CVE-2017-9059
- EPSS 0.37%
- Veröffentlicht 18.05.2017 06:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The NFSv4 implementation in the Linux kernel through 4.11.1 allows local users to cause a denial of service (resource consumption) by leveraging improper channel callback shutdown when unmounting an NFSv4 filesystem, aka a "module reference and kerne...
CVE-2017-7495
- EPSS 0.4%
- Veröffentlicht 15.05.2017 18:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
fs/ext4/inode.c in the Linux kernel before 4.6.2, when ext4 data=ordered mode is used, mishandles a needs-flushing-before-commit list, which allows local users to obtain sensitive information from other users' files in opportunistic circumstances by ...
CVE-2017-7487
- EPSS 0.38%
- Veröffentlicht 14.05.2017 22:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The ipxitf_ioctl function in net/ipx/af_ipx.c in the Linux kernel through 4.11.1 mishandles reference counts, which allows local users to cause a denial of service (use-after-free) or possibly have unspecified other impact via a failed SIOCGIFADDR io...
CVE-2017-8924
- EPSS 0.48%
- Veröffentlicht 12.05.2017 21:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The edge_bulk_in_callback function in drivers/usb/serial/io_ti.c in the Linux kernel before 4.10.4 allows local users to obtain sensitive information (in the dmesg ringbuffer and syslog) from uninitialized kernel memory by using a crafted USB device ...
CVE-2017-8925
- EPSS 0.42%
- Veröffentlicht 12.05.2017 21:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The omninet_open function in drivers/usb/serial/omninet.c in the Linux kernel before 4.10.4 allows local users to cause a denial of service (tty exhaustion) by leveraging reference count mishandling.
CVE-2017-0630
- EPSS 1.44%
- Veröffentlicht 12.05.2017 15:29:02
- Zuletzt bearbeitet 13.05.2026 00:24:29
An information disclosure vulnerability in the kernel trace subsystem could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it first requires compromising a privileged proc...
CVE-2017-7472
- EPSS 2.26%
- Veröffentlicht 11.05.2017 19:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The KEYS subsystem in the Linux kernel before 4.10.13 allows local users to cause a denial of service (memory consumption) via a series of KEY_REQKEY_DEFL_THREAD_KEYRING keyctl_set_reqkey_keyring calls.
CVE-2017-8890
- EPSS 1.37%
- Veröffentlicht 10.05.2017 16:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The inet_csk_clone_lock function in net/ipv4/inet_connection_sock.c in the Linux kernel through 4.10.15 allows attackers to cause a denial of service (double free) or possibly have unspecified other impact by leveraging use of the accept system call.
CVE-2017-8831
- EPSS 0.37%
- Veröffentlicht 08.05.2017 06:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The saa7164_bus_get function in drivers/media/pci/saa7164/saa7164-bus.c in the Linux kernel through 4.11.5 allows local users to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact by changing a certain se...
CVE-2014-9940
- EPSS 1.61%
- Veröffentlicht 02.05.2017 21:59:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The regulator_ena_gpio_free function in drivers/regulator/core.c in the Linux kernel before 3.19 allows local users to gain privileges or cause a denial of service (use-after-free) via a crafted application.