CVE-2017-16527
- EPSS 0.12%
- Veröffentlicht 04.11.2017 01:29:36
- Zuletzt bearbeitet 13.05.2026 00:24:29
sound/usb/mixer.c in the Linux kernel before 4.13.8 allows local users to cause a denial of service (snd_usb_mixer_interrupt use-after-free and system crash) or possibly have unspecified other impact via a crafted USB device.
CVE-2017-16528
- EPSS 0.11%
- Veröffentlicht 04.11.2017 01:29:36
- Zuletzt bearbeitet 13.05.2026 00:24:29
sound/core/seq_device.c in the Linux kernel before 4.13.4 allows local users to cause a denial of service (snd_rawmidi_dev_seq_free use-after-free and system crash) or possibly have unspecified other impact via a crafted USB device.
CVE-2017-16529
- EPSS 0.12%
- Veröffentlicht 04.11.2017 01:29:36
- Zuletzt bearbeitet 13.05.2026 00:24:29
The snd_usb_create_streams function in sound/usb/card.c in the Linux kernel before 4.13.6 allows local users to cause a denial of service (out-of-bounds read and system crash) or possibly have unspecified other impact via a crafted USB device.
CVE-2017-16530
- EPSS 0.09%
- Veröffentlicht 04.11.2017 01:29:36
- Zuletzt bearbeitet 13.05.2026 00:24:29
The uas driver in the Linux kernel before 4.13.6 allows local users to cause a denial of service (out-of-bounds read and system crash) or possibly have unspecified other impact via a crafted USB device, related to drivers/usb/storage/uas-detect.h and...
CVE-2017-16531
- EPSS 0.09%
- Veröffentlicht 04.11.2017 01:29:36
- Zuletzt bearbeitet 13.05.2026 00:24:29
drivers/usb/core/config.c in the Linux kernel before 4.13.6 allows local users to cause a denial of service (out-of-bounds read and system crash) or possibly have unspecified other impact via a crafted USB device, related to the USB_DT_INTERFACE_ASSO...
CVE-2017-1000255
- EPSS 0.05%
- Veröffentlicht 30.10.2017 20:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
On Linux running on PowerPC hardware (Power8 or later) a user process can craft a signal frame and then do a sigreturn so that the kernel will take an exception (interrupt), and use the r1 value *from the signal frame* as the kernel stack pointer. As...
CVE-2017-15951
- EPSS 0.04%
- Veröffentlicht 28.10.2017 02:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The KEYS subsystem in the Linux kernel before 4.13.10 does not correctly synchronize the actions of updating versus finding a key in the "negative" state to avoid a race condition, which allows local users to cause a denial of service or possibly hav...
CVE-2017-15649
- EPSS 0.39%
- Veröffentlicht 19.10.2017 22:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
net/packet/af_packet.c in the Linux kernel before 4.13.6 allows local users to gain privileges via crafted system calls that trigger mishandling of packet_fanout data structures, because of a race condition (involving fanout_add and packet_do_bind) t...
CVE-2017-15537
- EPSS 0.05%
- Veröffentlicht 17.10.2017 18:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The x86/fpu (Floating Point Unit) subsystem in the Linux kernel before 4.13.5, when a processor supports the xsave feature but not the xsaves feature, does not correctly handle attempts to set reserved bits in the xstate header via the ptrace() or rt...
CVE-2017-13080
- EPSS 0.82%
- Veröffentlicht 17.10.2017 13:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
Wi-Fi Protected Access (WPA and WPA2) allows reinstallation of the Group Temporal Key (GTK) during the group key handshake, allowing an attacker within radio range to replay frames from access points to clients.