CVE-2020-8649
- EPSS 0.49%
- Veröffentlicht 06.02.2020 01:15:10
- Zuletzt bearbeitet 21.11.2024 05:39:11
There is a use-after-free vulnerability in the Linux kernel through 5.5.2 in the vgacon_invert_region function in drivers/video/console/vgacon.c.
CVE-2019-3016
- EPSS 0.62%
- Veröffentlicht 31.01.2020 20:15:11
- Zuletzt bearbeitet 21.11.2024 04:41:59
In a Linux KVM guest that has PV TLB enabled, a process in the guest kernel may be able to read memory locations from another process in the same guest. This problem is limit to the host running linux kernel 4.10 with a guest running linux kernel 4.1...
CVE-2020-8428
- EPSS 0.66%
- Veröffentlicht 29.01.2020 00:15:10
- Zuletzt bearbeitet 21.11.2024 05:38:50
fs/namei.c in the Linux kernel before 5.5 has a may_create_in_sticky use-after-free, which allows local users to cause a denial of service (OOPS) or possibly obtain sensitive information from kernel memory, aka CID-d0cb50185ae9. One attack vector may...
CVE-2019-20422
- EPSS 0.43%
- Veröffentlicht 27.01.2020 05:15:10
- Zuletzt bearbeitet 21.11.2024 04:38:26
In the Linux kernel before 5.3.4, fib6_rule_lookup in net/ipv6/ip6_fib.c mishandles the RT6_LOOKUP_F_DST_NOREF flag in a reference-count decision, leading to (for example) a crash that was identified by syzkaller, aka CID-7b09c2d052db.
CVE-2019-9500
- EPSS 3.84%
- Veröffentlicht 16.01.2020 21:15:12
- Zuletzt bearbeitet 21.11.2024 04:51:44
The Broadcom brcmfmac WiFi driver prior to commit 1b5e2423164b3670e8bc9174e4762d297990deff is vulnerable to a heap buffer overflow. If the Wake-up on Wireless LAN functionality is configured, a malicious event frame can be constructed to trigger an h...
CVE-2019-18282
- EPSS 2.61%
- Veröffentlicht 16.01.2020 16:15:16
- Zuletzt bearbeitet 21.11.2024 04:32:58
The flow_dissector feature in the Linux kernel 4.3 through 5.x before 5.3.10 has a device tracking vulnerability, aka CID-55667441c84f. This occurs because the auto flowlabel of a UDP IPv6 packet relies on a 32-bit hashrnd value as a secret, and beca...
CVE-2007-4774
- EPSS 1.74%
- Veröffentlicht 15.01.2020 17:15:13
- Zuletzt bearbeitet 21.11.2024 00:36:25
The Linux kernel before 2.4.36-rc1 has a race condition. It was possible to bypass systrace policies by flooding the ptraced process with SIGCONT signals, which can can wake up a PTRACED process.
CVE-2020-7053
- EPSS 0.62%
- Veröffentlicht 14.01.2020 21:15:16
- Zuletzt bearbeitet 21.11.2024 05:36:34
In the Linux kernel 4.14 longterm through 4.14.165 and 4.19 longterm through 4.19.96 (and 5.x before 5.2), there is a use-after-free (write) in the i915_ppgtt_close function in drivers/gpu/drm/i915/i915_gem_gtt.c, aka CID-7dc40713618c. This is relate...
CVE-2019-19332
- EPSS 0.68%
- Veröffentlicht 09.01.2020 15:15:10
- Zuletzt bearbeitet 21.11.2024 04:34:35
An out-of-bounds memory write issue was found in the Linux Kernel, version 3.13 through 5.4, in the way the Linux kernel's KVM hypervisor handled the 'KVM_GET_EMULATED_CPUID' ioctl(2) request to get CPUID features emulated by the KVM hypervisor. A us...
- EPSS 0.75%
- Veröffentlicht 31.12.2019 02:15:10
- Zuletzt bearbeitet 21.11.2024 04:35:41
In the Linux kernel 5.0.0-rc7 (as distributed in ubuntu/linux.git on kernel.ubuntu.com), mounting a crafted f2fs filesystem image and performing some operations can lead to slab-out-of-bounds read access in ttm_put_pages in drivers/gpu/drm/ttm/ttm_pa...