CVE-2026-31431
- EPSS 2.57%
- Veröffentlicht 22.04.2026 08:15:10
- Zuletzt bearbeitet 12.05.2026 16:15:00
In the Linux kernel, the following vulnerability has been resolved: crypto: algif_aead - Revert to operating out-of-place This mostly reverts commit 72548b093ee3 except for the copying of the associated data. There is no benefit in operating in-pl...
CVE-2025-32463
- EPSS 57.35%
- Veröffentlicht 30.06.2025 00:00:00
- Zuletzt bearbeitet 05.11.2025 19:26:48
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled directory is used with the --chroot option.
CVE-2022-27239
- EPSS 0.07%
- Veröffentlicht 27.04.2022 14:15:09
- Zuletzt bearbeitet 21.11.2024 06:55:28
In cifs-utils through 6.14, a stack-based buffer overflow when parsing the mount.cifs ip= command-line argument could lead to local attackers gaining root privileges.
CVE-2010-3865
- EPSS 0.07%
- Veröffentlicht 11.01.2011 03:00:02
- Zuletzt bearbeitet 29.04.2026 01:13:23
Integer overflow in the rds_rdma_pages function in net/rds/rdma.c in the Linux kernel allows local users to cause a denial of service (crash) and possibly execute arbitrary code via a crafted iovec struct in a Reliable Datagram Sockets (RDS) request,...
CVE-2010-2959
- EPSS 0.37%
- Veröffentlicht 08.09.2010 20:00:03
- Zuletzt bearbeitet 29.04.2026 01:13:23
Integer overflow in net/can/bcm.c in the Controller Area Network (CAN) implementation in the Linux kernel before 2.6.27.53, 2.6.32.x before 2.6.32.21, 2.6.34.x before 2.6.34.6, and 2.6.35.x before 2.6.35.4 allows attackers to execute arbitrary code o...
CVE-2010-2803
- EPSS 0.07%
- Veröffentlicht 08.09.2010 20:00:02
- Zuletzt bearbeitet 29.04.2026 01:13:23
The drm_ioctl function in drivers/gpu/drm/drm_drv.c in the Direct Rendering Manager (DRM) subsystem in the Linux kernel before 2.6.27.53, 2.6.32.x before 2.6.32.21, 2.6.34.x before 2.6.34.6, and 2.6.35.x before 2.6.35.4 allows local users to obtain p...
CVE-2009-2692
- EPSS 17.56%
- Veröffentlicht 14.08.2009 15:16:27
- Zuletzt bearbeitet 23.04.2026 00:35:47
The Linux kernel 2.6.0 through 2.6.30.4, and 2.4.4 through 2.4.37.4, does not initialize all function pointers for socket operations in proto_ops structures, which allows local users to trigger a NULL pointer dereference and gain privileges by using ...