Linux

Linux Kernel

14023 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.22%
  • Veröffentlicht 02.05.2016 10:59:33
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The aufs module for the Linux kernel 3.x and 4.x does not properly restrict the mount namespace, which allows local users to gain privileges by mounting an aufs filesystem on top of a FUSE filesystem, and then executing a crafted setuid program.

Exploit
  • EPSS 0.14%
  • Veröffentlicht 02.05.2016 10:59:32
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The iowarrior_probe function in drivers/usb/misc/iowarrior.c in the Linux kernel before 4.5.1 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and system crash) via a crafted endpoints value in a USB device...

  • EPSS 0.03%
  • Veröffentlicht 02.05.2016 10:59:30
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The gtco_probe function in drivers/input/tablet/gtco.c in the Linux kernel through 4.5.2 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and system crash) via a crafted endpoints value in a USB device desc...

Exploit
  • EPSS 0.05%
  • Veröffentlicht 02.05.2016 10:59:29
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The powermate_probe function in drivers/input/misc/powermate.c in the Linux kernel before 4.5.1 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and system crash) via a crafted endpoints value in a USB devi...

Exploit
  • EPSS 0.04%
  • Veröffentlicht 02.05.2016 10:59:28
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The ati_remote2_probe function in drivers/input/misc/ati_remote2.c in the Linux kernel before 4.5.1 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and system crash) via a crafted endpoints value in a USB ...

  • EPSS 0.72%
  • Veröffentlicht 02.05.2016 10:59:27
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The atl2_probe function in drivers/net/ethernet/atheros/atlx/atl2.c in the Linux kernel through 4.5.2 incorrectly enables scatter/gather I/O, which allows remote attackers to obtain sensitive information from kernel memory by reading packet data.

  • EPSS 0.77%
  • Veröffentlicht 02.05.2016 10:59:26
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The tcp_cwnd_reduction function in net/ipv4/tcp_input.c in the Linux kernel before 4.3.5 allows remote attackers to cause a denial of service (divide-by-zero error and system crash) via crafted TCP traffic.

  • EPSS 0.09%
  • Veröffentlicht 02.05.2016 10:59:25
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The asn1_ber_decoder function in lib/asn1_decoder.c in the Linux kernel before 4.3 allows attackers to cause a denial of service (panic) via an ASN.1 BER file that lacks a public key, leading to mishandling by the public_key_verify_signature function...

Exploit
  • EPSS 0.35%
  • Veröffentlicht 02.05.2016 10:59:24
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The overlayfs implementation in the Linux kernel through 4.5.2 does not properly restrict the mount namespace, which allows local users to gain privileges by mounting an overlayfs filesystem on top of a FUSE filesystem, and then executing a crafted s...

Exploit
  • EPSS 0.53%
  • Veröffentlicht 02.05.2016 10:59:23
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The overlayfs implementation in the Linux kernel through 4.5.2 does not properly maintain POSIX ACL xattr data, which allows local users to gain privileges by leveraging a group-writable setgid directory.