Linux

Linux Kernel

12164 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.04%
  • Veröffentlicht 23.05.2017 05:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

The crypto_skcipher_init_tfm function in crypto/skcipher.c in the Linux kernel through 4.11.2 relies on a setkey function that lacks a key-size check, which allows local users to cause a denial of service (NULL pointer dereference) via a crafted appl...

  • EPSS 0.53%
  • Veröffentlicht 22.05.2017 22:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

The do_check function in kernel/bpf/verifier.c in the Linux kernel before 4.11.1 does not make the allow_ptr_leaks value available for restricting the output of the print_bpf_insn function, which allows local users to obtain sensitive address informa...

  • EPSS 0.97%
  • Veröffentlicht 19.05.2017 14:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

The tcp_v6_syn_recv_sock function in net/ipv6/tcp_ipv6.c in the Linux kernel through 4.11.1 mishandles inheritance, which allows local users to cause a denial of service or possibly have unspecified other impact via crafted system calls, a related is...

  • EPSS 0.08%
  • Veröffentlicht 19.05.2017 07:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

The IPv6 fragmentation implementation in the Linux kernel through 4.11.1 does not consider that the nexthdr field may be associated with an invalid option, which allows local users to cause a denial of service (out-of-bounds read and BUG) or possibly...

  • EPSS 0.08%
  • Veröffentlicht 19.05.2017 07:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

The sctp_v6_create_accept_sk function in net/sctp/ipv6.c in the Linux kernel through 4.11.1 mishandles inheritance, which allows local users to cause a denial of service or possibly have unspecified other impact via crafted system calls, a related is...

  • EPSS 0.08%
  • Veröffentlicht 19.05.2017 07:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

The dccp_v6_request_recv_sock function in net/dccp/ipv6.c in the Linux kernel through 4.11.1 mishandles inheritance, which allows local users to cause a denial of service or possibly have unspecified other impact via crafted system calls, a related i...

  • EPSS 0.12%
  • Veröffentlicht 18.05.2017 06:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

The NFSv4 implementation in the Linux kernel through 4.11.1 allows local users to cause a denial of service (resource consumption) by leveraging improper channel callback shutdown when unmounting an NFSv4 filesystem, aka a "module reference and kerne...

  • EPSS 0.05%
  • Veröffentlicht 15.05.2017 18:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

fs/ext4/inode.c in the Linux kernel before 4.6.2, when ext4 data=ordered mode is used, mishandles a needs-flushing-before-commit list, which allows local users to obtain sensitive information from other users' files in opportunistic circumstances by ...

  • EPSS 0.09%
  • Veröffentlicht 14.05.2017 22:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

The ipxitf_ioctl function in net/ipx/af_ipx.c in the Linux kernel through 4.11.1 mishandles reference counts, which allows local users to cause a denial of service (use-after-free) or possibly have unspecified other impact via a failed SIOCGIFADDR io...

  • EPSS 0.11%
  • Veröffentlicht 12.05.2017 21:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

The edge_bulk_in_callback function in drivers/usb/serial/io_ti.c in the Linux kernel before 4.10.4 allows local users to obtain sensitive information (in the dmesg ringbuffer and syslog) from uninitialized kernel memory by using a crafted USB device ...