Linux

Linux Kernel

14575 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.05%
  • Veröffentlicht 28.12.2016 07:59:00
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Race condition in the snd_pcm_period_elapsed function in sound/core/pcm_lib.c in the ALSA subsystem in the Linux kernel before 4.7 allows local users to cause a denial of service (use-after-free) or possibly have unspecified other impact via a crafte...

  • EPSS 0.03%
  • Veröffentlicht 28.12.2016 07:59:00
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Race condition in the netlink_dump function in net/netlink/af_netlink.c in the Linux kernel before 4.6.3 allows local users to cause a denial of service (double free) or possibly have unspecified other impact via a crafted application that makes send...

  • EPSS 0.11%
  • Veröffentlicht 08.12.2016 21:59:02
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Race condition in the ion_ioctl function in drivers/staging/android/ion/ion.c in the Linux kernel before 4.6 allows local users to gain privileges or cause a denial of service (use-after-free) by calling ION_IOC_FREE on two CPUs at the same time.

  • EPSS 0.07%
  • Veröffentlicht 08.12.2016 21:59:01
  • Zuletzt bearbeitet 12.04.2025 10:46:40

arch/arm64/kernel/sys.c in the Linux kernel before 4.0 allows local users to bypass the "strict page permissions" protection mechanism and modify the system-call table, and consequently gain privileges, by leveraging write access.

  • EPSS 0.18%
  • Veröffentlicht 08.12.2016 21:59:00
  • Zuletzt bearbeitet 12.04.2025 10:46:40

arch/arm/kernel/sys_oabi-compat.c in the Linux kernel before 4.4 allows local users to gain privileges via a crafted (1) F_OFD_GETLK, (2) F_OFD_SETLK, or (3) F_OFD_SETLKW command in an fcntl64 system call.

  • EPSS 5.46%
  • Veröffentlicht 08.12.2016 17:59:03
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The icmp6_send function in net/ipv6/icmp.c in the Linux kernel through 4.8.12 omits a certain check of the dst data structure, which allows remote attackers to cause a denial of service (panic) via a fragmented IPv6 packet.

  • EPSS 38.27%
  • Veröffentlicht 08.12.2016 08:59:00
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Race condition in net/packet/af_packet.c in the Linux kernel through 4.8.12 allows local users to gain privileges or cause a denial of service (use-after-free) by leveraging the CAP_NET_RAW capability to change a socket version, related to the packet...

  • EPSS 0.17%
  • Veröffentlicht 28.11.2016 03:59:18
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The __get_user_asm_ex macro in arch/x86/include/asm/uaccess.h in the Linux kernel 4.4.22 through 4.4.28 contains extended asm statements that are incompatible with the exception table, which allows local users to obtain root access on non-SMEP platfo...

  • EPSS 26.94%
  • Veröffentlicht 28.11.2016 03:59:17
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The sctp_sf_ootb function in net/sctp/sm_statefuns.c in the Linux kernel before 4.8.8 lacks chunk-length checking for the first chunk, which allows remote attackers to cause a denial of service (out-of-bounds slab access) or possibly have unspecified...

Exploit
  • EPSS 0.14%
  • Veröffentlicht 28.11.2016 03:59:15
  • Zuletzt bearbeitet 12.04.2025 10:46:40

security/keys/big_key.c in the Linux kernel before 4.8.7 mishandles unsuccessful crypto registration in conjunction with successful key-type registration, which allows local users to cause a denial of service (NULL pointer dereference and panic) or p...