CVE-2022-27239
- EPSS 0.12%
- Published 27.04.2022 14:15:09
- Last modified 21.11.2024 06:55:28
In cifs-utils through 6.14, a stack-based buffer overflow when parsing the mount.cifs ip= command-line argument could lead to local attackers gaining root privileges.
- EPSS 0.04%
- Published 11.02.2021 16:15:12
- Last modified 21.11.2024 05:38:15
A Incorrect Permission Assignment for Critical Resource vulnerability in skuba of SUSE CaaS Platform 4.5 allows local attackers to gain access to the kublet key. This issue affects: SUSE CaaS Platform 4.5 skuba versions prior to https://github.com/SU...
CVE-2020-8030
- EPSS 0.04%
- Published 11.02.2021 16:15:12
- Last modified 21.11.2024 05:38:15
A Insecure Temporary File vulnerability in skuba of SUSE CaaS Platform 4.5 allows local attackers to leak the bootstrapToken or modify the configuration file before it is processed, leading to arbitrary modifications of the machine/cluster.
CVE-2019-3682
- EPSS 0.14%
- Published 17.01.2020 09:15:10
- Last modified 21.11.2024 04:42:19
The docker-kubic package in SUSE CaaS Platform 3.0 before 17.09.1_ce-7.6.1 provided access to an insecure API locally on the Kubernetes master node.
CVE-2018-6556
- EPSS 0.04%
- Published 10.08.2018 15:29:01
- Last modified 21.11.2024 04:10:53
lxc-user-nic when asked to delete a network interface will unconditionally open a user provided path. This code path may be used by an unprivileged user to check for the existence of a path which they wouldn't otherwise be able to reach. It may also ...
- EPSS 27.65%
- Published 03.01.2018 06:29:00
- Last modified 03.01.2025 12:15:25
The tcpmss_mangle_packet function in net/netfilter/xt_TCPMSS.c in the Linux kernel before 4.11, and 4.9.x before 4.9.36, allows remote attackers to cause a denial of service (use-after-free and memory corruption) or possibly have unspecified other im...