CVE-2023-3108
- EPSS 0.19%
- Veröffentlicht 11.07.2023 16:15:12
- Zuletzt bearbeitet 06.03.2025 16:15:42
A flaw was found in the subsequent get_user_pages_fast in the Linux kernel’s interface for symmetric key cipher algorithms in the skcipher_recvmsg of crypto/algif_skcipher.c function. This flaw allows a local user to crash the system.
CVE-2023-37453
- EPSS 0.63%
- Veröffentlicht 06.07.2023 17:15:14
- Zuletzt bearbeitet 05.05.2025 16:15:42
An issue was discovered in the USB subsystem in the Linux kernel through 6.4.2. There is an out-of-bounds and crash in read_descriptors in drivers/usb/core/sysfs.c.
CVE-2023-37454
- EPSS 0.36%
- Veröffentlicht 06.07.2023 17:15:14
- Zuletzt bearbeitet 21.11.2024 08:11:44
An issue was discovered in the Linux kernel through 6.4.2. A crafted UDF filesystem image causes a use-after-free write operation in the udf_put_super and udf_close_lvid functions in fs/udf/super.c. NOTE: the suse.com reference has a different perspe...
CVE-2023-35001
- EPSS 1.51%
- Veröffentlicht 05.07.2023 19:15:10
- Zuletzt bearbeitet 21.11.2024 08:07:48
Linux Kernel nftables Out-Of-Bounds Read/Write Vulnerability; nft_byteorder poorly handled vm register contents when CAP_NET_ADMIN is in any user or network namespace
CVE-2023-31248
- EPSS 2.05%
- Veröffentlicht 05.07.2023 19:15:09
- Zuletzt bearbeitet 21.11.2024 08:01:42
Linux Kernel nftables Use-After-Free Local Privilege Escalation Vulnerability; `nft_chain_lookup_byid()` failed to check whether a chain was active and CAP_NET_ADMIN is in any user or network namespace
CVE-2023-3338
- EPSS 8.03%
- Veröffentlicht 30.06.2023 22:15:10
- Zuletzt bearbeitet 21.11.2024 08:17:02
A null pointer dereference flaw was found in the Linux kernel's DECnet networking protocol. This issue could allow a remote user to crash the system.
CVE-2023-1206
- EPSS 0.55%
- Veröffentlicht 30.06.2023 22:15:09
- Zuletzt bearbeitet 21.11.2024 07:38:40
A hash collision flaw was found in the IPv6 connection lookup table in the Linux kernel’s IPv6 functionality when a user makes a new kind of SYN flood attack. A user located in the local network or with a high bandwidth connection can increase the CP...
CVE-2023-3358
- EPSS 0.2%
- Veröffentlicht 28.06.2023 22:15:09
- Zuletzt bearbeitet 10.03.2025 21:15:39
A null pointer dereference was found in the Linux kernel's Integrated Sensor Hub (ISH) driver. This issue could allow a local user to crash the system.
CVE-2023-3390
- EPSS 0.91%
- Veröffentlicht 28.06.2023 21:15:10
- Zuletzt bearbeitet 22.07.2026 12:16:53
A use-after-free vulnerability was found in the Linux kernel's netfilter subsystem in net/netfilter/nf_tables_api.c. Mishandled error handling with NFT_MSG_NEWRULE makes it possible to use a dangling pointer in the same transaction causing a use-aft...
CVE-2023-3090
- EPSS 0.49%
- Veröffentlicht 28.06.2023 20:15:09
- Zuletzt bearbeitet 13.02.2025 17:16:55
A heap out-of-bounds write vulnerability in the Linux Kernel ipvlan network driver can be exploited to achieve local privilege escalation. The out-of-bounds write is caused by missing skb->cb initialization in the ipvlan network driver. The vulnera...