CVE-2015-2150
- EPSS 0.11%
- Published 12.03.2015 14:59:02
- Last modified 12.04.2025 10:46:40
Xen 3.3.x through 4.5.x and the Linux kernel through 3.19.1 do not properly restrict access to PCI command registers, which might allow local guest OS users to cause a denial of service (non-maskable interrupt and host crash) by disabling the (1) mem...
CVE-2014-9683
- EPSS 0.07%
- Published 03.03.2015 11:59:02
- Last modified 12.04.2025 10:46:40
Off-by-one error in the ecryptfs_decode_from_filename function in fs/ecryptfs/crypto.c in the eCryptfs subsystem in the Linux kernel before 3.18.2 allows local users to cause a denial of service (buffer overflow and system crash) or possibly gain pri...
CVE-2015-0239
- EPSS 0.1%
- Published 02.03.2015 11:59:04
- Last modified 12.04.2025 10:46:40
The em_sysenter function in arch/x86/kvm/emulate.c in the Linux kernel before 3.18.5, when the guest OS lacks SYSENTER MSR initialization, allows guest OS users to gain guest OS privileges or cause a denial of service (guest OS crash) by triggering u...
CVE-2014-9644
- EPSS 0.04%
- Published 02.03.2015 11:59:03
- Last modified 12.04.2025 10:46:40
The Crypto API in the Linux kernel before 3.18.5 allows local users to load arbitrary kernel modules via a bind system call for an AF_ALG socket with a parenthesized module template expression in the salg_name field, as demonstrated by the vfat(aes) ...
- EPSS 2.9%
- Published 02.03.2015 11:59:02
- Last modified 12.04.2025 10:46:40
net/netfilter/nf_conntrack_proto_generic.c in the Linux kernel before 3.18 generates incorrect conntrack entries during handling of certain iptables rule sets for the SCTP, DCCP, GRE, and UDP-Lite protocols, which allows remote attackers to bypass in...
CVE-2013-7421
- EPSS 0.03%
- Published 02.03.2015 11:59:00
- Last modified 12.04.2025 10:46:40
The Crypto API in the Linux kernel before 3.18.5 allows local users to load arbitrary kernel modules via a bind system call for an AF_ALG socket with a module name in the salg_name field, a different vulnerability than CVE-2014-9644.
CVE-2014-5332
- EPSS 0.04%
- Published 06.02.2015 11:59:03
- Last modified 12.04.2025 10:46:40
Race condition in NVMap in NVIDIA Tegra Linux Kernel 3.10 allows local users to gain privileges via a crafted NVMAP_IOC_CREATE IOCTL call, which triggers a use-after-free error, as demonstrated by using a race condition to escape the Chrome sandbox.
CVE-2014-9585
- EPSS 0.05%
- Published 09.01.2015 21:59:02
- Last modified 12.04.2025 10:46:40
The vdso_addr function in arch/x86/vdso/vma.c in the Linux kernel through 3.18.2 does not properly choose memory locations for the vDSO area, which makes it easier for local users to bypass the ASLR protection mechanism by guessing a location at the ...
CVE-2014-9584
- EPSS 0.13%
- Published 09.01.2015 21:59:01
- Last modified 12.04.2025 10:46:40
The parse_rock_ridge_inode_internal function in fs/isofs/rock.c in the Linux kernel before 3.18.2 does not validate a length value in the Extensions Reference (ER) System Use Field, which allows local users to obtain sensitive information from kernel...
CVE-2014-9529
- EPSS 0.11%
- Published 09.01.2015 21:59:00
- Last modified 12.04.2025 10:46:40
Race condition in the key_gc_unused_keys function in security/keys/gc.c in the Linux kernel through 3.18.2 allows local users to cause a denial of service (memory corruption or panic) or possibly have unspecified other impact via keyctl commands that...