CVE-2015-8970
- EPSS 0.5%
- Veröffentlicht 28.11.2016 03:59:02
- Zuletzt bearbeitet 06.05.2026 22:30:45
crypto/algif_skcipher.c in the Linux kernel before 4.4.2 does not verify that a setkey operation has been performed on an AF_ALG socket before an accept system call is processed, which allows local users to cause a denial of service (NULL pointer der...
CVE-2016-7916
- EPSS 0.39%
- Veröffentlicht 16.11.2016 05:59:11
- Zuletzt bearbeitet 06.05.2026 22:30:45
Race condition in the environ_read function in fs/proc/base.c in the Linux kernel before 4.5.4 allows local users to obtain sensitive information from kernel memory by reading a /proc/*/environ file during a process-setup time interval in which envir...
- EPSS 1.51%
- Veröffentlicht 16.11.2016 05:59:11
- Zuletzt bearbeitet 06.05.2026 22:30:45
The nfnetlink_rcv_batch function in net/netfilter/nfnetlink.c in the Linux kernel before 4.5 does not check whether a batch message's length field is large enough, which allows local users to obtain sensitive information from kernel memory or cause a...
CVE-2016-7915
- EPSS 1.74%
- Veröffentlicht 16.11.2016 05:59:09
- Zuletzt bearbeitet 06.05.2026 22:30:45
The hid_input_field function in drivers/hid/hid-core.c in the Linux kernel before 4.6 allows physically proximate attackers to obtain sensitive information from kernel memory or cause a denial of service (out-of-bounds read) by connecting a device, a...
CVE-2016-7913
- EPSS 2.16%
- Veröffentlicht 16.11.2016 05:59:08
- Zuletzt bearbeitet 06.05.2026 22:30:45
The xc2028_set_config function in drivers/media/tuners/tuner-xc2028.c in the Linux kernel before 4.6 allows local users to gain privileges or cause a denial of service (use-after-free) via vectors involving omission of the firmware name from a certai...
CVE-2016-7914
- EPSS 2.04%
- Veröffentlicht 16.11.2016 05:59:08
- Zuletzt bearbeitet 06.05.2026 22:30:45
The assoc_array_insert_into_terminal_node function in lib/assoc_array.c in the Linux kernel before 4.5.3 does not check whether a slot is a leaf, which allows local users to obtain sensitive information from kernel memory or cause a denial of service...
CVE-2016-7912
- EPSS 2.11%
- Veröffentlicht 16.11.2016 05:59:07
- Zuletzt bearbeitet 06.05.2026 22:30:45
Use-after-free vulnerability in the ffs_user_copy_worker function in drivers/usb/gadget/function/f_fs.c in the Linux kernel before 4.5.3 allows local users to gain privileges by accessing an I/O data structure after a certain callback call.
CVE-2016-7911
- EPSS 1.54%
- Veröffentlicht 16.11.2016 05:59:06
- Zuletzt bearbeitet 06.05.2026 22:30:45
Race condition in the get_task_ioprio function in block/ioprio.c in the Linux kernel before 4.6.6 allows local users to gain privileges or cause a denial of service (use-after-free) via a crafted ioprio_get system call.
CVE-2016-7910
- EPSS 2.97%
- Veröffentlicht 16.11.2016 05:59:05
- Zuletzt bearbeitet 06.05.2026 22:30:45
Use-after-free vulnerability in the disk_seqf_stop function in block/genhd.c in the Linux kernel before 4.7.1 allows local users to gain privileges by leveraging the execution of a certain stop operation even if the corresponding start operation had ...
CVE-2015-8964
- EPSS 1.5%
- Veröffentlicht 16.11.2016 05:59:03
- Zuletzt bearbeitet 06.05.2026 22:30:45
The tty_set_termios_ldisc function in drivers/tty/tty_ldisc.c in the Linux kernel before 4.5 allows local users to obtain sensitive information from kernel memory by reading a tty data structure.