CVE-2023-3609
- EPSS 0.01%
- Veröffentlicht 21.07.2023 21:15:11
- Zuletzt bearbeitet 13.02.2025 17:16:57
A use-after-free vulnerability in the Linux kernel's net/sched: cls_u32 component can be exploited to achieve local privilege escalation. If tcf_change_indev() fails, u32_set_parms() will immediately return an error after incrementing or decrementin...
CVE-2023-3611
- EPSS 0.01%
- Veröffentlicht 21.07.2023 21:15:11
- Zuletzt bearbeitet 13.02.2025 17:16:58
An out-of-bounds write vulnerability in the Linux kernel's net/sched: sch_qfq component can be exploited to achieve local privilege escalation. The qfq_change_agg() function in net/sched/sch_qfq.c allows an out-of-bounds write because lmax is update...
CVE-2023-3776
- EPSS 0.04%
- Veröffentlicht 21.07.2023 21:15:11
- Zuletzt bearbeitet 13.02.2025 17:16:58
A use-after-free vulnerability in the Linux kernel's net/sched: cls_fw component can be exploited to achieve local privilege escalation. If tcf_change_indev() fails, fw_set_parms() will immediately return an error after incrementing or decrementing ...
CVE-2023-35001
- EPSS 0.22%
- Veröffentlicht 05.07.2023 19:15:10
- Zuletzt bearbeitet 21.11.2024 08:07:48
Linux Kernel nftables Out-Of-Bounds Read/Write Vulnerability; nft_byteorder poorly handled vm register contents when CAP_NET_ADMIN is in any user or network namespace
CVE-2023-3338
- EPSS 7.72%
- Veröffentlicht 30.06.2023 22:15:10
- Zuletzt bearbeitet 21.11.2024 08:17:02
A null pointer dereference flaw was found in the Linux kernel's DECnet networking protocol. This issue could allow a remote user to crash the system.
CVE-2023-1206
- EPSS 0.04%
- Veröffentlicht 30.06.2023 22:15:09
- Zuletzt bearbeitet 21.11.2024 07:38:40
A hash collision flaw was found in the IPv6 connection lookup table in the Linux kernel’s IPv6 functionality when a user makes a new kind of SYN flood attack. A user located in the local network or with a high bandwidth connection can increase the CP...
CVE-2023-3390
- EPSS 0.1%
- Veröffentlicht 28.06.2023 21:15:10
- Zuletzt bearbeitet 21.11.2024 08:17:09
A use-after-free vulnerability was found in the Linux kernel's netfilter subsystem in net/netfilter/nf_tables_api.c. Mishandled error handling with NFT_MSG_NEWRULE makes it possible to use a dangling pointer in the same transaction causing a use-aft...
CVE-2023-3090
- EPSS 0.01%
- Veröffentlicht 28.06.2023 20:15:09
- Zuletzt bearbeitet 13.02.2025 17:16:55
A heap out-of-bounds write vulnerability in the Linux Kernel ipvlan network driver can be exploited to achieve local privilege escalation. The out-of-bounds write is caused by missing skb->cb initialization in the ipvlan network driver. The vulnera...
CVE-2023-3212
- EPSS 0.01%
- Veröffentlicht 23.06.2023 20:15:09
- Zuletzt bearbeitet 21.11.2024 08:16:42
A NULL pointer dereference issue was found in the gfs2 file system in the Linux kernel. It occurs on corrupt gfs2 file systems when the evict code tries to reference the journal descriptor structure after it has been freed and set to NULL. A privileg...
- EPSS 0.01%
- Veröffentlicht 18.06.2023 22:15:09
- Zuletzt bearbeitet 05.05.2025 16:15:41
An issue was discovered in the Linux kernel before 6.3.2. A use-after-free was found in saa7134_finidev in drivers/media/pci/saa7134/saa7134-core.c.