Linux

Linux Kernel

12162 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.04%
  • Veröffentlicht 31.08.2015 10:59:03
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The udf_pc_to_char function in fs/udf/symlink.c in the Linux kernel before 3.18.2 relies on component lengths that are unused, which allows local users to cause a denial of service (system crash) via a crafted UDF filesystem image.

  • EPSS 0.04%
  • Veröffentlicht 31.08.2015 10:59:02
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The udf_read_inode function in fs/udf/inode.c in the Linux kernel before 3.18.2 does not ensure a certain data-structure size consistency, which allows local users to cause a denial of service (system crash) via a crafted UDF filesystem image.

  • EPSS 0.04%
  • Veröffentlicht 31.08.2015 10:59:00
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The UDF filesystem implementation in the Linux kernel before 3.18.2 does not validate certain lengths, which allows local users to cause a denial of service (buffer over-read and system crash) via a crafted filesystem image, related to fs/udf/inode.c...

  • EPSS 15.14%
  • Veröffentlicht 08.08.2015 10:59:00
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The (1) pipe_read and (2) pipe_write implementations in fs/pipe.c in the Linux kernel before 3.16 do not properly consider the side effects of failed __copy_to_user_inatomic and __copy_from_user_inatomic calls, which allows local users to cause a den...

  • EPSS 1.9%
  • Veröffentlicht 06.08.2015 01:59:00
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The ping_unhash function in net/ipv4/ping.c in the Linux kernel before 4.0.3 does not initialize a certain list data structure during an unhash operation, which allows local users to gain privileges or cause a denial of service (use-after-free and sy...

  • EPSS 0.05%
  • Veröffentlicht 05.08.2015 18:59:00
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The udf_read_inode function in fs/udf/inode.c in the Linux kernel before 3.19.1 does not validate certain length values, which allows local users to cause a denial of service (incorrect data representation or integer overflow, and OOPS) via a crafted...

  • EPSS 0.04%
  • Veröffentlicht 27.07.2015 10:59:00
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The kvm_apic_has_events function in arch/x86/kvm/lapic.h in the Linux kernel through 4.1.3 allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact by leveraging /dev/kvm ac...

Exploit
  • EPSS 4.97%
  • Veröffentlicht 07.06.2015 23:59:08
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The OZWPAN driver in the Linux kernel through 4.0.5 relies on an untrusted length field during packet parsing, which allows remote attackers to obtain sensitive information from kernel memory or cause a denial of service (out-of-bounds read and syste...

  • EPSS 1.47%
  • Veröffentlicht 07.06.2015 23:59:07
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The oz_usb_handle_ep_data function in drivers/staging/ozwpan/ozusbsvc1.c in the OZWPAN driver in the Linux kernel through 4.0.5 allows remote attackers to cause a denial of service (divide-by-zero error and system crash) via a crafted packet.

  • EPSS 3.36%
  • Veröffentlicht 07.06.2015 23:59:06
  • Zuletzt bearbeitet 12.04.2025 10:46:40

drivers/staging/ozwpan/ozusbsvc1.c in the OZWPAN driver in the Linux kernel through 4.0.5 does not ensure that certain length values are sufficiently large, which allows remote attackers to cause a denial of service (system crash or large loop) or po...