Linux

Linux Kernel

12164 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.08%
  • Published 26.09.2017 05:29:00
  • Last modified 20.04.2025 01:37:25

The KVM subsystem in the Linux kernel through 4.13.3 allows guest OS users to cause a denial of service (assertion failure, and hypervisor hang or crash) via an out-of bounds guest_irq value, related to arch/x86/kvm/vmx.c and virt/kvm/eventfd.c.

  • EPSS 0.03%
  • Published 26.09.2017 05:29:00
  • Last modified 20.04.2025 01:37:25

The prepare_vmcs02 function in arch/x86/kvm/vmx.c in the Linux kernel through 4.13.3 does not ensure that the "CR8-load exiting" and "CR8-store exiting" L0 vmcs02 controls exist in cases where L1 omits the "use TPR shadow" vmcs12 control, which allow...

  • EPSS 0.21%
  • Published 25.09.2017 21:29:00
  • Last modified 20.04.2025 01:37:25

Out-of-bounds memory read in the x509_decode_time function in x509_cert_parser.c in Linux kernels 4.3-rc1 and after.

  • EPSS 0.02%
  • Published 21.09.2017 15:29:00
  • Last modified 20.04.2025 01:37:25

A security flaw was discovered in the nl80211_set_rekey_data() function in net/wireless/nl80211.c in the Linux kernel through 4.13.3. This function does not check whether the required attributes are present in a Netlink request. This request can be i...

  • EPSS 0.05%
  • Published 20.09.2017 08:29:00
  • Last modified 20.04.2025 01:37:25

The access_pmu_evcntr function in arch/arm64/kvm/sys_regs.c in the Linux kernel before 4.8.11 allows privileged KVM guest OS users to cause a denial of service (assertion failure and host OS crash) by accessing the Performance Monitors Cycle Count Re...

  • EPSS 0.11%
  • Published 15.09.2017 18:29:00
  • Last modified 20.04.2025 01:37:25

The tpacket_rcv function in net/packet/af_packet.c in the Linux kernel before 4.13 mishandles vnet headers, which might allow local users to cause a denial of service (buffer overflow, and disk and memory corruption) or possibly have unspecified othe...

  • EPSS 0.04%
  • Published 15.09.2017 11:29:00
  • Last modified 20.04.2025 01:37:25

The XFS_IS_REALTIME_INODE macro in fs/xfs/xfs_linux.h in the Linux kernel before 4.13.2 does not verify that a filesystem has a realtime device, which allows local users to cause a denial of service (NULL pointer dereference and OOPS) via vectors rel...

  • EPSS 0.27%
  • Published 15.09.2017 10:29:00
  • Last modified 20.04.2025 01:37:25

The iscsi_if_rx function in drivers/scsi/scsi_transport_iscsi.c in the Linux kernel through 4.13.2 allows local users to cause a denial of service (panic) by leveraging incorrect length validation.

Exploit
  • EPSS 4.19%
  • Published 12.09.2017 17:29:00
  • Last modified 20.04.2025 01:37:25

The native Bluetooth stack in the Linux Kernel (BlueZ), starting at the Linux kernel version 2.6.32 and up to and including 4.13.1, are vulnerable to a stack overflow vulnerability in the processing of L2CAP configuration responses resulting in Remot...

  • EPSS 0.06%
  • Published 08.09.2017 19:29:00
  • Last modified 20.04.2025 01:37:25

The driver_override implementation in drivers/base/platform.c in the Linux kernel before 4.12.1 allows local users to gain privileges by leveraging a race condition between a read operation and a store operation that involve different overrides.