CVE-2014-9895
- EPSS 0.09%
- Veröffentlicht 06.08.2016 10:59:39
- Zuletzt bearbeitet 06.05.2026 22:30:45
drivers/media/media-device.c in the Linux kernel before 3.11, as used in Android before 2016-08-05 on Nexus 5 and 7 (2013) devices, does not properly initialize certain data structures, which allows local users to obtain sensitive information via a c...
CVE-2014-9888
- EPSS 0.11%
- Veröffentlicht 06.08.2016 10:59:31
- Zuletzt bearbeitet 06.05.2026 22:30:45
arch/arm/mm/dma-mapping.c in the Linux kernel before 3.13 on ARM platforms, as used in Android before 2016-08-05 on Nexus 5 and 7 (2013) devices, does not prevent executable DMA mappings, which might allow local users to gain privileges via a crafted...
CVE-2016-3857
- EPSS 0.13%
- Veröffentlicht 05.08.2016 20:59:45
- Zuletzt bearbeitet 06.05.2026 22:30:45
The kernel in Android before 2016-08-05 on Nexus 7 (2013) devices allows attackers to gain privileges via a crafted application, aka internal bug 28522518.
- EPSS 12.8%
- Veröffentlicht 03.07.2016 21:59:15
- Zuletzt bearbeitet 06.05.2026 22:30:45
The usbip_recv_xbuff function in drivers/usb/usbip/usbip_common.c in the Linux kernel before 4.5.3 allows remote attackers to cause a denial of service (out-of-bounds write) or possibly have unspecified other impact via a crafted length value in a US...
CVE-2016-5829
- EPSS 0.12%
- Veröffentlicht 27.06.2016 10:59:14
- Zuletzt bearbeitet 06.05.2026 22:30:45
Multiple heap-based buffer overflows in the hiddev_ioctl_usage function in drivers/hid/usbhid/hiddev.c in the Linux kernel through 4.6.3 allow local users to cause a denial of service or possibly have unspecified other impact via a crafted (1) HIDIOC...
CVE-2016-5244
- EPSS 0.56%
- Veröffentlicht 27.06.2016 10:59:11
- Zuletzt bearbeitet 06.05.2026 22:30:45
The rds_inc_info_copy function in net/rds/recv.c in the Linux kernel through 4.6.3 does not initialize a certain structure member, which allows remote attackers to obtain sensitive information from kernel stack memory by reading an RDS message.
CVE-2016-5243
- EPSS 0.03%
- Veröffentlicht 27.06.2016 10:59:10
- Zuletzt bearbeitet 06.05.2026 22:30:45
The tipc_nl_compat_link_dump function in net/tipc/netlink_compat.c in the Linux kernel through 4.6.3 does not properly copy a certain string, which allows local users to obtain sensitive information from kernel stack memory by reading a Netlink messa...
CVE-2016-4470
- EPSS 0.06%
- Veröffentlicht 27.06.2016 10:59:08
- Zuletzt bearbeitet 06.05.2026 22:30:45
The key_reject_and_link function in security/keys/key.c in the Linux kernel through 4.6.3 does not ensure that a certain data structure is initialized, which allows local users to cause a denial of service (system crash) via vectors involving a craft...
CVE-2016-1583
- EPSS 0.44%
- Veröffentlicht 27.06.2016 10:59:03
- Zuletzt bearbeitet 06.05.2026 22:30:45
The ecryptfs_privileged_open function in fs/ecryptfs/kthread.c in the Linux kernel before 4.6.3 allows local users to gain privileges or cause a denial of service (stack memory consumption) via vectors involving crafted mmap calls for /proc pathnames...
CVE-2016-4913
- EPSS 0.08%
- Veröffentlicht 23.05.2016 10:59:14
- Zuletzt bearbeitet 06.05.2026 22:30:45
The get_rock_ridge_filename function in fs/isofs/rock.c in the Linux kernel before 4.5.5 mishandles NM (aka alternate name) entries containing \0 characters, which allows local users to obtain sensitive information from kernel memory or possibly have...