Linux

Linux Kernel

12290 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.02%
  • Veröffentlicht 21.09.2022 08:15:09
  • Zuletzt bearbeitet 28.05.2025 16:15:28

mm/mremap.c in the Linux kernel before 5.13.3 has a use-after-free via a stale TLB because an rmap lock is not held during a PUD move.

Exploit
  • EPSS 0.46%
  • Veröffentlicht 21.09.2022 07:15:08
  • Zuletzt bearbeitet 28.05.2025 16:15:28

In drivers/media/dvb-core/dmxdev.c in the Linux kernel through 5.19.10, there is a use-after-free caused by refcount races, affecting dvb_demux_open and dvb_dmxdev_release.

  • EPSS 0.03%
  • Veröffentlicht 19.09.2022 20:15:12
  • Zuletzt bearbeitet 21.11.2024 07:19:07

A flaw use after free in the Linux kernel video4linux driver was found in the way user triggers em28xx_usb_probe() for the Empia 28xx based TV cards. A local user could use this flaw to crash the system or potentially escalate their privileges on the...

  • EPSS 0.02%
  • Veröffentlicht 18.09.2022 05:15:08
  • Zuletzt bearbeitet 21.11.2024 07:22:01

drivers/scsi/stex.c in the Linux kernel through 5.19.9 allows local users to obtain sensitive information from kernel memory because stex_queuecommand_lck lacks a memset for the PASSTHRU_CMD case.

  • EPSS 0.02%
  • Veröffentlicht 16.09.2022 17:15:10
  • Zuletzt bearbeitet 21.11.2024 07:12:57

An integer overflow vulnerability was found in vmwgfx driver in drivers/gpu/vmxgfx/vmxgfx_execbuf.c in GPU component of Linux kernel with device file '/dev/dri/renderD128 (or Dxxx)'. This flaw allows a local attacker with a user account on the system...

  • EPSS 0.02%
  • Veröffentlicht 16.09.2022 14:15:09
  • Zuletzt bearbeitet 21.11.2024 07:18:58

There exists a use-after-free in io_uring in the Linux kernel. Signalfd_poll() and binder_poll() use a waitqueue whose lifetime is the current task. It will send a POLLFREE notification to all waiters before the queue is freed. Unfortunately, the io_...

  • EPSS 0.02%
  • Veröffentlicht 14.09.2022 21:15:10
  • Zuletzt bearbeitet 21.11.2024 07:02:01

A flaw was found in the Linux kernel implementation of proxied virtualized TPM devices. On a system where virtualized TPM devices are configured (this is not the default) a local attacker can create a use-after-free and create a situation where it ma...

  • EPSS 0.06%
  • Veröffentlicht 14.09.2022 21:15:10
  • Zuletzt bearbeitet 21.11.2024 07:21:26

A null pointer dereference issue was discovered in fs/io_uring.c in the Linux kernel before 5.15.62. A local user could use this flaw to crash the system or potentially cause a denial of service.

  • EPSS 0.02%
  • Veröffentlicht 14.09.2022 15:15:11
  • Zuletzt bearbeitet 21.11.2024 07:19:02

A NULL pointer dereference flaw in diFree in fs/jfs/inode.c in Journaled File System (JFS)in the Linux kernel. This could allow a local attacker to crash the system or leak kernel internal information.

  • EPSS 0.03%
  • Veröffentlicht 13.09.2022 16:15:09
  • Zuletzt bearbeitet 21.11.2024 07:18:58

An out-of-bounds access issue was found in the Linux kernel sound subsystem. It could occur when the 'id->name' provided by the user did not end with '\0'. A privileged local user could pass a specially crafted name through ioctl() interface and cras...