imPC@ndo EN

Vulnerabilità Linux

14.775 CVE

CVE-2021-3679
Media 5.5

A lack of CPU resource in the Linux kernel tracing module functionality in versions prior to 5.14-rc3 was found in the way user uses trace ring buffer in a specific way. Only privileged local users (with CAP_SYS_ADMIN capability) could use this flaw to starve …

debian debian_linux · linux linux_kernel · redhat enterprise_linux
0.01EPSS
CVE-2019-14283
Media 6.8

In the Linux kernel before 5.2.3, set_geometry in drivers/block/floppy.c does not validate the sect and head fields, as demonstrated by an integer overflow and out-of-bounds read. It can be triggered by an unprivileged local user when a floppy disk has been in…

linux linux_kernel
0.01EPSS
CVE-2024-42152
Alta 7.5

In the Linux kernel, the following vulnerability has been resolved: nvmet: fix a possible leak when destroy a ctrl during qp establishment In nvmet_sq_destroy we capture sq->ctrl early and if it is non-NULL we know that a ctrl was allocated (in the admin con…

linux linux_kernel
0.01EPSS
CVE-2024-36916
Alta 7.1

In the Linux kernel, the following vulnerability has been resolved: blk-iocost: avoid out of bounds shift UBSAN catches undefined behavior in blk-iocost, where sometimes iocg->delay is shifted right by a number that is too large, resulting in undefined behav…

debian debian_linux · linux linux_kernel
0.01EPSS
CVE-2026-53176
Critica 9.8

In the Linux kernel, the following vulnerability has been resolved: IB/isert: Reject login PDUs shorter than ISER_HEADERS_LEN In drivers/infiniband/ulp/isert/ib_isert.c, isert_login_recv_done() computes the login request payload length as wc->byte_len minus …

linux linux_kernel
0.01EPSS
CVE-2013-0160
Bassa 2.1

The Linux kernel through 3.7.9 allows local users to obtain sensitive information about keystroke timing by using the inotify API on the /dev/ptmx device.

linux linux_kernel
0.01EPSS
CVE-2024-40957
Alta 7.5

In the Linux kernel, the following vulnerability has been resolved: seg6: fix parameter passing when calling NF_HOOK() in End.DX4 and End.DX6 behaviors input_action_end_dx4() and input_action_end_dx6() are called NF_HOOK() for PREROUTING hook, in PREROUTING …

linux linux_kernel
0.01EPSS
CVE-2020-9383
Alta 7.1

An issue was discovered in the Linux kernel 3.16 through 5.5.6. set_fdc in drivers/block/floppy.c leads to a wait_til_ready out-of-bounds read because the FDC index is not checked for errors before assigning it, aka CID-2e90ca68b0d2.

canonical ubuntu_linux · debian debian_linux · linux linux_kernel · netapp active_iq_unified_manager · e altri 8
0.01EPSS
CVE-2007-1734
Alta 7.2

The DCCP support in the do_dccp_getsockopt function in net/dccp/proto.c in Linux kernel 2.6.20 and later does not verify the upper bounds of the optlen value, which allows local users running on certain architectures to read kernel memory or cause a denial of …

linux linux_kernel
0.01EPSS
CVE-2024-35853
Media 6.4

In the Linux kernel, the following vulnerability has been resolved: mlxsw: spectrum_acl_tcam: Fix memory leak during rehash The rehash delayed work migrates filters from one region to another. This is done by iterating over all chunks (all the filters with t…

debian debian_linux · linux linux_kernel
0.01EPSS
CVE-2024-47696
Alta 7.5

In the Linux kernel, the following vulnerability has been resolved: RDMA/iwcm: Fix WARNING:at_kernel/workqueue.c:#check_flush_dependency In the commit aee2424246f9 ("RDMA/iwcm: Fix a use-after-free related to destroying CM IDs"), the function flush_workqueue…

linux linux_kernel
0.01EPSS
CVE-1999-0381
Alta 7.2

super 3.11.6 and other versions have a buffer overflow in the syslog utility which allows a local user to gain root access.

