CVE-2017-12154
- EPSS 0.04%
- Veröffentlicht 26.09.2017 05:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The prepare_vmcs02 function in arch/x86/kvm/vmx.c in the Linux kernel through 4.13.3 does not ensure that the "CR8-load exiting" and "CR8-store exiting" L0 vmcs02 controls exist in cases where L1 omits the "use TPR shadow" vmcs12 control, which allow...
CVE-2017-12153
- EPSS 0.02%
- Veröffentlicht 21.09.2017 15:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
A security flaw was discovered in the nl80211_set_rekey_data() function in net/wireless/nl80211.c in the Linux kernel through 4.13.3. This function does not check whether the required attributes are present in a Netlink request. This request can be i...
CVE-2017-9725
- EPSS 0.18%
- Veröffentlicht 21.09.2017 15:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
In all Qualcomm products with Android releases from CAF using the Linux kernel, during DMA allocation, due to wrong data type of size, allocation size gets truncated which makes allocation succeed when it should fail.
- EPSS 0.05%
- Veröffentlicht 20.09.2017 08:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The access_pmu_evcntr function in arch/arm64/kvm/sys_regs.c in the Linux kernel before 4.8.11 allows privileged KVM guest OS users to cause a denial of service (assertion failure and host OS crash) by accessing the Performance Monitors Cycle Count Re...
CVE-2015-7837
- EPSS 0.07%
- Veröffentlicht 19.09.2017 16:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The Linux kernel, as used in Red Hat Enterprise Linux 7, kernel-rt, and Enterprise MRG 2 and when booted with UEFI Secure Boot enabled, allows local users to bypass intended securelevel/secureboot restrictions by leveraging improper handling of secur...
CVE-2017-14497
- EPSS 0.07%
- Veröffentlicht 15.09.2017 18:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The tpacket_rcv function in net/packet/af_packet.c in the Linux kernel before 4.13 mishandles vnet headers, which might allow local users to cause a denial of service (buffer overflow, and disk and memory corruption) or possibly have unspecified othe...
CVE-2017-14340
- EPSS 0.04%
- Veröffentlicht 15.09.2017 11:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The XFS_IS_REALTIME_INODE macro in fs/xfs/xfs_linux.h in the Linux kernel before 4.13.2 does not verify that a filesystem has a realtime device, which allows local users to cause a denial of service (NULL pointer dereference and OOPS) via vectors rel...
CVE-2017-14489
- EPSS 0.27%
- Veröffentlicht 15.09.2017 10:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The iscsi_if_rx function in drivers/scsi/scsi_transport_iscsi.c in the Linux kernel through 4.13.2 allows local users to cause a denial of service (panic) by leveraging incorrect length validation.
- EPSS 3.03%
- Veröffentlicht 12.09.2017 17:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The native Bluetooth stack in the Linux Kernel (BlueZ), starting at the Linux kernel version 2.6.32 and up to and including 4.13.1, are vulnerable to a stack overflow vulnerability in the processing of L2CAP configuration responses resulting in Remot...
CVE-2017-0786
- EPSS 0.16%
- Veröffentlicht 08.09.2017 20:29:01
- Zuletzt bearbeitet 13.05.2026 00:24:29
A elevation of privilege vulnerability in the Broadcom wi-fi driver. Product: Android. Versions: Android kernel. Android ID: A-37351060. References: B-V2017060101.