execute arbitrary code within the context of a privileged process. This issue is rated as Moderate because it first requires compromising a privileged process and i…

linux linux_kernel
0.01EPSS
CVE-2018-13098
Media 5.5

An issue was discovered in fs/f2fs/inode.c in the Linux kernel through 4.17.3. A denial of service (slab out-of-bounds read and BUG) can occur for a modified f2fs filesystem image in which FI_EXTRA_ATTR is set in an inode.

linux linux_kernel
0.01EPSS
CVE-2024-27405
Alta 7.5

In the Linux kernel, the following vulnerability has been resolved: usb: gadget: ncm: Avoid dropping datagrams of properly parsed NTBs It is observed sometimes when tethering is used over NCM with Windows 11 as host, at some instances, the gadget_giveback ha…

debian debian_linux · linux linux_kernel
0.01EPSS
CVE-2022-2585
Media 5.3

It was discovered that when exec'ing from a non-leader thread, armed POSIX CPU timers would be left on a list but freed, leading to a use-after-free.

canonical ubuntu_linux · linux linux_kernel
0.01EPSS
CVE-2022-42719
Alta 8.8

A use-after-free in the mac80211 stack when parsing a multi-BSSID element in the Linux kernel 5.2 through 5.19.x before 5.19.16 could be used by attackers (able to inject WLAN frames) to crash the kernel and potentially execute code.

debian debian_linux · fedoraproject fedora · linux linux_kernel
0.01EPSS
CVE-2017-0585
Media 4.7

An information disclosure vulnerability in the Broadcom Wi-Fi driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it first requires compromising a privileged process. Produc…

linux linux_kernel
0.01EPSS
CVE-2023-0122
Alta 7.5

A NULL pointer dereference vulnerability in the Linux kernel NVMe functionality, in nvmet_setup_auth(), allows an attacker to perform a Pre-Auth Denial of Service (DoS) attack on a remote machine. Affected versions v6.0-rc1 to v6.0-rc3, fixed in v6.0-rc4.

linux linux_kernel
0.01EPSS
CVE-2022-3621
Media 4.3

A vulnerability was found in Linux Kernel. It has been classified as problematic. Affected is the function nilfs_bmap_lookup_at_level of the file fs/nilfs2/inode.c of the component nilfs2. The manipulation leads to null pointer dereference. It is possible to l…

debian debian_linux · linux linux_kernel
0.01EPSS
CVE-2022-0400
Alta 7.5

An out-of-bounds read vulnerability was discovered in linux kernel in the smc protocol stack, causing remote dos.

linux linux_kernel
0.01EPSS
CVE-2014-9922
Alta 7.8

The eCryptfs subsystem in the Linux kernel before 3.18 allows local users to gain privileges via a large filesystem stack that includes an overlayfs layer, related to fs/ecryptfs/main.c and fs/overlayfs/super.c.

google android · linux linux_kernel
0.01EPSS
CVE-2023-52832
Critica 9.1

In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: don't return unset power in ieee80211_get_tx_power() We can get a UBSAN warning if ieee80211_get_tx_power() returns the INT_MIN value mac80211 internally uses for "unset powe…

linux linux_kernel
0.01EPSS
CVE-2017-9150
Media 5.5

The do_check function in kernel/bpf/verifier.c in the Linux kernel before 4.11.1 does not make the allow_ptr_leaks value available for restricting the output of the print_bpf_insn function, which allows local users to obtain sensitive address information via c…

linux linux_kernel
0.01EPSS
CVE-2009-1337
Media 4.4

The exit_notify function in kernel/exit.c in the Linux kernel before 2.6.30-rc1 does not restrict exit signals when the CAP_KILL capability is held, which allows local users to send an arbitrary signal to a process by running a program that modifies the exit_s…

linux linux_kernel
0.01EPSS
CVE-2016-8415
Alta 7.0

An elevation of privilege vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process.…

linux linux_kernel
0.01EPSS
CVE-2016-8412
Alta 7.0

An elevation of privilege vulnerability in the Qualcomm camera could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Produ…

linux linux_kernel
0.01EPSS
CVE-2015-2925
Media 6.9

The prepend_path function in fs/dcache.c in the Linux kernel before 4.2.4 does not properly handle rename actions inside a bind mount, which allows local users to bypass an intended container protection mechanism by renaming a directory, related to a "double-c…

canonical ubuntu_linux · debian debian_linux · linux linux_kernel
0.01EPSS
CVE-2021-38199
Media 6.5

fs/nfs/nfs4client.c in the Linux kernel before 5.13.4 has incorrect connection-setup ordering, which allows operators of remote NFSv4 servers to cause a denial of service (hanging of mounts) by arranging for those servers to be unreachable during trunking dete…

debian debian_linux · linux linux_kernel · netapp element_software · netapp hci_bootstrap_os · e altri 2
0.01EPSS
CVE-2013-1959
Bassa 3.7

kernel/user_namespace.c in the Linux kernel before 3.8.9 does not have appropriate capability requirements for the uid_map and gid_map files, which allows local users to gain privileges by opening a file within an unprivileged process and then modifying the fi…

linux linux_kernel
0.01EPSS
CVE-2023-38427
Critica 9.8

An issue was discovered in the Linux kernel before 6.3.8. fs/smb/server/smb2pdu.c in ksmbd has an integer underflow and out-of-bounds read in deassemble_neg_contexts.

linux linux_kernel · netapp h300s · netapp h410s · netapp h500s · e altri 1
0.01EPSS
CVE-2009-2908
Media 4.9

The d_delete function in fs/ecryptfs/inode.c in eCryptfs in the Linux kernel 2.6.31 allows local users to cause a denial of service (kernel OOPS) and possibly execute arbitrary code via unspecified vectors that cause a "negative dentry" and trigger a NULL poin…

linux linux_kernel
0.01EPSS
CVE-2012-0055
Alta 7.8

OverlayFS in the Linux kernel before 3.0.0-16.28, as used in Ubuntu 10.0.4 LTS and 11.10, is missing inode security checks which could allow attackers to bypass security restrictions and perform unauthorized actions.

canonical ubuntu_linux · linux linux_kernel
0.01EPSS
CVE-2021-3772
Media 6.5

A flaw was found in the Linux SCTP stack. A blind attacker may be able to kill an existing SCTP association through invalid chunks if the attacker knows the IP-addresses and port numbers being used and the attacker can send packets with spoofed IP addresses.

debian debian_linux · linux linux_kernel · netapp e-series_santricity_os_controller · netapp h300s_firmware · e altri 14
0.01EPSS
CVE-2020-1749
Alta 7.5

A flaw was found in the Linux kernel's implementation of some networking protocols in IPsec, such as VXLAN and GENEVE tunnels over IPv6. When an encrypted tunnel is created between two hosts, the kernel isn't correctly routing tunneled data over the encrypted …

linux linux_kernel · redhat enterprise_linux · redhat enterprise_mrg
0.01EPSS