CVE-2016-2069
- EPSS 0.32%
- Veröffentlicht 27.04.2016 17:59:07
- Zuletzt bearbeitet 06.05.2026 22:30:45
Race condition in arch/x86/mm/tlb.c in the Linux kernel before 4.4.1 allows local users to gain privileges by triggering access to a paging structure by a different CPU.
CVE-2016-2085
- EPSS 0.44%
- Veröffentlicht 27.04.2016 17:59:07
- Zuletzt bearbeitet 06.05.2026 22:30:45
The evm_verify_hmac function in security/integrity/evm/evm_main.c in the Linux kernel before 4.5 does not properly copy data, which makes it easier for local users to forge MAC values via a timing side-channel attack.
CVE-2016-0774
- EPSS 0.34%
- Veröffentlicht 27.04.2016 17:59:06
- Zuletzt bearbeitet 06.05.2026 22:30:45
The (1) pipe_read and (2) pipe_write implementations in fs/pipe.c in a certain Linux kernel backport in the linux package before 3.2.73-2+deb7u3 on Debian wheezy and the kernel package before 3.10.0-229.26.2 on Red Hat Enterprise Linux (RHEL) 7.1 do ...
CVE-2015-8845
- EPSS 0.39%
- Veröffentlicht 27.04.2016 17:59:05
- Zuletzt bearbeitet 06.05.2026 22:30:45
The tm_reclaim_thread function in arch/powerpc/kernel/process.c in the Linux kernel before 4.4.1 on powerpc platforms does not ensure that TM suspend mode exists before proceeding with a tm_reclaim call, which allows local users to cause a denial of ...
CVE-2015-8844
- EPSS 0.39%
- Veröffentlicht 27.04.2016 17:59:04
- Zuletzt bearbeitet 06.05.2026 22:30:45
The signal implementation in the Linux kernel before 4.3.5 on powerpc platforms does not check for an MSR with both the S and T bits set, which allows local users to cause a denial of service (TM Bad Thing exception and panic) via a crafted applicati...
CVE-2015-8816
- EPSS 0.54%
- Veröffentlicht 27.04.2016 17:59:03
- Zuletzt bearbeitet 06.05.2026 22:30:45
The hub_activate function in drivers/usb/core/hub.c in the Linux kernel before 4.3.5 does not properly maintain a hub-interface data structure, which allows physically proximate attackers to cause a denial of service (invalid memory access and system...
- EPSS 14.55%
- Veröffentlicht 27.04.2016 17:59:02
- Zuletzt bearbeitet 06.05.2026 22:30:45
drivers/infiniband/hw/cxgb3/iwch_cm.c in the Linux kernel before 4.5 does not properly identify error conditions, which allows remote attackers to execute arbitrary code or cause a denial of service (use-after-free) via crafted packets.
CVE-2015-7515
- EPSS 1.8%
- Veröffentlicht 27.04.2016 17:59:01
- Zuletzt bearbeitet 06.05.2026 22:30:45
The aiptek_probe function in drivers/input/tablet/aiptek.c in the Linux kernel before 4.4 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and system crash) via a crafted USB device that lacks endpoints.
CVE-2015-1339
- EPSS 0.43%
- Veröffentlicht 27.04.2016 17:59:00
- Zuletzt bearbeitet 06.05.2026 22:30:45
Memory leak in the cuse_channel_release function in fs/fuse/cuse.c in the Linux kernel before 4.4 allows local users to cause a denial of service (memory consumption) or possibly have unspecified other impact by opening /dev/cuse many times.
- EPSS 0.45%
- Veröffentlicht 13.04.2016 15:59:05
- Zuletzt bearbeitet 06.05.2026 22:30:45
The PCI backend driver in Xen, when running on an x86 system and using Linux 3.1.x through 4.3.x as the driver domain, allows local guest administrators to hit BUG conditions and cause a denial of service (NULL pointer dereference and host OS crash) ...