- EPSS 25.93%
- Veröffentlicht 03.07.2016 21:59:15
- Zuletzt bearbeitet 06.05.2026 22:30:45
The usbip_recv_xbuff function in drivers/usb/usbip/usbip_common.c in the Linux kernel before 4.5.3 allows remote attackers to cause a denial of service (out-of-bounds write) or possibly have unspecified other impact via a crafted length value in a US...
CVE-2016-1237
- EPSS 0.36%
- Veröffentlicht 29.06.2016 14:10:01
- Zuletzt bearbeitet 06.05.2026 22:30:45
nfsd in the Linux kernel through 4.6.3 allows local users to bypass intended file-permission restrictions by setting a POSIX ACL, related to nfs2acl.c, nfs3acl.c, and nfs4acl.c.
CVE-2012-6703
- EPSS 0.32%
- Veröffentlicht 29.06.2016 14:10:00
- Zuletzt bearbeitet 06.05.2026 22:30:45
Integer overflow in the snd_compr_allocate_buffer function in sound/core/compress_offload.c in the ALSA subsystem in the Linux kernel before 3.6-rc6-next-20120917 allows local users to cause a denial of service (insufficient memory allocation) or pos...
CVE-2016-5829
- EPSS 0.46%
- Veröffentlicht 27.06.2016 10:59:14
- Zuletzt bearbeitet 06.05.2026 22:30:45
Multiple heap-based buffer overflows in the hiddev_ioctl_usage function in drivers/hid/usbhid/hiddev.c in the Linux kernel through 4.6.3 allow local users to cause a denial of service or possibly have unspecified other impact via a crafted (1) HIDIOC...
CVE-2016-5828
- EPSS 0.45%
- Veröffentlicht 27.06.2016 10:59:13
- Zuletzt bearbeitet 06.05.2026 22:30:45
The start_thread function in arch/powerpc/kernel/process.c in the Linux kernel through 4.6.3 on powerpc platforms mishandles transactional state, which allows local users to cause a denial of service (invalid process state or TM Bad Thing exception, ...
CVE-2016-5728
- EPSS 0.4%
- Veröffentlicht 27.06.2016 10:59:12
- Zuletzt bearbeitet 06.05.2026 22:30:45
Race condition in the vop_ioctl function in drivers/misc/mic/vop/vop_vringh.c in the MIC VOP driver in the Linux kernel before 4.6.1 allows local users to obtain sensitive information from kernel memory or cause a denial of service (memory corruption...
CVE-2016-5244
- EPSS 5.52%
- Veröffentlicht 27.06.2016 10:59:11
- Zuletzt bearbeitet 06.05.2026 22:30:45
The rds_inc_info_copy function in net/rds/recv.c in the Linux kernel through 4.6.3 does not initialize a certain structure member, which allows remote attackers to obtain sensitive information from kernel stack memory by reading an RDS message.
CVE-2016-5243
- EPSS 0.51%
- Veröffentlicht 27.06.2016 10:59:10
- Zuletzt bearbeitet 06.05.2026 22:30:45
The tipc_nl_compat_link_dump function in net/tipc/netlink_compat.c in the Linux kernel through 4.6.3 does not properly copy a certain string, which allows local users to obtain sensitive information from kernel stack memory by reading a Netlink messa...
CVE-2016-4470
- EPSS 0.58%
- Veröffentlicht 27.06.2016 10:59:08
- Zuletzt bearbeitet 06.05.2026 22:30:45
The key_reject_and_link function in security/keys/key.c in the Linux kernel through 4.6.3 does not ensure that a certain data structure is initialized, which allows local users to cause a denial of service (system crash) via vectors involving a craft...
CVE-2016-4440
- EPSS 0.37%
- Veröffentlicht 27.06.2016 10:59:07
- Zuletzt bearbeitet 06.05.2026 22:30:45
arch/x86/kvm/vmx.c in the Linux kernel through 4.6.3 mishandles the APICv on/off state, which allows guest OS users to obtain direct APIC MSR access on the host OS, and consequently cause a denial of service (host OS crash) or possibly execute arbitr...