CVE-2019-14835
- EPSS 0.05%
- Published 17.09.2019 16:15:10
- Last modified 21.11.2024 04:27:27
A buffer overflow flaw was found, in versions from 2.6.34 to 5.2.x, in the way Linux kernel's vhost functionality that translates virtqueue buffers to IOVs, logged the buffer descriptors during migration. A privileged guest user able to pass descript...
CVE-2019-15538
- EPSS 16.43%
- Published 25.08.2019 16:15:11
- Last modified 21.11.2024 04:28:57
An issue was discovered in xfs_setattr_nonsize in fs/xfs/xfs_iops.c in the Linux kernel through 5.2.9. XFS partially wedges when a chgrp fails on account of being out of disk quota. xfs_setattr_nonsize is failing to unlock the ILOCK after the xfs_qm_...
CVE-2019-15118
- EPSS 0.13%
- Published 16.08.2019 14:15:10
- Last modified 21.11.2024 04:28:05
check_input_term in sound/usb/mixer.c in the Linux kernel through 5.2.9 mishandles recursion, leading to kernel stack exhaustion.
CVE-2019-14444
- EPSS 0.43%
- Published 30.07.2019 13:15:18
- Last modified 21.11.2024 04:26:45
apply_relocations in readelf.c in GNU Binutils 2.32 contains an integer overflow that allows attackers to trigger a write access violation (in byte_put_little_endian function in elfcomm.c) via an ELF file, as demonstrated by readelf.
CVE-2019-1010204
- EPSS 0.11%
- Published 23.07.2019 14:15:13
- Last modified 21.11.2024 04:18:03
GNU binutils gold gold v1.11-v1.16 (GNU binutils v2.21-v2.31.1) is affected by: Improper Input Validation, Signed/Unsigned Comparison, Out-of-bounds Read. The impact is: Denial of service. The component is: gold/fileread.cc:497, elfcpp/elfcpp_file.h:...
CVE-2019-13272
- EPSS 81.24%
- Published 17.07.2019 13:15:10
- Last modified 03.04.2025 20:28:35
In the Linux kernel before 5.1.17, ptrace_link in kernel/ptrace.c mishandles the recording of the credentials of a process that wants to create a ptrace relationship, which allows local users to obtain root access by leveraging certain scenarios with...
CVE-2019-10126
- EPSS 3.84%
- Published 14.06.2019 14:29:00
- Last modified 21.11.2024 04:18:28
A flaw was found in the Linux kernel. A heap based buffer overflow in mwifiex_uap_parse_tail_ies function in drivers/net/wireless/marvell/mwifiex/ie.c might lead to memory corruption and possibly other consequences.
CVE-2019-12615
- EPSS 2.03%
- Published 03.06.2019 22:29:00
- Last modified 21.11.2024 04:23:11
An issue was discovered in get_vdev_port_node_info in arch/sparc/kernel/mdesc.c in the Linux kernel through 5.1.6. There is an unchecked kstrdup_const of node_info->vdev_port.name, which might allow an attacker to cause a denial of service (NULL poin...
CVE-2019-3846
- EPSS 0.38%
- Published 03.06.2019 19:29:02
- Last modified 21.11.2024 04:42:41
A flaw that allowed an attacker to corrupt memory and possibly escalate privileges was found in the mwifiex kernel module while connecting to a malicious wireless network.
CVE-2019-5436
- EPSS 29.54%
- Published 28.05.2019 19:29:06
- Last modified 21.11.2024 04:44:55
A heap buffer overflow in the TFTP receiving code allows for DoS or arbitrary code execution in libcurl versions 7.19.4 through 7.64.1.