CVE-2015-6252
- EPSS 0.09%
- Veröffentlicht 19.10.2015 10:59:06
- Zuletzt bearbeitet 12.04.2025 10:46:40
The vhost_dev_ioctl function in drivers/vhost/vhost.c in the Linux kernel before 4.1.5 allows local users to cause a denial of service (memory consumption) via a VHOST_SET_LOG_FD ioctl call that triggers permanent file-descriptor allocation.
CVE-2015-5707
- EPSS 0.09%
- Veröffentlicht 19.10.2015 10:59:05
- Zuletzt bearbeitet 12.04.2025 10:46:40
Integer overflow in the sg_start_req function in drivers/scsi/sg.c in the Linux kernel 2.6.x through 4.x before 4.1 allows local users to cause a denial of service or possibly have unspecified other impact via a large iov_count value in a write reque...
CVE-2015-5283
- EPSS 0.1%
- Veröffentlicht 19.10.2015 10:59:03
- Zuletzt bearbeitet 12.04.2025 10:46:40
The sctp_init function in net/sctp/protocol.c in the Linux kernel before 4.2.3 has an incorrect sequence of protocol-initialization steps, which allows local users to cause a denial of service (panic or memory corruption) by creating SCTP sockets bef...
CVE-2015-5156
- EPSS 0.22%
- Veröffentlicht 19.10.2015 10:59:02
- Zuletzt bearbeitet 12.04.2025 10:46:40
The virtnet_probe function in drivers/net/virtio_net.c in the Linux kernel before 4.2 attempts to support a FRAGLIST feature without proper memory allocation, which allows guest OS users to cause a denial of service (buffer overflow and memory corrup...
CVE-2015-0275
- EPSS 0.11%
- Veröffentlicht 19.10.2015 10:59:00
- Zuletzt bearbeitet 12.04.2025 10:46:40
The ext4_zero_range function in fs/ext4/extents.c in the Linux kernel before 4.1 allows local users to cause a denial of service (BUG) via a crafted fallocate zero-range request.
CVE-2013-7445
- EPSS 1.23%
- Veröffentlicht 16.10.2015 01:59:00
- Zuletzt bearbeitet 12.04.2025 10:46:40
The Direct Rendering Manager (DRM) subsystem in the Linux kernel through 4.x mishandles requests for Graphics Execution Manager (GEM) objects, which allows context-dependent attackers to cause a denial of service (memory consumption) via an applicati...
CVE-2015-6526
- EPSS 0.04%
- Veröffentlicht 31.08.2015 20:59:07
- Zuletzt bearbeitet 12.04.2025 10:46:40
The perf_callchain_user_64 function in arch/powerpc/perf/callchain.c in the Linux kernel before 4.0.2 on ppc64 platforms allows local users to cause a denial of service (infinite loop) via a deep 64-bit userspace backtrace.
CVE-2015-4036
- EPSS 0.1%
- Veröffentlicht 31.08.2015 20:59:01
- Zuletzt bearbeitet 12.04.2025 10:46:40
Array index error in the tcm_vhost_make_tpg function in drivers/vhost/scsi.c in the Linux kernel before 4.0 might allow guest OS users to cause a denial of service (memory corruption) or possibly have unspecified other impact via a crafted VHOST_SCSI...
CVE-2015-5706
- EPSS 0.06%
- Veröffentlicht 31.08.2015 10:59:16
- Zuletzt bearbeitet 12.04.2025 10:46:40
Use-after-free vulnerability in the path_openat function in fs/namei.c in the Linux kernel 3.x and 4.x before 4.0.4 allows local users to cause a denial of service or possibly have unspecified other impact via O_TMPFILE filesystem operations that lev...
CVE-2015-5697
- EPSS 0.06%
- Veröffentlicht 31.08.2015 10:59:14
- Zuletzt bearbeitet 12.04.2025 10:46:40
The get_bitmap_file function in drivers/md/md.c in the Linux kernel before 4.1.6 does not initialize a certain bitmap data structure, which allows local users to obtain sensitive information from kernel memory via a GET_BITMAP_FILE ioctl call.