Linux

Linux Kernel

12164 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.77%
  • Published 05.12.2017 09:29:00
  • Last modified 20.04.2025 01:37:25

The dccp_disconnect function in net/dccp/proto.c in the Linux kernel through 4.14.3 allows local users to gain privileges or cause a denial of service (use-after-free) via an AF_UNSPEC connect system call during the DCCP_LISTEN state.

Exploit
  • EPSS 3.64%
  • Published 30.11.2017 22:29:00
  • Last modified 20.04.2025 01:37:25

The Linux Kernel versions 2.6.38 through 4.14 have a problematic use of pmd_mkdirty() in the touch_pmd() function inside the THP implementation. touch_pmd() can be reached by get_user_pages(). In such case, the pmd will become dirty. This scenario br...

  • EPSS 0.05%
  • Published 30.11.2017 18:29:00
  • Last modified 20.04.2025 01:37:25

The rngapi_reset function in crypto/rng.c in the Linux kernel before 4.2 allows attackers to cause a denial of service (NULL pointer dereference).

  • EPSS 0.11%
  • Published 29.11.2017 03:29:00
  • Last modified 20.04.2025 01:37:25

The mm_init function in kernel/fork.c in the Linux kernel before 4.12.10 does not clear the ->exe_file member of a new process's mm_struct, allowing a local attacker to achieve a use-after-free or possibly have unspecified other impact by running a s...

  • EPSS 0.11%
  • Published 29.11.2017 03:29:00
  • Last modified 20.04.2025 01:37:25

The init_new_context function in arch/x86/include/asm/mmu_context.h in the Linux kernel before 4.12.10 does not correctly handle errors from LDT table allocation when forking a new process, allowing a local attacker to achieve a use-after-free or pos...

Exploit
  • EPSS 4.8%
  • Published 27.11.2017 19:29:00
  • Last modified 20.04.2025 01:37:25

The walk_hugetlb_range function in mm/pagewalk.c in the Linux kernel before 4.14.2 mishandles holes in hugetlb ranges, which allows local users to obtain sensitive information from uninitialized kernel memory via crafted use of the mincore() system c...

Exploit
  • EPSS 8.99%
  • Published 24.11.2017 10:29:00
  • Last modified 20.04.2025 01:37:25

The XFRM dump policy implementation in net/xfrm/xfrm_user.c in the Linux kernel before 4.13.11 allows local users to gain privileges or cause a denial of service (use-after-free) via a crafted SO_RCVBUF setsockopt system call in conjunction with XFRM...

  • EPSS 0.09%
  • Published 22.11.2017 18:29:00
  • Last modified 20.04.2025 01:37:25

The bio_map_user_iov and bio_unmap_user functions in block/bio.c in the Linux kernel before 4.13.8 do unbalanced refcounting when a SCSI I/O vector has small consecutive buffers belonging to the same page. The bio_add_pc_page function merges them int...

  • EPSS 0.07%
  • Published 22.11.2017 18:29:00
  • Last modified 20.04.2025 01:37:25

The assoc_array_insert_into_terminal_node function in lib/assoc_array.c in the Linux kernel before 4.13.11 mishandles node splitting, which allows local users to cause a denial of service (NULL pointer dereference and panic) via a crafted application...

  • EPSS 0.11%
  • Published 15.11.2017 21:29:00
  • Last modified 20.04.2025 01:37:25

The tower_probe function in drivers/usb/misc/legousbtower.c in the Linux kernel before 4.8.1 allows local users (who are physically proximate for inserting a crafted USB device) to gain privileges by leveraging a write-what-where condition that occur...