Linux

Linux Kernel

12162 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.07%
  • Veröffentlicht 28.12.2016 07:59:00
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The blk_rq_map_user_iov function in block/blk-map.c in the Linux kernel before 4.8.14 does not properly restrict the type of iterator, which allows local users to read or write to arbitrary kernel memory locations or cause a denial of service (use-af...

  • EPSS 0.08%
  • Veröffentlicht 28.12.2016 07:59:00
  • Zuletzt bearbeitet 12.04.2025 10:46:40

arch/x86/kvm/vmx.c in the Linux kernel through 4.9 mismanages the #BP and #OF exceptions, which allows guest OS users to cause a denial of service (guest OS crash) by declining to handle an exception thrown by an L2 guest.

  • EPSS 0.07%
  • Veröffentlicht 28.12.2016 07:59:00
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Multiple memory leaks in error paths in fs/xfs/xfs_attr_list.c in the Linux kernel before 4.5.1 allow local users to cause a denial of service (memory consumption) via crafted XFS filesystem operations.

  • EPSS 0.05%
  • Veröffentlicht 28.12.2016 07:59:00
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The netfilter subsystem in the Linux kernel before 4.9 mishandles IPv6 reassembly, which allows local users to cause a denial of service (integer overflow, out-of-bounds write, and GPF) or possibly have unspecified other impact via a crafted applicat...

  • EPSS 0.03%
  • Veröffentlicht 28.12.2016 07:59:00
  • Zuletzt bearbeitet 12.04.2025 10:46:40

arch/x86/kvm/emulate.c in the Linux kernel before 4.8.12 does not properly initialize Code Segment (CS) in certain error cases, which allows local users to obtain sensitive information from kernel stack memory via a crafted application.

  • EPSS 0.07%
  • Veröffentlicht 28.12.2016 07:59:00
  • Zuletzt bearbeitet 12.04.2025 10:46:40

KVM in the Linux kernel before 4.8.12, when I/O APIC is enabled, does not properly restrict the VCPU index, which allows guest OS users to gain host OS privileges or cause a denial of service (out-of-bounds array access and host OS crash) via a craft...

  • EPSS 2.18%
  • Veröffentlicht 28.12.2016 07:59:00
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The sock_setsockopt function in net/core/sock.c in the Linux kernel before 4.8.14 mishandles negative values of sk_sndbuf and sk_rcvbuf, which allows local users to cause a denial of service (memory corruption and system crash) or possibly have unspe...

  • EPSS 0.06%
  • Veröffentlicht 28.12.2016 07:59:00
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Race condition in the snd_pcm_period_elapsed function in sound/core/pcm_lib.c in the ALSA subsystem in the Linux kernel before 4.7 allows local users to cause a denial of service (use-after-free) or possibly have unspecified other impact via a crafte...

  • EPSS 0.05%
  • Veröffentlicht 28.12.2016 07:59:00
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Race condition in the netlink_dump function in net/netlink/af_netlink.c in the Linux kernel before 4.6.3 allows local users to cause a denial of service (double free) or possibly have unspecified other impact via a crafted application that makes send...

  • EPSS 0.28%
  • Veröffentlicht 08.12.2016 21:59:02
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Race condition in the ion_ioctl function in drivers/staging/android/ion/ion.c in the Linux kernel before 4.6 allows local users to gain privileges or cause a denial of service (use-after-free) by calling ION_IOC_FREE on two CPUs at the same time.