- EPSS 1.35%
- Veröffentlicht 04.04.2017 05:59:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
udp.c in the Linux kernel before 4.5 allows remote attackers to execute arbitrary code via UDP traffic that triggers an unsafe second checksum calculation during execution of a recv system call with the MSG_PEEK flag.
CVE-2017-7374
- EPSS 0.32%
- Veröffentlicht 31.03.2017 20:59:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
Use-after-free vulnerability in fs/crypto/ in the Linux kernel before 4.10.7 allows local users to cause a denial of service (NULL pointer dereference) or possibly gain privileges by revoking keyring keys being used for ext4, f2fs, or ubifs encryptio...
CVE-2017-2647
- EPSS 0.04%
- Veröffentlicht 31.03.2017 04:59:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The KEYS subsystem in the Linux kernel before 3.18 allows local users to gain privileges or cause a denial of service (NULL pointer dereference and system crash) via vectors involving a NULL value for a certain match field, related to the keyring_sea...
CVE-2017-7346
- EPSS 0.1%
- Veröffentlicht 30.03.2017 23:59:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The vmw_gb_surface_define_ioctl function in drivers/gpu/drm/vmwgfx/vmwgfx_surface.c in the Linux kernel through 4.10.7 does not validate certain levels data, which allows local users to cause a denial of service (system hang) via a crafted ioctl call...
CVE-2017-7308
- EPSS 87%
- Veröffentlicht 29.03.2017 20:59:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The packet_set_ring function in net/packet/af_packet.c in the Linux kernel through 4.10.6 does not properly validate certain block-size data, which allows local users to cause a denial of service (integer signedness error and out-of-bounds write), or...
CVE-2017-7294
- EPSS 0.05%
- Veröffentlicht 29.03.2017 02:59:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The vmw_surface_define_ioctl function in drivers/gpu/drm/vmwgfx/vmwgfx_surface.c in the Linux kernel through 4.10.6 does not validate addition of certain levels data, which allows local users to trigger an integer overflow and out-of-bounds write, an...
CVE-2017-7273
- EPSS 0.11%
- Veröffentlicht 27.03.2017 17:59:01
- Zuletzt bearbeitet 13.05.2026 00:24:29
The cp_report_fixup function in drivers/hid/hid-cypress.c in the Linux kernel 3.2 and 4.x before 4.9.4 allows physically proximate attackers to cause a denial of service (integer underflow) or possibly have unspecified other impact via a crafted HID ...
CVE-2017-7261
- EPSS 0.06%
- Veröffentlicht 24.03.2017 21:59:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The vmw_surface_define_ioctl function in drivers/gpu/drm/vmwgfx/vmwgfx_surface.c in the Linux kernel through 4.10.5 does not check for a zero value of certain levels data, which allows local users to cause a denial of service (ZERO_SIZE_PTR dereferen...
CVE-2017-5897
- EPSS 1.99%
- Veröffentlicht 23.03.2017 16:59:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The ip6gre_err function in net/ipv6/ip6_gre.c in the Linux kernel allows remote attackers to have unspecified impact via vectors involving GRE flags in an IPv6 packet, which trigger an out-of-bounds access.
CVE-2017-7187
- EPSS 0.04%
- Veröffentlicht 20.03.2017 14:59:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The sg_ioctl function in drivers/scsi/sg.c in the Linux kernel through 4.10.4 allows local users to cause a denial of service (stack-based buffer overflow) or possibly have unspecified other impact via a large command size in an SG_NEXT_CMD_LEN ioctl...