- EPSS 0.02%
- Veröffentlicht 04.01.2024 17:15:08
- Zuletzt bearbeitet 24.03.2026 12:16:09
A flaw was found in the ATA over Ethernet (AoE) driver in the Linux kernel. The aoecmd_cfg_pkts() function improperly updates the refcnt on `struct net_device`, and a use-after-free can be triggered by racing between the free on the struct and the ac...
CVE-2023-7042
- EPSS 0.02%
- Veröffentlicht 21.12.2023 20:15:09
- Zuletzt bearbeitet 21.11.2024 08:45:06
A null pointer dereference vulnerability was found in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() in drivers/net/wireless/ath/ath10k/wmi-tlv.c in the Linux kernel. This issue could be exploited to trigger a denial of service.
- EPSS 0.24%
- Veröffentlicht 19.12.2023 14:15:08
- Zuletzt bearbeitet 12.05.2026 11:16:18
A heap out-of-bounds write vulnerability in the Linux kernel's Performance Events system component can be exploited to achieve local privilege escalation. A perf_event's read_size can overflow, leading to an heap out-of-bounds increment or write in ...
- EPSS 0.02%
- Veröffentlicht 19.12.2023 14:15:08
- Zuletzt bearbeitet 12.05.2026 11:16:18
A use-after-free vulnerability in the Linux kernel's ipv4: igmp component can be exploited to achieve local privilege escalation. A race condition can be exploited to cause a timer be mistakenly registered on a RCU read locked object which is freed ...
CVE-2022-22942
- EPSS 13.53%
- Veröffentlicht 13.12.2023 09:15:33
- Zuletzt bearbeitet 21.11.2024 06:47:39
The vmwgfx driver contains a local privilege escalation vulnerability that allows unprivileged users to gain access to files opened by other processes on the system through a dangling 'file' pointer.
CVE-2023-6606
- EPSS 0.01%
- Veröffentlicht 08.12.2023 17:15:07
- Zuletzt bearbeitet 21.11.2024 08:44:11
An out-of-bounds read vulnerability was found in smbCalcSize in fs/smb/client/netmisc.c in the Linux Kernel. This issue could allow a local attacker to crash the system or leak internal kernel information.
CVE-2023-47233
- EPSS 0.02%
- Veröffentlicht 03.11.2023 21:15:17
- Zuletzt bearbeitet 12.05.2026 11:16:14
The brcm80211 component in the Linux kernel through 6.5.10 has a brcmf_cfg80211_detach use-after-free in the device unplugging (disconnect the USB by hotplug) code. For physically proximate attackers with local access, this "could be exploited in a r...
CVE-2023-5717
- EPSS 0.25%
- Veröffentlicht 25.10.2023 18:17:43
- Zuletzt bearbeitet 13.02.2025 18:15:59
A heap out-of-bounds write vulnerability in the Linux kernel's Linux Kernel Performance Events (perf) component can be exploited to achieve local privilege escalation. If perf_read_group() is called while an event's sibling_list is smaller than its ...
CVE-2023-45871
- EPSS 0.03%
- Veröffentlicht 15.10.2023 01:15:09
- Zuletzt bearbeitet 05.05.2025 14:12:06
An issue was discovered in drivers/net/ethernet/intel/igb/igb_main.c in the IGB driver in the Linux kernel before 6.5.3. A buffer size may not be adequate for frames larger than the MTU.
CVE-2023-45863
- EPSS 0.01%
- Veröffentlicht 14.10.2023 21:15:45
- Zuletzt bearbeitet 21.11.2024 08:27:30
An issue was discovered in lib/kobject.c in the Linux kernel before 6.2.3. With root access, an attacker can trigger a race condition that results in a fill_kobj_path out-of-bounds write.