debian debian_linux · linux linux_kernel
0.01EPSS
CVE-2026-43499
Alta 7.8

In the Linux kernel, the following vulnerability has been resolved: rtmutex: Use waiter::task instead of current in remove_waiter() remove_waiter() is used by the slowlock paths, but it is also used for proxy-lock rollback in rt_mutex_start_proxy_lock() when…

linux linux_kernel
0.01EPSS
CVE-2023-52741
Critica 9.8

In the Linux kernel, the following vulnerability has been resolved: cifs: Fix use-after-free in rdata->read_into_pages() When the network status is unstable, use-after-free may occur when read data from the server. BUG: KASAN: use-after-free in readpages_…

linux linux_kernel
0.01EPSS
CVE-2025-37879
Critica 9.8

In the Linux kernel, the following vulnerability has been resolved: 9p/net: fix improper handling of bogus negative read/write replies In p9_client_write() and p9_client_read_once(), if the server incorrectly replies with success but a negative write/read co…

debian debian_linux · linux linux_kernel
0.01EPSS
CVE-2024-42247
Alta 7.5

In the Linux kernel, the following vulnerability has been resolved: wireguard: allowedips: avoid unaligned 64-bit memory accesses On the parisc platform, the kernel issues kernel warnings because swap_endian() tries to load a 128-bit IPv6 address from an una…

linux linux_kernel
0.01EPSS
CVE-2024-26877
Critica 9.8

In the Linux kernel, the following vulnerability has been resolved: crypto: xilinx - call finalize with bh disabled When calling crypto_finalize_request, BH should be disabled to avoid triggering the following calltrace: ------------[ cut here ]--------…

debian debian_linux · linux linux_kernel
0.01EPSS
CVE-2023-3389
Alta 7.8

A use-after-free vulnerability in the Linux Kernel io_uring subsystem can be exploited to achieve local privilege escalation. Racing a io_uring cancel poll request with a linked timeout can cause a UAF in a hrtimer. We recommend upgrading past commit ef7dfac…

canonical ubuntu_linux · debian debian_linux · linux linux_kernel
0.01EPSS
CVE-2017-9077
Alta 7.8

The tcp_v6_syn_recv_sock function in net/ipv6/tcp_ipv6.c in the Linux kernel through 4.11.1 mishandles inheritance, which allows local users to cause a denial of service or possibly have unspecified other impact via crafted system calls, a related issue to CVE…

linux linux_kernel
0.01EPSS
CVE-2005-0916
Bassa 2.1

AIO in the Linux kernel 2.6.11 on the PPC64 or IA64 architectures with CONFIG_HUGETLB_PAGE enabled allows local users to cause a denial of service (system panic) via a process that executes the io_queue_init function but exits without running io_queue_release,…

linux linux_kernel
0.01EPSS
CVE-2024-26736
Alta 8.1

In the Linux kernel, the following vulnerability has been resolved: afs: Increase buffer size in afs_update_volume_status() The max length of volume->vid value is 20 characters. So increase idbuf[] size up to 24 to avoid overflow. Found by Linux Verificatio…

debian debian_linux · linux linux_kernel
0.01EPSS
CVE-2018-10882
Media 4.8

A flaw was found in the Linux kernel's ext4 filesystem. A local user can cause an out-of-bound write in in fs/jbd2/transaction.c code, a denial of service, and a system crash by unmounting a crafted ext4 filesystem image.

canonical ubuntu_linux · debian debian_linux · linux linux_kernel · redhat enterprise_linux
0.01EPSS
CVE-2014-9895
Media 5.5

drivers/media/media-device.c in the Linux kernel before 3.11, as used in Android before 2016-08-05 on Nexus 5 and 7 (2013) devices, does not properly initialize certain data structures, which allows local users to obtain sensitive information via a crafted app…

google android · linux linux_kernel
0.01EPSS
CVE-2024-26952
Alta 8.3

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix potencial out-of-bounds when buffer offset is invalid I found potencial out-of-bounds when buffer offset fields of a few requests is invalid. This patch set the minimum value of b…

linux linux_kernel
0.01EPSS
CVE-2020-11494
Media 4.4

An issue was discovered in slc_bump in drivers/net/can/slcan.c in the Linux kernel 3.16 through 5.6.2. It allows attackers to read uninitialized can_frame data, potentially containing sensitive information from kernel stack memory, if the configuration lacks C…

canonical ubuntu_linux · debian debian_linux · linux linux_kernel · opensuse leap
0.01EPSS