CVE-2013-2888
- EPSS 0.1%
- Veröffentlicht 16.09.2013 13:01:24
- Zuletzt bearbeitet 29.04.2026 01:13:23
Multiple array index errors in drivers/hid/hid-core.c in the Human Interface Device (HID) subsystem in the Linux kernel through 3.11 allow physically proximate attackers to execute arbitrary code or cause a denial of service (heap memory corruption) ...
CVE-2013-4205
- EPSS 0.11%
- Veröffentlicht 25.08.2013 03:27:32
- Zuletzt bearbeitet 29.04.2026 01:13:23
Memory leak in the unshare_userns function in kernel/user_namespace.c in the Linux kernel before 3.10.6 allows local users to cause a denial of service (memory consumption) via an invalid CLONE_NEWUSER unshare call.
CVE-2013-4247
- EPSS 0.83%
- Veröffentlicht 25.08.2013 03:27:32
- Zuletzt bearbeitet 29.04.2026 01:13:23
Off-by-one error in the build_unc_path_to_root function in fs/cifs/connect.c in the Linux kernel before 3.9.6 allows remote attackers to cause a denial of service (memory corruption and system crash) via a DFS share mount operation that triggers use ...
CVE-2013-4254
- EPSS 0.04%
- Veröffentlicht 25.08.2013 03:27:32
- Zuletzt bearbeitet 29.04.2026 01:13:23
The validate_event function in arch/arm/kernel/perf_event.c in the Linux kernel before 3.10.8 on the ARM platform allows local users to gain privileges or cause a denial of service (NULL pointer dereference and system crash) by adding a hardware even...
CVE-2013-4127
- EPSS 0.04%
- Veröffentlicht 29.07.2013 13:59:56
- Zuletzt bearbeitet 29.04.2026 01:13:23
Use-after-free vulnerability in the vhost_net_set_backend function in drivers/vhost/net.c in the Linux kernel through 3.10.3 allows local users to cause a denial of service (OOPS and system crash) via vectors involving powering on a virtual machine.
CVE-2013-4162
- EPSS 0.11%
- Veröffentlicht 29.07.2013 13:59:56
- Zuletzt bearbeitet 29.04.2026 01:13:23
The udp_v6_push_pending_frames function in net/ipv6/udp.c in the IPv6 implementation in the Linux kernel through 3.10.3 makes an incorrect function call for pending data, which allows local users to cause a denial of service (BUG and system crash) vi...
CVE-2013-4163
- EPSS 0.09%
- Veröffentlicht 29.07.2013 13:59:56
- Zuletzt bearbeitet 29.04.2026 01:13:23
The ip6_append_data_mtu function in net/ipv6/ip6_output.c in the IPv6 implementation in the Linux kernel through 3.10.3 does not properly maintain information about whether the IPV6_MTU setsockopt option had been specified, which allows local users t...
CVE-2013-4125
- EPSS 1.23%
- Veröffentlicht 15.07.2013 20:55:03
- Zuletzt bearbeitet 29.04.2026 01:13:23
The fib6_add_rt2node function in net/ipv6/ip6_fib.c in the IPv6 stack in the Linux kernel through 3.10.1 does not properly handle Router Advertisement (RA) messages in certain circumstances involving three routes that initially qualified for membersh...
CVE-2013-1059
- EPSS 1.14%
- Veröffentlicht 08.07.2013 17:55:01
- Zuletzt bearbeitet 29.04.2026 01:13:23
net/ceph/auth_none.c in the Linux kernel through 3.10 allows remote attackers to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact via an auth_reply message that triggers an attempted buil...
CVE-2013-2206
- EPSS 3.21%
- Veröffentlicht 04.07.2013 21:55:01
- Zuletzt bearbeitet 29.04.2026 01:13:23
The sctp_sf_do_5_2_4_dupcook function in net/sctp/sm_statefuns.c in the SCTP implementation in the Linux kernel before 3.8.5 does not properly handle associations during the processing of a duplicate COOKIE ECHO chunk, which allows remote attackers t...