CVE-2016-3156
- EPSS 0.03%
- Veröffentlicht 27.04.2016 17:59:26
- Zuletzt bearbeitet 12.04.2025 10:46:40
The IPv4 implementation in the Linux kernel before 4.5.2 mishandles destruction of device objects, which allows guest OS users to cause a denial of service (host OS networking outage) by arranging for a large number of IP addresses.
CVE-2016-3139
- EPSS 0.16%
- Veröffentlicht 27.04.2016 17:59:24
- Zuletzt bearbeitet 12.04.2025 10:46:40
The wacom_probe function in drivers/input/tablet/wacom_sys.c in the Linux kernel before 3.17 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and system crash) via a crafted endpoints value in a USB device ...
CVE-2016-3134
- EPSS 0.07%
- Veröffentlicht 27.04.2016 17:59:22
- Zuletzt bearbeitet 12.04.2025 10:46:40
The netfilter subsystem in the Linux kernel through 4.5.2 does not validate certain offset fields, which allows local users to gain privileges or cause a denial of service (heap memory corruption) via an IPT_SO_SET_REPLACE setsockopt call.
CVE-2016-2847
- EPSS 0.07%
- Veröffentlicht 27.04.2016 17:59:21
- Zuletzt bearbeitet 12.04.2025 10:46:40
fs/pipe.c in the Linux kernel before 4.5 does not limit the amount of unread data in pipes, which allows local users to cause a denial of service (memory consumption) by creating many pipes with non-default sizes.
CVE-2016-2184
- EPSS 0.2%
- Veröffentlicht 27.04.2016 17:59:09
- Zuletzt bearbeitet 12.04.2025 10:46:40
The create_fixed_stream_quirk function in sound/usb/quirks.c in the snd-usb-audio driver in the Linux kernel before 4.5.1 allows physically proximate attackers to cause a denial of service (NULL pointer dereference or double free, and system crash) v...
CVE-2015-8845
- EPSS 0.07%
- Veröffentlicht 27.04.2016 17:59:05
- Zuletzt bearbeitet 12.04.2025 10:46:40
The tm_reclaim_thread function in arch/powerpc/kernel/process.c in the Linux kernel before 4.4.1 on powerpc platforms does not ensure that TM suspend mode exists before proceeding with a tm_reclaim call, which allows local users to cause a denial of ...
CVE-2015-8816
- EPSS 0.08%
- Veröffentlicht 27.04.2016 17:59:03
- Zuletzt bearbeitet 12.04.2025 10:46:40
The hub_activate function in drivers/usb/core/hub.c in the Linux kernel before 4.3.5 does not properly maintain a hub-interface data structure, which allows physically proximate attackers to cause a denial of service (invalid memory access and system...
CVE-2015-7566
- EPSS 0.45%
- Veröffentlicht 08.02.2016 03:59:03
- Zuletzt bearbeitet 12.04.2025 10:46:40
The clie_5_attach function in drivers/usb/serial/visor.c in the Linux kernel through 4.4.1 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact by ins...
CVE-2015-2743
- EPSS 1.29%
- Veröffentlicht 06.07.2015 02:01:11
- Zuletzt bearbeitet 12.04.2025 10:46:40
PDF.js in Mozilla Firefox before 39.0 and Firefox ESR 31.x before 31.8 and 38.x before 38.1 enables excessive privileges for internal Workers, which might allow remote attackers to execute arbitrary code by leveraging a Same Origin Policy bypass.
- EPSS 5.45%
- Veröffentlicht 06.07.2015 02:01:08
- Zuletzt bearbeitet 12.04.2025 10:46:40
Buffer overflow in the nsXMLHttpRequest::AppendToResponseText function in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, and Thunderbird before 38.1 might allow remote attackers to cause a denial of service or have un...