CVE-2016-4486
- EPSS 0.52%
- Veröffentlicht 23.05.2016 10:59:02
- Zuletzt bearbeitet 12.04.2025 10:46:40
The rtnl_fill_link_ifmap function in net/core/rtnetlink.c in the Linux kernel before 4.5.5 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel stack memory by reading a Netlink message.
CVE-2016-4482
- EPSS 0.04%
- Veröffentlicht 23.05.2016 10:59:00
- Zuletzt bearbeitet 12.04.2025 10:46:40
The proc_connectinfo function in drivers/usb/core/devio.c in the Linux kernel through 4.6 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel stack memory via a crafted USBDEVFS_CONNECTIN...
CVE-2016-3951
- EPSS 0.02%
- Veröffentlicht 02.05.2016 10:59:41
- Zuletzt bearbeitet 12.04.2025 10:46:40
Double free vulnerability in drivers/net/usb/cdc_ncm.c in the Linux kernel before 4.5 allows physically proximate attackers to cause a denial of service (system crash) or possibly have unspecified other impact by inserting a USB device with an invali...
CVE-2016-3689
- EPSS 0.06%
- Veröffentlicht 02.05.2016 10:59:40
- Zuletzt bearbeitet 12.04.2025 10:46:40
The ims_pcu_parse_cdc_data function in drivers/input/misc/ims-pcu.c in the Linux kernel before 4.5.1 allows physically proximate attackers to cause a denial of service (system crash) via a USB device without both a master and a slave interface.
CVE-2016-3140
- EPSS 0.16%
- Veröffentlicht 02.05.2016 10:59:39
- Zuletzt bearbeitet 12.04.2025 10:46:40
The digi_port_init function in drivers/usb/serial/digi_acceleport.c in the Linux kernel before 4.5.1 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and system crash) via a crafted endpoints value in a USB...
CVE-2016-3138
- EPSS 0.02%
- Veröffentlicht 02.05.2016 10:59:37
- Zuletzt bearbeitet 12.04.2025 10:46:40
The acm_probe function in drivers/usb/class/cdc-acm.c in the Linux kernel before 4.5.1 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and system crash) via a USB device without both a control and a data e...
CVE-2016-3137
- EPSS 0.02%
- Veröffentlicht 02.05.2016 10:59:36
- Zuletzt bearbeitet 12.04.2025 10:46:40
drivers/usb/serial/cypress_m8.c in the Linux kernel before 4.5.1 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and system crash) via a USB device without both an interrupt-in and an interrupt-out endpoin...
CVE-2016-3136
- EPSS 0.2%
- Veröffentlicht 02.05.2016 10:59:35
- Zuletzt bearbeitet 12.04.2025 10:46:40
The mct_u232_msr_to_state function in drivers/usb/serial/mct_u232.c in the Linux kernel before 4.5.1 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and system crash) via a crafted USB device without two i...
CVE-2016-2188
- EPSS 0.25%
- Veröffentlicht 02.05.2016 10:59:32
- Zuletzt bearbeitet 12.04.2025 10:46:40
The iowarrior_probe function in drivers/usb/misc/iowarrior.c in the Linux kernel before 4.5.1 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and system crash) via a crafted endpoints value in a USB device...
CVE-2016-2186
- EPSS 0.05%
- Veröffentlicht 02.05.2016 10:59:29
- Zuletzt bearbeitet 12.04.2025 10:46:40
The powermate_probe function in drivers/input/misc/powermate.c in the Linux kernel before 4.5.1 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and system crash) via a crafted endpoints value in a USB devi...