CVE-2021-28951
- EPSS 0.06%
- Veröffentlicht 20.03.2021 20:15:13
- Zuletzt bearbeitet 21.11.2024 06:00:25
An issue was discovered in fs/io_uring.c in the Linux kernel through 5.11.8. It allows attackers to cause a denial of service (deadlock) because exit may be waiting to park a SQPOLL thread, but concurrently that SQPOLL thread is waiting for a signal ...
CVE-2021-28660
- EPSS 0.27%
- Veröffentlicht 17.03.2021 15:15:13
- Zuletzt bearbeitet 21.11.2024 06:00:02
rtw_wx_set_scan in drivers/staging/rtl8188eu/os_dep/ioctl_linux.c in the Linux kernel through 5.11.6 allows writing beyond the end of the ->ssid[] array. NOTE: from the perspective of kernel.org releases, CVE IDs are not normally used for drivers/sta...
CVE-2021-28375
- EPSS 0.11%
- Veröffentlicht 15.03.2021 05:15:13
- Zuletzt bearbeitet 21.11.2024 05:59:36
An issue was discovered in the Linux kernel through 5.11.6. fastrpc_internal_invoke in drivers/misc/fastrpc.c does not prevent user applications from sending kernel RPC messages, aka CID-20c40794eb85. This is a related issue to CVE-2019-2308.
CVE-2021-27363
- EPSS 0.02%
- Veröffentlicht 07.03.2021 04:15:13
- Zuletzt bearbeitet 21.11.2024 05:57:50
An issue was discovered in the Linux kernel through 5.11.3. A kernel pointer leak can be used to determine the address of the iscsi_transport structure. When an iSCSI transport is registered with the iSCSI subsystem, the transport's handle is availab...
CVE-2021-28041
- EPSS 0.26%
- Veröffentlicht 05.03.2021 21:15:13
- Zuletzt bearbeitet 21.11.2024 05:59:01
ssh-agent in OpenSSH before 8.5 has a double free that may be relevant in a few less-common scenarios, such as unconstrained agent-socket access on a legacy operating system, or the forwarding of an agent to an attacker-controlled host.
CVE-2021-28038
- EPSS 0.13%
- Veröffentlicht 05.03.2021 18:15:13
- Zuletzt bearbeitet 21.11.2024 05:59:01
An issue was discovered in the Linux kernel through 5.11.3, as used with Xen PV. A certain part of the netback driver lacks necessary treatment of errors such as failed memory allocations (as a result of changes to the handling of grant mapping error...
CVE-2021-28039
- EPSS 0.14%
- Veröffentlicht 05.03.2021 18:15:13
- Zuletzt bearbeitet 21.11.2024 05:59:01
An issue was discovered in the Linux kernel 5.9.x through 5.11.3, as used with Xen. In some less-common configurations, an x86 PV guest OS user can crash a Dom0 or driver domain via a large amount of I/O activity. The issue relates to misuse of guest...
CVE-2020-14372
- EPSS 1.21%
- Veröffentlicht 03.03.2021 17:15:11
- Zuletzt bearbeitet 21.11.2024 05:03:07
A flaw was found in grub2 in versions prior to 2.06, where it incorrectly enables the usage of the ACPI command when Secure Boot is enabled. This flaw allows an attacker with privileged access to craft a Secondary System Description Table (SSDT) cont...
CVE-2021-20226
- EPSS 0.15%
- Veröffentlicht 23.02.2021 17:15:13
- Zuletzt bearbeitet 21.11.2024 05:46:10
A use-after-free flaw was found in the io_uring in Linux kernel, where a local attacker with a user privilege could cause a denial of service problem on the system The issue results from the lack of validating the existence of an object prior to perf...
CVE-2020-8625
- EPSS 1.8%
- Veröffentlicht 17.02.2021 23:15:13
- Zuletzt bearbeitet 21.11.2024 05:39:09
BIND servers are vulnerable if they are running an affected version and are configured to use GSS-TSIG features. In a configuration which uses BIND's default settings the vulnerable code path is not exposed, but a server can be rendered vulnerable by...