Linux

Linux Kernel

12373 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.03%
  • Veröffentlicht 23.01.2024 09:15:36
  • Zuletzt bearbeitet 04.06.2025 16:15:33

copy_params in drivers/md/dm-ioctl.c in the Linux kernel through 6.7.1 can attempt to allocate more than INT_MAX bytes, and crash, because of a missing param_kernel->data_size check. This is related to ctl_ioctl.

  • EPSS 0.01%
  • Veröffentlicht 23.01.2024 09:15:35
  • Zuletzt bearbeitet 30.05.2025 15:15:38

In the Linux kernel through 6.7.1, there is a use-after-free in cec_queue_msg_fh, related to drivers/media/cec/core/cec-adap.c and drivers/media/cec/core/cec-api.c.

  • EPSS 0.06%
  • Veröffentlicht 23.01.2024 03:15:11
  • Zuletzt bearbeitet 21.11.2024 08:14:53

An out-of-bounds read vulnerability was found in Netfilter Connection Tracking (conntrack) in the Linux kernel. This flaw allows a remote user to disclose sensitive information via the DCCP protocol.

  • EPSS 0.02%
  • Veröffentlicht 22.01.2024 13:15:25
  • Zuletzt bearbeitet 21.11.2024 08:47:20

A use-after-free flaw was found in the __ext4_remount in fs/ext4/super.c in ext4 in the Linux kernel. This flaw allows a local user to cause an information leak problem while freeing the old quota file names before a potential failure, leading to a u...

  • EPSS 0.02%
  • Veröffentlicht 21.01.2024 10:15:07
  • Zuletzt bearbeitet 21.11.2024 08:44:02

A use-after-free flaw was found in the Linux Kernel due to a race problem in the unix garbage collector's deletion of SKB races with unix_stream_read_generic() on the socket that the SKB is queued on.

  • EPSS 0.02%
  • Veröffentlicht 18.01.2024 16:15:08
  • Zuletzt bearbeitet 21.11.2024 08:46:59

A flaw was found in the Netfilter subsystem in the Linux kernel. The issue is in the nft_byteorder_eval() function, where the code iterates through a loop and writes to the `dst` array. On each iteration, 8 bytes are written, but `dst` is an array of...

  • EPSS 0.01%
  • Veröffentlicht 17.01.2024 16:15:47
  • Zuletzt bearbeitet 21.11.2024 08:47:03

A denial of service vulnerability was found in tipc_crypto_key_revoke in net/tipc/crypto.c in the Linux kernel’s TIPC subsystem. This flaw allows guests with local user privileges to trigger a deadlock and potentially crash the system.

  • EPSS 0.02%
  • Veröffentlicht 17.01.2024 16:15:47
  • Zuletzt bearbeitet 25.11.2024 10:44:03

An out-of-bounds memory write flaw was found in the Linux kernel’s Transport Layer Security functionality in how a user calls a function splice with a ktls socket as the destination. This flaw allows a local user to crash or potentially escalate thei...

  • EPSS 0.01%
  • Veröffentlicht 17.01.2024 16:15:46
  • Zuletzt bearbeitet 21.11.2024 08:47:02

A denial of service vulnerability due to a deadlock was found in sctp_auto_asconf_init in net/sctp/socket.c in the Linux kernel’s SCTP subsystem. This flaw allows guests with local user privileges to trigger a deadlock and potentially crash the syste...

  • EPSS 0.44%
  • Veröffentlicht 16.01.2024 15:15:09
  • Zuletzt bearbeitet 21.11.2024 08:46:56

A memory leak flaw was found in the Linux kernel’s io_uring functionality in how a user registers a buffer ring with IORING_REGISTER_PBUF_RING, mmap() it, and then frees it. This flaw allows a local user to crash or potentially escalate their privile...