CVE-2015-3331
- EPSS 4.11%
- Veröffentlicht 27.05.2015 10:59:07
- Zuletzt bearbeitet 06.05.2026 22:30:45
The __driver_rfc4106_decrypt function in arch/x86/crypto/aesni-intel_glue.c in the Linux kernel before 3.19.3 does not properly determine the memory locations used for encrypted data, which allows context-dependent attackers to cause a denial of serv...
CVE-2015-2830
- EPSS 0.04%
- Veröffentlicht 27.05.2015 10:59:06
- Zuletzt bearbeitet 06.05.2026 22:30:45
arch/x86/kernel/entry_64.S in the Linux kernel before 3.19.2 does not prevent the TS_COMPAT flag from reaching a user-mode task, which might allow local users to bypass the seccomp or audit protection mechanism via a crafted application that uses the...
CVE-2015-2922
- EPSS 1.72%
- Veröffentlicht 27.05.2015 10:59:06
- Zuletzt bearbeitet 06.05.2026 22:30:45
The ndisc_router_discovery function in net/ipv6/ndisc.c in the Neighbor Discovery (ND) protocol implementation in the IPv6 stack in the Linux kernel before 3.19.6 allows remote attackers to reconfigure a hop-limit setting via a small hop_limit value ...
CVE-2015-2666
- EPSS 0.1%
- Veröffentlicht 27.05.2015 10:59:04
- Zuletzt bearbeitet 06.05.2026 22:30:45
Stack-based buffer overflow in the get_matching_model_microcode function in arch/x86/kernel/cpu/microcode/intel_early.c in the Linux kernel before 4.0 allows context-dependent attackers to gain privileges by constructing a crafted microcode header an...
CVE-2014-9715
- EPSS 0.04%
- Veröffentlicht 27.05.2015 10:59:02
- Zuletzt bearbeitet 06.05.2026 22:30:45
include/net/netfilter/nf_conntrack_extend.h in the netfilter subsystem in the Linux kernel before 3.14.5 uses an insufficiently large data type for certain extension data, which allows local users to cause a denial of service (NULL pointer dereferenc...
CVE-2014-9710
- EPSS 0.03%
- Veröffentlicht 27.05.2015 10:59:00
- Zuletzt bearbeitet 06.05.2026 22:30:45
The Btrfs implementation in the Linux kernel before 3.19 does not ensure that the visible xattr state is consistent with a requested replacement, which allows local users to bypass intended ACL settings and gain privileges via standard filesystem ope...
CVE-2015-2042
- EPSS 0.06%
- Veröffentlicht 21.04.2015 10:59:02
- Zuletzt bearbeitet 06.05.2026 22:30:45
net/rds/sysctl.c in the Linux kernel before 3.19 uses an incorrect data type in a sysctl table, which allows local users to obtain potentially sensitive information from kernel memory or possibly have unspecified other impact by accessing a sysctl en...
CVE-2015-2041
- EPSS 0.07%
- Veröffentlicht 21.04.2015 10:59:01
- Zuletzt bearbeitet 06.05.2026 22:30:45
net/llc/sysctl_net_llc.c in the Linux kernel before 3.19 uses an incorrect data type in a sysctl table, which allows local users to obtain potentially sensitive information from kernel memory or possibly have unspecified other impact by accessing a s...
CVE-2015-1465
- EPSS 6.84%
- Veröffentlicht 05.04.2015 21:59:01
- Zuletzt bearbeitet 06.05.2026 22:30:45
The IPv4 implementation in the Linux kernel before 3.18.8 does not properly consider the length of the Read-Copy Update (RCU) grace period for redirecting lookups in the absence of caching, which allows remote attackers to cause a denial of service (...
- EPSS 1.97%
- Veröffentlicht 16.03.2015 10:59:07
- Zuletzt bearbeitet 06.05.2026 22:30:45
The stack randomization feature in the Linux kernel before 3.19.1 on 64-bit platforms uses incorrect data types for the results of bitwise left-shift operations, which makes it easier for attackers to bypass the ASLR protection mechanism by predictin...