CVE-2016-9806
- EPSS 0.03%
- Veröffentlicht 28.12.2016 07:59:00
- Zuletzt bearbeitet 06.05.2026 22:30:45
Race condition in the netlink_dump function in net/netlink/af_netlink.c in the Linux kernel before 4.6.3 allows local users to cause a denial of service (double free) or possibly have unspecified other impact via a crafted application that makes send...
CVE-2016-9120
- EPSS 0.11%
- Veröffentlicht 08.12.2016 21:59:02
- Zuletzt bearbeitet 06.05.2026 22:30:45
Race condition in the ion_ioctl function in drivers/staging/android/ion/ion.c in the Linux kernel before 4.6 allows local users to gain privileges or cause a denial of service (use-after-free) by calling ION_IOC_FREE on two CPUs at the same time.
CVE-2015-8967
- EPSS 0.07%
- Veröffentlicht 08.12.2016 21:59:01
- Zuletzt bearbeitet 06.05.2026 22:30:45
arch/arm64/kernel/sys.c in the Linux kernel before 4.0 allows local users to bypass the "strict page permissions" protection mechanism and modify the system-call table, and consequently gain privileges, by leveraging write access.
CVE-2015-8966
- EPSS 0.18%
- Veröffentlicht 08.12.2016 21:59:00
- Zuletzt bearbeitet 06.05.2026 22:30:45
arch/arm/kernel/sys_oabi-compat.c in the Linux kernel before 4.4 allows local users to gain privileges via a crafted (1) F_OFD_GETLK, (2) F_OFD_SETLK, or (3) F_OFD_SETLKW command in an fcntl64 system call.
CVE-2016-9919
- EPSS 5.46%
- Veröffentlicht 08.12.2016 17:59:03
- Zuletzt bearbeitet 06.05.2026 22:30:45
The icmp6_send function in net/ipv6/icmp.c in the Linux kernel through 4.8.12 omits a certain check of the dst data structure, which allows remote attackers to cause a denial of service (panic) via a fragmented IPv6 packet.
CVE-2016-8655
- EPSS 39.19%
- Veröffentlicht 08.12.2016 08:59:00
- Zuletzt bearbeitet 06.05.2026 22:30:45
Race condition in net/packet/af_packet.c in the Linux kernel through 4.8.12 allows local users to gain privileges or cause a denial of service (use-after-free) by leveraging the CAP_NET_RAW capability to change a socket version, related to the packet...
CVE-2016-3044
- EPSS 0.08%
- Veröffentlicht 01.12.2016 11:59:07
- Zuletzt bearbeitet 06.05.2026 22:30:45
The Linux kernel component in IBM PowerKVM 2.1 before 2.1.1.3-65.10 and 3.1 before 3.1.0.2 allows guest OS users to cause a denial of service (host OS infinite loop and hang) via unspecified vectors.
- EPSS 26.94%
- Veröffentlicht 28.11.2016 03:59:17
- Zuletzt bearbeitet 06.05.2026 22:30:45
The sctp_sf_ootb function in net/sctp/sm_statefuns.c in the Linux kernel before 4.8.8 lacks chunk-length checking for the first chunk, which allows remote attackers to cause a denial of service (out-of-bounds slab access) or possibly have unspecified...
CVE-2016-9313
- EPSS 0.14%
- Veröffentlicht 28.11.2016 03:59:15
- Zuletzt bearbeitet 06.05.2026 22:30:45
security/keys/big_key.c in the Linux kernel before 4.8.7 mishandles unsuccessful crypto registration in conjunction with successful key-type registration, which allows local users to cause a denial of service (NULL pointer dereference and panic) or p...
CVE-2016-9191
- EPSS 0.08%
- Veröffentlicht 28.11.2016 03:59:14
- Zuletzt bearbeitet 06.05.2026 22:30:45
The cgroup offline implementation in the Linux kernel through 4.8.11 mishandles certain drain operations, which allows local users to cause a denial of service (system hang) by leveraging access to a container environment for executing a crafted appl...