CVE-2023-34324
- EPSS 0.89%
- Veröffentlicht 05.01.2024 17:15:08
- Zuletzt bearbeitet 04.11.2025 20:16:30
Closing of an event channel in the Linux kernel can result in a deadlock. This happens when the close is being performed in parallel to an unrelated Xen console action and the handling of a Xen console interrupt in an unprivileged guest. The closing...
- EPSS 0.41%
- Veröffentlicht 04.01.2024 17:15:08
- Zuletzt bearbeitet 24.03.2026 12:16:09
A flaw was found in the ATA over Ethernet (AoE) driver in the Linux kernel. The aoecmd_cfg_pkts() function improperly updates the refcnt on `struct net_device`, and a use-after-free can be triggered by racing between the free on the struct and the ac...
CVE-2023-7192
- EPSS 0.3%
- Veröffentlicht 02.01.2024 19:15:11
- Zuletzt bearbeitet 21.11.2024 08:45:28
A memory leak problem was found in ctnetlink_create_conntrack in net/netfilter/nf_conntrack_netlink.c in the Linux Kernel. This issue may allow a local attacker with CAP_NET_ADMIN privileges to cause a denial of service (DoS) attack due to a refcount...
CVE-2024-0193
- EPSS 0.84%
- Veröffentlicht 02.01.2024 18:15:08
- Zuletzt bearbeitet 05.06.2026 00:22:34
A use-after-free flaw was found in the netfilter subsystem of the Linux kernel. If the catchall element is garbage-collected when the pipapo set is removed, the element can be deactivated twice. This can cause a use-after-free issue on an NFT_CHAIN o...
CVE-2023-7042
- EPSS 0.28%
- Veröffentlicht 21.12.2023 20:15:09
- Zuletzt bearbeitet 21.11.2024 08:45:06
A null pointer dereference vulnerability was found in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() in drivers/net/wireless/ath/ath10k/wmi-tlv.c in the Linux kernel. This issue could be exploited to trigger a denial of service.
- EPSS 0.77%
- Veröffentlicht 21.12.2023 20:15:08
- Zuletzt bearbeitet 06.08.2026 22:16:38
A race condition was found in the GSM 0710 tty multiplexor in the Linux kernel. This issue occurs when two threads execute the GSMIOC_SETCONF ioctl on the same tty file descriptor with the gsm line discipline enabled, and can lead to a use-after-free...
- EPSS 0.72%
- Veröffentlicht 19.12.2023 14:15:08
- Zuletzt bearbeitet 17.08.2026 14:20:14
A heap out-of-bounds write vulnerability in the Linux kernel's Performance Events system component can be exploited to achieve local privilege escalation. A perf_event's read_size can overflow, leading to an heap out-of-bounds increment or write i...
- EPSS 0.37%
- Veröffentlicht 19.12.2023 14:15:08
- Zuletzt bearbeitet 12.05.2026 11:16:18
A use-after-free vulnerability in the Linux kernel's ipv4: igmp component can be exploited to achieve local privilege escalation. A race condition can be exploited to cause a timer be mistakenly registered on a RCU read locked object which is freed ...
CVE-2023-6817
- EPSS 0.33%
- Veröffentlicht 18.12.2023 15:15:10
- Zuletzt bearbeitet 12.05.2026 11:16:18
A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local privilege escalation. The function nft_pipapo_walk did not skip inactive elements during set walk which could lead double deactivat...
CVE-2022-22942
- EPSS 2.58%
- Veröffentlicht 13.12.2023 09:15:33
- Zuletzt bearbeitet 21.11.2024 06:47:39
The vmwgfx driver contains a local privilege escalation vulnerability that allows unprivileged users to gain access to files opened by other processes on the system through a dangling 'file' pointer.