CVE-2023-28328
- EPSS 0.01%
- Veröffentlicht 19.04.2023 23:15:07
- Zuletzt bearbeitet 19.03.2025 16:15:21
A NULL pointer dereference flaw was found in the az6027 driver in drivers/media/usb/dev-usb/az6027.c in the Linux Kernel. The message from user space is not checked properly before transferring into the device. This flaw allows a local user to crash ...
CVE-2023-2166
- EPSS 0.02%
- Veröffentlicht 19.04.2023 23:15:07
- Zuletzt bearbeitet 05.02.2025 16:15:38
A null pointer dereference issue was found in can protocol in net/can/af_can.c in the Linux before Linux. ml_priv may not be initialized in the receive path of CAN frames. A local user could use this flaw to crash the system or potentially cause a de...
CVE-2023-1382
- EPSS 0.01%
- Veröffentlicht 19.04.2023 23:15:06
- Zuletzt bearbeitet 19.03.2025 16:15:17
A data race flaw was found in the Linux kernel, between where con is allocated and con->sock is set. This issue leads to a NULL pointer dereference when accessing con->sock->sk in net/tipc/topsrv.c in the tipc protocol in the Linux kernel.
CVE-2023-2162
- EPSS 0.01%
- Veröffentlicht 19.04.2023 20:15:12
- Zuletzt bearbeitet 19.03.2025 16:15:21
A use-after-free vulnerability was found in iscsi_sw_tcp_session_create in drivers/scsi/iscsi_tcp.c in SCSI sub-component in the Linux Kernel. In this flaw an attacker could leak kernel internal information.
CVE-2023-30772
- EPSS 0.06%
- Veröffentlicht 16.04.2023 04:15:08
- Zuletzt bearbeitet 05.05.2025 16:15:39
The Linux kernel before 6.2.9 has a race condition and resultant use-after-free in drivers/power/supply/da9150-charger.c if a physically proximate attacker unplugs a device.
CVE-2023-2008
- EPSS 1.12%
- Veröffentlicht 14.04.2023 21:15:08
- Zuletzt bearbeitet 05.05.2025 16:15:35
A flaw was found in the Linux kernel's udmabuf device driver. The specific flaw exists within a fault handler. The issue results from the lack of proper validation of user-supplied data, which can result in a memory access past the end of an array. A...
CVE-2023-1990
- EPSS 0.01%
- Veröffentlicht 12.04.2023 20:15:07
- Zuletzt bearbeitet 19.03.2025 16:15:17
A use-after-free flaw was found in ndlc_remove in drivers/nfc/st-nci/ndlc.c in the Linux Kernel. This flaw could allow an attacker to crash the system due to a race problem.
- EPSS 0.03%
- Veröffentlicht 12.04.2023 16:15:17
- Zuletzt bearbeitet 13.02.2025 17:16:00
A use-after-free vulnerability in the Linux Kernel io_uring system can be exploited to achieve local privilege escalation. The io_file_get_fixed function lacks the presence of ctx->uring_lock which can lead to a Use-After-Free vulnerability due a ra...
CVE-2023-1829
- EPSS 0.22%
- Veröffentlicht 12.04.2023 12:15:07
- Zuletzt bearbeitet 13.02.2025 17:16:00
A use-after-free vulnerability in the Linux Kernel traffic control index filter (tcindex) can be exploited to achieve local privilege escalation. The tcindex_delete function which does not properly deactivate filters in case of a perfect hashes while...
- EPSS 0.02%
- Veröffentlicht 11.04.2023 21:15:15
- Zuletzt bearbeitet 21.11.2024 07:40:17
A use-after-free flaw was found in btsdio_remove in drivers\bluetooth\btsdio.c in the Linux Kernel. In this flaw, a call to btsdio_remove with an unfinished job, may cause a race problem leading to a UAF on hdev devices.