imPC@ndo EN

Vulnerabilità Linux

14.775 CVE

CVE-2023-1194
Alta 7.1

An out-of-bounds (OOB) memory read flaw was found in parse_lease_state in the KSMBD implementation of the in-kernel samba server and CIFS in the Linux kernel. When an attacker sends the CREATE command with a malformed payload to KSMBD, due to a missing check o…

fedoraproject fedora · linux linux_kernel
0.01EPSS
CVE-2011-3191
Alta 8.8

Integer signedness error in the CIFSFindNext function in fs/cifs/cifssmb.c in the Linux kernel before 3.1 allows remote CIFS servers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a large length value in a respon…

linux linux_kernel · redhat enterprise_linux
0.01EPSS
CVE-2017-0330
Media 4.7

An information disclosure vulnerability in the NVIDIA crypto driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it first requires compromising a privileged process. Product…

linux linux_kernel
0.01EPSS
CVE-2022-29968
Alta 7.8

An issue was discovered in the Linux kernel through 5.17.5. io_rw_init_file in fs/io_uring.c lacks initialization of kiocb->private.

fedoraproject fedora · linux linux_kernel · netapp h300s_firmware · netapp h410c_firmware · e altri 4
0.01EPSS
CVE-2021-29155
Media 5.5

An issue was discovered in the Linux kernel through 5.11.x. kernel/bpf/verifier.c performs undesirable out-of-bounds speculation on pointer arithmetic, leading to side-channel attacks that defeat Spectre mitigations and obtain sensitive information from kernel…

debian debian_linux · fedoraproject fedora · linux linux_kernel
0.01EPSS
CVE-2024-49997
Alta 7.5

In the Linux kernel, the following vulnerability has been resolved: net: ethernet: lantiq_etop: fix memory disclosure When applying padding, the buffer is not zeroed, which results in memory disclosure. The mentioned data is observed on the wire. This patch …

linux linux_kernel
0.01EPSS
CVE-2018-18281
Alta 7.8

Since Linux kernel version 3.2, the mremap() syscall performs TLB flushes after dropping pagetable locks. If a syscall such as ftruncate() removes entries from the pagetables of a task that is in the middle of mremap(), a stale TLB entry can remain for a short…

canonical ubuntu_linux · debian debian_linux · linux linux_kernel
0.01EPSS
CVE-2025-37778
Critica 9.8

In the Linux kernel, the following vulnerability has been resolved: ksmbd: Fix dangling pointer in krb_authenticate krb_authenticate frees sess->user and does not set the pointer to NULL. It calls ksmbd_krb5_authenticate to reinitialise sess->user but that f…

debian debian_linux · linux linux_kernel
0.01EPSS
CVE-2005-3257
Media 4.6

The VT implementation (vt_ioctl.c) in Linux kernel 2.6.12, and possibly other versions including 2.6.14.4, allows local users to use the KDSKBSENT ioctl on terminals of other users and gain privileges, as demonstrated by modifying key bindings using loadkeys.

linux linux_kernel
0.01EPSS
CVE-2022-25375
Media 5.5

An issue was discovered in drivers/usb/gadget/function/rndis.c in the Linux kernel before 5.16.10. The RNDIS USB gadget lacks validation of the size of the RNDIS_MSG_SET command. Attackers can obtain sensitive information from kernel memory.

debian debian_linux · linux linux_kernel
0.01EPSS
CVE-2022-25265
Alta 7.8

In the Linux kernel through 5.16.10, certain binary files may have the exec-all attribute if they were built in approximately 2003 (e.g., with GCC 3.2.2 and Linux kernel 2.4.20). This can cause execution of bytes located in supposedly non-executable regions of…

linux linux_kernel · netapp baseboard_management_controller_firmware · netapp h300e_firmware · netapp h300s_firmware · e altri 5
0.01EPSS
CVE-2017-0586
Media 4.7

An information disclosure vulnerability in the Qualcomm sound driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it first requires compromising a privileged process. Produc…

linux linux_kernel
0.01EPSS
CVE-2017-0584
Media 4.7

An information disclosure vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it first requires compromising a privileged process. Produc…

linux linux_kernel
0.01EPSS
CVE-2023-1193
Media 6.5

A use-after-free flaw was found in setup_async_work in the KSMBD implementation of the in-kernel samba server and CIFS in the Linux kernel. This issue could allow an attacker to crash the system by accessing freed work.

linux linux_kernel
0.01EPSS
CVE-2005-4605
Bassa 2.1

The procfs code (proc_misc.c) in Linux 2.6.14.3 and other versions before 2.6.15 allows attackers to read sensitive kernel memory via unspecified vectors in which a signed value is added to an unsigned value.

linux linux_kernel
0.01EPSS
CVE-2017-0537
Media 4.7

An information disclosure vulnerability in the kernel USB gadget driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it first requires compromising a privileged process. Pro…

linux linux_kernel
0.01EPSS
CVE-2016-8407
Media 4.7

An information disclosure vulnerability in kernel components including the ION subsystem, Binder, USB driver and networking subsystem could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate be…

linux linux_kernel
0.01EPSS
CVE-2016-8406
Media 4.7

An information disclosure vulnerability in kernel components including the ION subsystem, Binder, USB driver and networking subsystem could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate be…

linux linux_kernel
0.01EPSS
CVE-2016-8404
Media 4.7

An information disclosure vulnerability in kernel components including the ION subsystem, Binder, USB driver and networking subsystem could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate be…

linux linux_kernel
0.01EPSS
CVE-2016-8403
Media 4.7

An information disclosure vulnerability in kernel components including the ION subsystem, Binder, USB driver and networking subsystem could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate be…

linux linux_kernel
0.01EPSS
CVE-2016-8402
Media 4.7

An information disclosure vulnerability in kernel components including the ION subsystem, Binder, USB driver and networking subsystem could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate be…

linux linux_kernel
0.01EPSS
CVE-2016-8401
Media 4.7

An information disclosure vulnerability in kernel components including the ION subsystem, Binder, USB driver and networking subsystem could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate be…

linux linux_kernel
0.01EPSS
CVE-2010-4077
Bassa 1.9

The ntty_ioctl_tiocgicount function in drivers/char/nozomi.c in the Linux kernel 2.6.36.1 and earlier does not properly initialize a certain structure member, which allows local users to obtain potentially sensitive information from kernel stack memory via a T…

linux linux_kernel
0.01EPSS
CVE-2013-1773
Media 6.2

Buffer overflow in the VFAT filesystem implementation in the Linux kernel before 3.3 allows local users to gain privileges or cause a denial of service (system crash) via a VFAT write operation on a filesystem with the utf8 mount option, which is not properly …

linux linux_kernel · redhat enterprise_linux · redhat enterprise_mrg
0.01EPSS
CVE-2004-1335
Bassa 2.1

Memory leak in the ip_options_get function in the Linux kernel before 2.6.10 allows local users to cause a denial of service (memory consumption) by repeatedly calling the ip_cmsg_send function.

linux linux_kernel · redhat fedora_core · redhat linux
0.01EPSS