Linux

Linux Kernel

18375 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.33%
  • Veröffentlicht 02.05.2016 10:59:12
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Race condition in the ldsem_cmpxchg function in drivers/tty/tty_ldsem.c in the Linux kernel before 3.13-rc4-next-20131218 allows local users to cause a denial of service (ldsem_down_read and ldsem_down_write deadlock) by establishing a new tty thread...

  • EPSS 0.39%
  • Veröffentlicht 02.05.2016 10:59:11
  • Zuletzt bearbeitet 06.05.2026 22:30:45

net/socket.c in the Linux kernel 3.19 before 3.19.3 does not validate certain range data for (1) sendto and (2) recvfrom system calls, which allows local users to gain privileges by leveraging a subsystem that uses the copy_from_iter function in the ...

  • EPSS 0.37%
  • Veröffentlicht 02.05.2016 10:59:10
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The xsave/xrstor implementation in arch/x86/include/asm/xsave.h in the Linux kernel before 3.19.2 creates certain .altinstr_replacement pointers and consequently does not provide any protection against instruction faulting, which allows local users t...

  • EPSS 0.37%
  • Veröffentlicht 02.05.2016 10:59:08
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The nft_flush_table function in net/netfilter/nf_tables_api.c in the Linux kernel before 3.18.5 mishandles the interaction between cross-chain jumps and ruleset flushes, which allows local users to cause a denial of service (panic) by leveraging the ...

Exploit
  • EPSS 0.49%
  • Veröffentlicht 02.05.2016 10:59:07
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The VFS subsystem in the Linux kernel 3.x provides an incomplete set of requirements for setattr operations that underspecifies removing extended privilege attributes, which allows local users to cause a denial of service (capability stripping) via a...

  • EPSS 0.33%
  • Veröffentlicht 02.05.2016 10:59:06
  • Zuletzt bearbeitet 06.05.2026 22:30:45

fs/namespace.c in the Linux kernel before 4.0.2 processes MNT_DETACH umount2 system calls without verifying that the MNT_LOCKED flag is unset, which allows local users to bypass intended access restrictions and navigate to filesystem locations beneat...

  • EPSS 0.35%
  • Veröffentlicht 02.05.2016 10:59:05
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Integer overflow in fs/aio.c in the Linux kernel before 3.4.1 allows local users to cause a denial of service or possibly have unspecified other impact via a large AIO iovec.

  • EPSS 0.31%
  • Veröffentlicht 02.05.2016 10:59:03
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The netlink_sendmsg function in net/netlink/af_netlink.c in the Linux kernel before 3.5.5 does not validate the dst_pid field, which allows local users to have an unspecified impact by spoofing Netlink messages.

  • EPSS 0.37%
  • Veröffentlicht 02.05.2016 10:59:02
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The tty_open function in drivers/tty/tty_io.c in the Linux kernel before 3.1.1 mishandles a driver-lookup failure, which allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other im...

  • EPSS 0.36%
  • Veröffentlicht 02.05.2016 10:59:01
  • Zuletzt bearbeitet 06.05.2026 22:30:45

mm/filemap.c in the Linux kernel before 2.6.25 allows local users to cause a denial of service (infinite loop) via a writev system call that triggers an iovec of zero length, followed by a page fault for an iovec of nonzero length.