CVE-2017-8824
- EPSS 0.77%
- Veröffentlicht 05.12.2017 09:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The dccp_disconnect function in net/dccp/proto.c in the Linux kernel through 4.14.3 allows local users to gain privileges or cause a denial of service (use-after-free) via an AF_UNSPEC connect system call during the DCCP_LISTEN state.
- EPSS 3.64%
- Veröffentlicht 30.11.2017 22:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The Linux Kernel versions 2.6.38 through 4.14 have a problematic use of pmd_mkdirty() in the touch_pmd() function inside the THP implementation. touch_pmd() can be reached by get_user_pages(). In such case, the pmd will become dirty. This scenario br...
CVE-2017-15116
- EPSS 0.05%
- Veröffentlicht 30.11.2017 18:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The rngapi_reset function in crypto/rng.c in the Linux kernel before 4.2 allows attackers to cause a denial of service (NULL pointer dereference).
CVE-2017-17052
- EPSS 0.11%
- Veröffentlicht 29.11.2017 03:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The mm_init function in kernel/fork.c in the Linux kernel before 4.12.10 does not clear the ->exe_file member of a new process's mm_struct, allowing a local attacker to achieve a use-after-free or possibly have unspecified other impact by running a s...
- EPSS 0.11%
- Veröffentlicht 29.11.2017 03:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The init_new_context function in arch/x86/include/asm/mmu_context.h in the Linux kernel before 4.12.10 does not correctly handle errors from LDT table allocation when forking a new process, allowing a local attacker to achieve a use-after-free or pos...
CVE-2017-16994
- EPSS 4.8%
- Veröffentlicht 27.11.2017 19:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The walk_hugetlb_range function in mm/pagewalk.c in the Linux kernel before 4.14.2 mishandles holes in hugetlb ranges, which allows local users to obtain sensitive information from uninitialized kernel memory via crafted use of the mincore() system c...
CVE-2017-16939
- EPSS 8.99%
- Veröffentlicht 24.11.2017 10:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The XFRM dump policy implementation in net/xfrm/xfrm_user.c in the Linux kernel before 4.13.11 allows local users to gain privileges or cause a denial of service (use-after-free) via a crafted SO_RCVBUF setsockopt system call in conjunction with XFRM...
CVE-2017-12190
- EPSS 0.09%
- Veröffentlicht 22.11.2017 18:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The bio_map_user_iov and bio_unmap_user functions in block/bio.c in the Linux kernel before 4.13.8 do unbalanced refcounting when a SCSI I/O vector has small consecutive buffers belonging to the same page. The bio_add_pc_page function merges them int...
CVE-2017-12193
- EPSS 0.07%
- Veröffentlicht 22.11.2017 18:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The assoc_array_insert_into_terminal_node function in lib/assoc_array.c in the Linux kernel before 4.13.11 mishandles node splitting, which allows local users to cause a denial of service (NULL pointer dereference and panic) via a crafted application...
CVE-2017-15102
- EPSS 0.11%
- Veröffentlicht 15.11.2017 21:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The tower_probe function in drivers/usb/misc/legousbtower.c in the Linux kernel before 4.8.1 allows local users (who are physically proximate for inserting a crafted USB device) to gain privileges by leveraging a write-what-where condition that occur...