Linux

Linux Kernel

12164 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.09%
  • Published 05.09.2017 17:29:00
  • Last modified 20.04.2025 01:37:25

The atyfb_ioctl function in drivers/video/fbdev/aty/atyfb_base.c in the Linux kernel through 4.12.10 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel stack memory by reading locations ...

  • EPSS 0.07%
  • Published 05.09.2017 06:29:00
  • Last modified 20.04.2025 01:37:25

The move_pages system call in mm/migrate.c in the Linux kernel before 4.12.9 doesn't check the effective uid of the target process, enabling a local attacker to learn the memory layout of a setuid executable despite ASLR.

  • EPSS 0.08%
  • Published 01.09.2017 16:29:00
  • Last modified 20.04.2025 01:37:25

The tcp_disconnect function in net/ipv4/tcp.c in the Linux kernel before 4.12 allows local users to cause a denial of service (__tcp_select_window divide-by-zero error and system crash) by triggering a disconnect within a certain tcp_recvmsg code pat...

  • EPSS 0.07%
  • Published 31.08.2017 04:29:00
  • Last modified 20.04.2025 01:37:25

An integer overflow in the qla2x00_sysfs_write_optrom_ctl function in drivers/scsi/qla2xxx/qla_attr.c in the Linux kernel through 4.12.10 allows local users to cause a denial of service (memory corruption and system crash) by leveraging root access.

  • EPSS 5.72%
  • Published 29.08.2017 01:35:13
  • Last modified 20.04.2025 01:37:25

The __skb_flow_dissect function in net/core/flow_dissector.c in the Linux kernel before 4.3 does not ensure that n_proto, ip_proto, and thoff are initialized, which allows remote attackers to cause a denial of service (system crash) or possibly execu...

  • EPSS 0.04%
  • Published 25.08.2017 08:29:00
  • Last modified 20.04.2025 01:37:25

The acpi_ds_create_operands() function in drivers/acpi/acpica/dsutils.c in the Linux kernel through 4.12.9 does not flush the operand cache and causes a kernel stack dump, which allows local users to obtain sensitive information from kernel memory an...

  • EPSS 0.05%
  • Published 25.08.2017 08:29:00
  • Last modified 20.04.2025 01:37:25

The acpi_ps_complete_final_op() function in drivers/acpi/acpica/psobject.c in the Linux kernel through 4.12.9 does not flush the node and node_ext caches and causes a kernel stack dump, which allows local users to obtain sensitive information from ke...

  • EPSS 0.01%
  • Published 25.08.2017 08:29:00
  • Last modified 20.04.2025 01:37:25

The acpi_ns_evaluate() function in drivers/acpi/acpica/nseval.c in the Linux kernel through 4.12.9 does not flush the operand cache and causes a kernel stack dump, which allows local users to obtain sensitive information from kernel memory and bypass...

  • EPSS 0.13%
  • Published 24.08.2017 22:29:00
  • Last modified 20.04.2025 01:37:25

net/ipv4/route.c in the Linux kernel 4.13-rc1 through 4.13-rc6 is too late to check for a NULL fi field when RTM_F_FIB_MATCH is set, which allows local users to cause a denial of service (NULL pointer dereference) or possibly have unspecified other i...

  • EPSS 27.64%
  • Published 19.08.2017 18:29:00
  • Last modified 20.04.2025 01:37:25

Race condition in fs/timerfd.c in the Linux kernel before 4.10.15 allows local users to gain privileges or cause a denial of service (list corruption or use-after-free) via simultaneous file-descriptor operations that leverage improper might_cancel q...