CVE-2016-8633
- EPSS 0.93%
- Veröffentlicht 28.11.2016 03:59:06
- Zuletzt bearbeitet 06.05.2026 22:30:45
drivers/firewire/net.c in the Linux kernel before 4.8.7, in certain unusual hardware configurations, allows remote attackers to execute arbitrary code via crafted fragmented packets.
CVE-2016-8632
- EPSS 0.05%
- Veröffentlicht 28.11.2016 03:59:04
- Zuletzt bearbeitet 06.05.2026 22:30:45
The tipc_msg_build function in net/tipc/msg.c in the Linux kernel through 4.8.11 does not validate the relationship between the minimum fragment length and the maximum packet size, which allows local users to gain privileges or cause a denial of serv...
CVE-2016-8630
- EPSS 0.03%
- Veröffentlicht 28.11.2016 03:59:03
- Zuletzt bearbeitet 06.05.2026 22:30:45
The x86_decode_insn function in arch/x86/kvm/emulate.c in the Linux kernel before 4.8.7, when KVM is enabled, allows local users to cause a denial of service (host OS crash) via a certain use of a ModR/M byte in an undefined instruction.
CVE-2015-8970
- EPSS 0.04%
- Veröffentlicht 28.11.2016 03:59:02
- Zuletzt bearbeitet 06.05.2026 22:30:45
crypto/algif_skcipher.c in the Linux kernel before 4.4.2 does not verify that a setkey operation has been performed on an AF_ALG socket before an accept system call is processed, which allows local users to cause a denial of service (NULL pointer der...
CVE-2016-7916
- EPSS 0.05%
- Veröffentlicht 16.11.2016 05:59:11
- Zuletzt bearbeitet 06.05.2026 22:30:45
Race condition in the environ_read function in fs/proc/base.c in the Linux kernel before 4.5.4 allows local users to obtain sensitive information from kernel memory by reading a /proc/*/environ file during a process-setup time interval in which envir...
- EPSS 0.16%
- Veröffentlicht 16.11.2016 05:59:11
- Zuletzt bearbeitet 06.05.2026 22:30:45
The nfnetlink_rcv_batch function in net/netfilter/nfnetlink.c in the Linux kernel before 4.5 does not check whether a batch message's length field is large enough, which allows local users to obtain sensitive information from kernel memory or cause a...
CVE-2016-7915
- EPSS 0.29%
- Veröffentlicht 16.11.2016 05:59:09
- Zuletzt bearbeitet 06.05.2026 22:30:45
The hid_input_field function in drivers/hid/hid-core.c in the Linux kernel before 4.6 allows physically proximate attackers to obtain sensitive information from kernel memory or cause a denial of service (out-of-bounds read) by connecting a device, a...
CVE-2016-7913
- EPSS 0.63%
- Veröffentlicht 16.11.2016 05:59:08
- Zuletzt bearbeitet 06.05.2026 22:30:45
The xc2028_set_config function in drivers/media/tuners/tuner-xc2028.c in the Linux kernel before 4.6 allows local users to gain privileges or cause a denial of service (use-after-free) via vectors involving omission of the firmware name from a certai...
CVE-2016-7914
- EPSS 0.18%
- Veröffentlicht 16.11.2016 05:59:08
- Zuletzt bearbeitet 06.05.2026 22:30:45
The assoc_array_insert_into_terminal_node function in lib/assoc_array.c in the Linux kernel before 4.5.3 does not check whether a slot is a leaf, which allows local users to obtain sensitive information from kernel memory or cause a denial of service...
CVE-2016-7912
- EPSS 0.27%
- Veröffentlicht 16.11.2016 05:59:07
- Zuletzt bearbeitet 06.05.2026 22:30:45
Use-after-free vulnerability in the ffs_user_copy_worker function in drivers/usb/gadget/function/f_fs.c in the Linux kernel before 4.5.3 allows local users to gain privileges by accessing an I/O data structure after a certain callback call.