CVE-2017-16527
- EPSS 0.12%
- Published 04.11.2017 01:29:36
- Last modified 20.04.2025 01:37:25
sound/usb/mixer.c in the Linux kernel before 4.13.8 allows local users to cause a denial of service (snd_usb_mixer_interrupt use-after-free and system crash) or possibly have unspecified other impact via a crafted USB device.
CVE-2017-16528
- EPSS 0.11%
- Published 04.11.2017 01:29:36
- Last modified 20.04.2025 01:37:25
sound/core/seq_device.c in the Linux kernel before 4.13.4 allows local users to cause a denial of service (snd_rawmidi_dev_seq_free use-after-free and system crash) or possibly have unspecified other impact via a crafted USB device.
CVE-2017-16529
- EPSS 0.12%
- Published 04.11.2017 01:29:36
- Last modified 20.04.2025 01:37:25
The snd_usb_create_streams function in sound/usb/card.c in the Linux kernel before 4.13.6 allows local users to cause a denial of service (out-of-bounds read and system crash) or possibly have unspecified other impact via a crafted USB device.
CVE-2017-16530
- EPSS 0.09%
- Published 04.11.2017 01:29:36
- Last modified 20.04.2025 01:37:25
The uas driver in the Linux kernel before 4.13.6 allows local users to cause a denial of service (out-of-bounds read and system crash) or possibly have unspecified other impact via a crafted USB device, related to drivers/usb/storage/uas-detect.h and...
CVE-2017-16531
- EPSS 0.09%
- Published 04.11.2017 01:29:36
- Last modified 20.04.2025 01:37:25
drivers/usb/core/config.c in the Linux kernel before 4.13.6 allows local users to cause a denial of service (out-of-bounds read and system crash) or possibly have unspecified other impact via a crafted USB device, related to the USB_DT_INTERFACE_ASSO...
CVE-2017-1000255
- EPSS 0.05%
- Published 30.10.2017 20:29:00
- Last modified 20.04.2025 01:37:25
On Linux running on PowerPC hardware (Power8 or later) a user process can craft a signal frame and then do a sigreturn so that the kernel will take an exception (interrupt), and use the r1 value *from the signal frame* as the kernel stack pointer. As...
CVE-2006-5331
- EPSS 0.06%
- Published 29.10.2017 06:29:00
- Last modified 20.04.2025 01:37:25
The altivec_unavailable_exception function in arch/powerpc/kernel/traps.c in the Linux kernel before 2.6.19 on 64-bit systems mishandles the case where CONFIG_ALTIVEC is defined and the CPU actually supports Altivec, but the Altivec support was not d...
CVE-2017-15951
- EPSS 0.1%
- Published 28.10.2017 02:29:00
- Last modified 20.04.2025 01:37:25
The KEYS subsystem in the Linux kernel before 4.13.10 does not correctly synchronize the actions of updating versus finding a key in the "negative" state to avoid a race condition, which allows local users to cause a denial of service or possibly hav...
CVE-2017-15649
- EPSS 0.37%
- Published 19.10.2017 22:29:00
- Last modified 20.04.2025 01:37:25
net/packet/af_packet.c in the Linux kernel before 4.13.6 allows local users to gain privileges via crafted system calls that trigger mishandling of packet_fanout data structures, because of a race condition (involving fanout_add and packet_do_bind) t...
CVE-2017-15537
- EPSS 0.05%
- Published 17.10.2017 18:29:00
- Last modified 20.04.2025 01:37:25
The x86/fpu (Floating Point Unit) subsystem in the Linux kernel before 4.13.5, when a processor supports the xsave feature but not the xsaves feature, does not correctly handle attempts to set reserved bits in the xstate header via the ptrace() or rt...