CVE-2021-30002
- EPSS 0.03%
- Veröffentlicht 02.04.2021 05:15:12
- Zuletzt bearbeitet 21.11.2024 06:03:12
An issue was discovered in the Linux kernel before 5.11.3 when a webcam device exists. video_usercopy in drivers/media/v4l2-core/v4l2-ioctl.c has a memory leak for large arguments, aka CID-fb18802a338b.
CVE-2021-29646
- EPSS 0.11%
- Veröffentlicht 30.03.2021 21:15:14
- Zuletzt bearbeitet 21.11.2024 06:01:33
An issue was discovered in the Linux kernel before 5.11.11. tipc_nl_retrieve_key in net/tipc/node.c does not properly validate certain data sizes, aka CID-0217ed2848e8.
CVE-2021-29647
- EPSS 0.09%
- Veröffentlicht 30.03.2021 21:15:14
- Zuletzt bearbeitet 21.11.2024 06:01:33
An issue was discovered in the Linux kernel before 5.11.11. qrtr_recvmsg in net/qrtr/qrtr.c allows attackers to obtain sensitive information from kernel memory because of a partially uninitialized data structure, aka CID-50535249f624.
CVE-2021-29649
- EPSS 0.12%
- Veröffentlicht 30.03.2021 21:15:14
- Zuletzt bearbeitet 21.11.2024 06:01:34
An issue was discovered in the Linux kernel before 5.11.11. The user mode driver (UMD) has a copy_process() memory leak, related to a lack of cleanup steps in kernel/usermode_driver.c and kernel/bpf/preload/bpf_preload_kern.c, aka CID-f60a85cad677.
CVE-2021-29650
- EPSS 0.03%
- Veröffentlicht 30.03.2021 21:15:14
- Zuletzt bearbeitet 21.11.2024 06:01:34
An issue was discovered in the Linux kernel before 5.11.11. The netfilter subsystem allows attackers to cause a denial of service (panic) because net/netfilter/x_tables.c and include/linux/netfilter/x_tables.h lack a full memory barrier upon the assi...
CVE-2021-29264
- EPSS 0.1%
- Veröffentlicht 26.03.2021 22:15:13
- Zuletzt bearbeitet 21.11.2024 06:00:54
An issue was discovered in the Linux kernel through 5.11.10. drivers/net/ethernet/freescale/gianfar.c in the Freescale Gianfar Ethernet driver allows attackers to cause a system crash because a negative fragment size is calculated in situations invol...
CVE-2021-29265
- EPSS 0.04%
- Veröffentlicht 26.03.2021 22:15:13
- Zuletzt bearbeitet 21.11.2024 06:00:54
An issue was discovered in the Linux kernel before 5.11.7. usbip_sockfd_store in drivers/usb/usbip/stub_dev.c allows attackers to cause a denial of service (GPF) because the stub-up sequence has race conditions during an update of the local and share...
CVE-2021-29266
- EPSS 0.07%
- Veröffentlicht 26.03.2021 22:15:13
- Zuletzt bearbeitet 21.11.2024 06:00:54
An issue was discovered in the Linux kernel before 5.11.9. drivers/vhost/vdpa.c has a use-after-free because v->config_ctx has an invalid value upon re-opening a character device, aka CID-f6bbf0010ba0.
CVE-2020-35508
- EPSS 0.05%
- Veröffentlicht 26.03.2021 17:15:12
- Zuletzt bearbeitet 21.11.2024 05:27:27
A flaw possibility of race condition and incorrect initialization of the process id was found in the Linux kernel child/parent process identification handling while filtering signal handlers. A local attacker is able to abuse this flaw to bypass chec...
CVE-2021-3444
- EPSS 0.03%
- Veröffentlicht 23.03.2021 18:15:13
- Zuletzt bearbeitet 21.11.2024 06:21:32
The bpf verifier in the Linux kernel did not properly handle mod32 destination register truncation when the source register was known to be 0. A local attacker with the ability to load bpf programs could use this gain out-of-bounds reads in kernel me...