CVE-2016-2187
- EPSS 0.03%
- Veröffentlicht 02.05.2016 10:59:30
- Zuletzt bearbeitet 12.04.2025 10:46:40
The gtco_probe function in drivers/input/tablet/gtco.c in the Linux kernel through 4.5.2 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and system crash) via a crafted endpoints value in a USB device desc...
CVE-2016-2186
- EPSS 0.05%
- Veröffentlicht 02.05.2016 10:59:29
- Zuletzt bearbeitet 12.04.2025 10:46:40
The powermate_probe function in drivers/input/misc/powermate.c in the Linux kernel before 4.5.1 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and system crash) via a crafted endpoints value in a USB devi...
CVE-2016-2185
- EPSS 0.04%
- Veröffentlicht 02.05.2016 10:59:28
- Zuletzt bearbeitet 12.04.2025 10:46:40
The ati_remote2_probe function in drivers/input/misc/ati_remote2.c in the Linux kernel before 4.5.1 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and system crash) via a crafted endpoints value in a USB ...
CVE-2016-2117
- EPSS 0.7%
- Veröffentlicht 02.05.2016 10:59:27
- Zuletzt bearbeitet 12.04.2025 10:46:40
The atl2_probe function in drivers/net/ethernet/atheros/atlx/atl2.c in the Linux kernel through 4.5.2 incorrectly enables scatter/gather I/O, which allows remote attackers to obtain sensitive information from kernel memory by reading packet data.
CVE-2016-2070
- EPSS 0.77%
- Veröffentlicht 02.05.2016 10:59:26
- Zuletzt bearbeitet 12.04.2025 10:46:40
The tcp_cwnd_reduction function in net/ipv4/tcp_input.c in the Linux kernel before 4.3.5 allows remote attackers to cause a denial of service (divide-by-zero error and system crash) via crafted TCP traffic.
CVE-2016-2053
- EPSS 0.07%
- Veröffentlicht 02.05.2016 10:59:25
- Zuletzt bearbeitet 12.04.2025 10:46:40
The asn1_ber_decoder function in lib/asn1_decoder.c in the Linux kernel before 4.3 allows attackers to cause a denial of service (panic) via an ASN.1 BER file that lacks a public key, leading to mishandling by the public_key_verify_signature function...
CVE-2016-1576
- EPSS 0.35%
- Veröffentlicht 02.05.2016 10:59:24
- Zuletzt bearbeitet 12.04.2025 10:46:40
The overlayfs implementation in the Linux kernel through 4.5.2 does not properly restrict the mount namespace, which allows local users to gain privileges by mounting an overlayfs filesystem on top of a FUSE filesystem, and then executing a crafted s...
CVE-2016-1575
- EPSS 0.53%
- Veröffentlicht 02.05.2016 10:59:23
- Zuletzt bearbeitet 12.04.2025 10:46:40
The overlayfs implementation in the Linux kernel through 4.5.2 does not properly maintain POSIX ACL xattr data, which allows local users to gain privileges by leveraging a group-writable setgid directory.
CVE-2015-8839
- EPSS 0.04%
- Veröffentlicht 02.05.2016 10:59:22
- Zuletzt bearbeitet 12.04.2025 10:46:40
Multiple race conditions in the ext4 filesystem implementation in the Linux kernel before 4.5 allow local users to cause a denial of service (disk corruption) by writing to a page that is associated with a different user's file after unsynchronized h...
CVE-2015-8830
- EPSS 0.06%
- Veröffentlicht 02.05.2016 10:59:20
- Zuletzt bearbeitet 12.04.2025 10:46:40
Integer overflow in the aio_setup_single_vector function in fs/aio.c in the Linux kernel 4.0 allows local users to cause a denial of service or possibly have unspecified other impact via a large AIO iovec. NOTE: this vulnerability exists because of ...