- EPSS 26.94%
- Veröffentlicht 28.11.2016 03:59:17
- Zuletzt bearbeitet 06.05.2026 22:30:45
The sctp_sf_ootb function in net/sctp/sm_statefuns.c in the Linux kernel before 4.8.8 lacks chunk-length checking for the first chunk, which allows remote attackers to cause a denial of service (out-of-bounds slab access) or possibly have unspecified...
CVE-2016-9178
- EPSS 0.07%
- Veröffentlicht 28.11.2016 03:59:13
- Zuletzt bearbeitet 06.05.2026 22:30:45
The __get_user_asm_ex macro in arch/x86/include/asm/uaccess.h in the Linux kernel before 4.7.5 does not initialize a certain integer variable, which allows local users to obtain sensitive information from kernel stack memory by triggering failure of ...
CVE-2016-8645
- EPSS 0.03%
- Veröffentlicht 28.11.2016 03:59:07
- Zuletzt bearbeitet 06.05.2026 22:30:45
The TCP stack in the Linux kernel before 4.8.10 mishandles skb truncation, which allows local users to cause a denial of service (system crash) via a crafted application that makes sendto system calls, related to net/ipv4/tcp_ipv4.c and net/ipv6/tcp_...
CVE-2016-8633
- EPSS 0.93%
- Veröffentlicht 28.11.2016 03:59:06
- Zuletzt bearbeitet 06.05.2026 22:30:45
drivers/firewire/net.c in the Linux kernel before 4.8.7, in certain unusual hardware configurations, allows remote attackers to execute arbitrary code via crafted fragmented packets.
CVE-2016-7915
- EPSS 0.29%
- Veröffentlicht 16.11.2016 05:59:09
- Zuletzt bearbeitet 06.05.2026 22:30:45
The hid_input_field function in drivers/hid/hid-core.c in the Linux kernel before 4.6 allows physically proximate attackers to obtain sensitive information from kernel memory or cause a denial of service (out-of-bounds read) by connecting a device, a...
CVE-2016-7911
- EPSS 0.23%
- Veröffentlicht 16.11.2016 05:59:06
- Zuletzt bearbeitet 06.05.2026 22:30:45
Race condition in the get_task_ioprio function in block/ioprio.c in the Linux kernel before 4.6.6 allows local users to gain privileges or cause a denial of service (use-after-free) via a crafted ioprio_get system call.
CVE-2016-7910
- EPSS 0.26%
- Veröffentlicht 16.11.2016 05:59:05
- Zuletzt bearbeitet 06.05.2026 22:30:45
Use-after-free vulnerability in the disk_seqf_stop function in block/genhd.c in the Linux kernel before 4.7.1 allows local users to gain privileges by leveraging the execution of a certain stop operation even if the corresponding start operation had ...
CVE-2015-8964
- EPSS 0.17%
- Veröffentlicht 16.11.2016 05:59:03
- Zuletzt bearbeitet 06.05.2026 22:30:45
The tty_set_termios_ldisc function in drivers/tty/tty_ldisc.c in the Linux kernel before 4.5 allows local users to obtain sensitive information from kernel memory by reading a tty data structure.
CVE-2015-8963
- EPSS 0.09%
- Veröffentlicht 16.11.2016 05:59:02
- Zuletzt bearbeitet 06.05.2026 22:30:45
Race condition in kernel/events/core.c in the Linux kernel before 4.4 allows local users to gain privileges or cause a denial of service (use-after-free) by leveraging incorrect handling of an swevent data structure during a CPU unplug operation.
CVE-2015-8962
- EPSS 0.32%
- Veröffentlicht 16.11.2016 05:59:01
- Zuletzt bearbeitet 06.05.2026 22:30:45
Double free vulnerability in the sg_common_write function in drivers/scsi/sg.c in the Linux kernel before 4.4 allows local users to gain privileges or cause a denial of service (memory corruption and system crash) by detaching a device during an SG_I...