CVE-2015-8961
- EPSS 0.25%
- Published 16.11.2016 05:59:00
- Last modified 12.04.2025 10:46:40
The __ext4_journal_stop function in fs/ext4/ext4_jbd2.c in the Linux kernel before 4.3.3 allows local users to gain privileges or cause a denial of service (use-after-free) by leveraging improper access to a certain error field.
CVE-2016-5195
- EPSS 94.25%
- Published 10.11.2016 21:59:00
- Last modified 12.04.2025 10:46:40
Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by leveraging incorrect handling of a copy-on-write (COW) feature to write to a read-only memory mapping, as exploited in the wild in Oc...
CVE-2016-8666
- EPSS 3.52%
- Published 16.10.2016 21:59:15
- Last modified 12.04.2025 10:46:40
The IP stack in the Linux kernel before 4.6 allows remote attackers to cause a denial of service (stack consumption and panic) or possibly have unspecified other impact by triggering use of the GRO path for packets with tunnel stacking, as demonstrat...
CVE-2016-8660
- EPSS 0.12%
- Published 16.10.2016 21:59:14
- Last modified 12.04.2025 10:46:40
The XFS subsystem in the Linux kernel through 4.8.2 allows local users to cause a denial of service (fdatasync failure and system hang) by using the vfs syscall group in the trinity program, related to a "page lock order bug in the XFS seek hole/data...
CVE-2016-8658
- EPSS 0.3%
- Published 16.10.2016 21:59:13
- Last modified 12.04.2025 10:46:40
Stack-based buffer overflow in the brcmf_cfg80211_start_ap function in drivers/net/wireless/broadcom/brcm80211/brcmfmac/cfg80211.c in the Linux kernel before 4.7.5 allows local users to cause a denial of service (system crash) or possibly have unspec...
CVE-2016-7425
- EPSS 0.08%
- Published 16.10.2016 21:59:12
- Last modified 12.04.2025 10:46:40
The arcmsr_iop_message_xfer function in drivers/scsi/arcmsr/arcmsr_hba.c in the Linux kernel through 4.8.2 does not restrict a certain length field, which allows local users to gain privileges or cause a denial of service (heap-based buffer overflow)...
CVE-2016-7097
- EPSS 0.05%
- Published 16.10.2016 21:59:11
- Last modified 12.04.2025 10:46:40
The filesystem implementation in the Linux kernel through 4.8.2 preserves the setgid bit during a setxattr call, which allows local users to gain group privileges by leveraging the existence of a setgid program with restrictions on execute permission...
CVE-2016-7042
- EPSS 0.1%
- Published 16.10.2016 21:59:10
- Last modified 12.04.2025 10:46:40
The proc_keys_show function in security/keys/proc.c in the Linux kernel through 4.8.2, when the GNU Compiler Collection (gcc) stack protector is enabled, uses an incorrect buffer size for certain timeout data, which allows local users to cause a deni...
CVE-2016-7039
- EPSS 0.88%
- Published 16.10.2016 21:59:09
- Last modified 12.04.2025 10:46:40
The IP stack in the Linux kernel through 4.8.2 allows remote attackers to cause a denial of service (stack consumption and panic) or possibly have unspecified other impact by triggering use of the GRO path for large crafted packets, as demonstrated b...
CVE-2016-6828
- EPSS 0.1%
- Published 16.10.2016 21:59:08
- Last modified 12.04.2025 10:46:40
The tcp_check_send_head function in include/net/tcp.h in the Linux kernel before 4.7.5 does not properly maintain certain SACK state after a failed data copy, which allows local users to cause a denial of service (tcp_xmit_retransmit_queue use-after-...