CVE-2016-5728
- EPSS 0.01%
- Published 27.06.2016 10:59:12
- Last modified 12.04.2025 10:46:40
Race condition in the vop_ioctl function in drivers/misc/mic/vop/vop_vringh.c in the MIC VOP driver in the Linux kernel before 4.6.1 allows local users to obtain sensitive information from kernel memory or cause a denial of service (memory corruption...
CVE-2016-5244
- EPSS 0.77%
- Published 27.06.2016 10:59:11
- Last modified 12.04.2025 10:46:40
The rds_inc_info_copy function in net/rds/recv.c in the Linux kernel through 4.6.3 does not initialize a certain structure member, which allows remote attackers to obtain sensitive information from kernel stack memory by reading an RDS message.
CVE-2016-5243
- EPSS 0.04%
- Published 27.06.2016 10:59:10
- Last modified 12.04.2025 10:46:40
The tipc_nl_compat_link_dump function in net/tipc/netlink_compat.c in the Linux kernel through 4.6.3 does not properly copy a certain string, which allows local users to obtain sensitive information from kernel stack memory by reading a Netlink messa...
CVE-2016-4470
- EPSS 0.06%
- Published 27.06.2016 10:59:08
- Last modified 12.04.2025 10:46:40
The key_reject_and_link function in security/keys/key.c in the Linux kernel through 4.6.3 does not ensure that a certain data structure is initialized, which allows local users to cause a denial of service (system crash) via vectors involving a craft...
CVE-2016-4440
- EPSS 0.16%
- Published 27.06.2016 10:59:07
- Last modified 12.04.2025 10:46:40
arch/x86/kvm/vmx.c in the Linux kernel through 4.6.3 mishandles the APICv on/off state, which allows guest OS users to obtain direct APIC MSR access on the host OS, and consequently cause a denial of service (host OS crash) or possibly execute arbitr...
CVE-2016-3713
- EPSS 0.06%
- Published 27.06.2016 10:59:05
- Last modified 12.04.2025 10:46:40
The msr_mtrr_valid function in arch/x86/kvm/mtrr.c in the Linux kernel before 4.6.1 supports MSR 0x2f8, which allows guest OS users to read or write to the kvm_arch_vcpu data structure, and consequently obtain sensitive information or cause a denial ...
CVE-2016-1583
- EPSS 0.25%
- Published 27.06.2016 10:59:03
- Last modified 12.04.2025 10:46:40
The ecryptfs_privileged_open function in fs/ecryptfs/kthread.c in the Linux kernel before 4.6.3 allows local users to gain privileges or cause a denial of service (stack memory consumption) via vectors involving crafted mmap calls for /proc pathnames...
CVE-2016-0758
- EPSS 0.2%
- Published 27.06.2016 10:59:02
- Last modified 12.04.2025 10:46:40
Integer overflow in lib/asn1_decoder.c in the Linux kernel before 4.6 allows local users to gain privileges via crafted ASN.1 data.
CVE-2014-9904
- EPSS 0.09%
- Published 27.06.2016 10:59:01
- Last modified 12.04.2025 10:46:40
The snd_compress_check_input function in sound/core/compress_offload.c in the ALSA subsystem in the Linux kernel before 3.17 does not properly check for an integer overflow, which allows local users to cause a denial of service (insufficient memory a...
CVE-2014-9903
- EPSS 0.05%
- Published 27.06.2016 10:59:00
- Last modified 12.04.2025 10:46:40
The sched_read_attr function in kernel/sched/core.c in the Linux kernel 3.14-rc before 3.14-rc4 uses an incorrect size, which allows local users to obtain sensitive information from kernel stack memory via a crafted sched_getattr system call.