Debian

Debian 8 (jessie)

428 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.1%
  • Veröffentlicht 08.03.2018 14:29:00
  • Zuletzt bearbeitet 21.11.2024 04:12:40

Memory leak in the sas_smp_get_phy_events function in drivers/scsi/libsas/sas_expander.c in the Linux kernel through 4.15.7 allows local users to cause a denial of service (memory consumption) via many read accesses to files in the /sys/class/sas_phy...

Exploit
  • EPSS 0.01%
  • Veröffentlicht 08.03.2018 07:29:01
  • Zuletzt bearbeitet 21.11.2024 04:12:40

An issue was discovered in the fd_locked_ioctl function in drivers/block/floppy.c in the Linux kernel through 4.15.7. The floppy driver will copy a kernel pointer to user memory in response to the FDGETPRM ioctl. An attacker can send the FDGETPRM ioc...

Exploit
  • EPSS 0.09%
  • Veröffentlicht 07.03.2018 08:29:00
  • Zuletzt bearbeitet 21.11.2024 04:12:38

The resv_map_release function in mm/hugetlb.c in the Linux kernel through 4.15.7 allows local users to cause a denial of service (BUG) via a crafted application that makes mmap system calls and has a large pgoff argument to the remap_file_pages syste...

  • EPSS 0.05%
  • Veröffentlicht 05.03.2018 18:29:00
  • Zuletzt bearbeitet 21.11.2024 03:19:35

In fs/ocfs2/cluster/nodemanager.c in the Linux kernel before 4.15, local users can cause a denial of service (NULL pointer dereference and BUG) because a required mutex is not used.

  • EPSS 5.04%
  • Veröffentlicht 02.03.2018 08:29:00
  • Zuletzt bearbeitet 21.11.2024 03:59:06

The Linux kernel before version 4.11 is vulnerable to a NULL pointer dereference in fs/cifs/cifsencrypt.c:setup_ntlmv2_rsp() that allows an attacker controlling a CIFS server to kernel panic a client that has this server mounted, because an empty Tar...

  • EPSS 0.05%
  • Veröffentlicht 27.02.2018 20:29:00
  • Zuletzt bearbeitet 21.11.2024 03:19:33

The dm_get_from_kobject function in drivers/md/dm.c in the Linux kernel before 4.14.3 allow local users to cause a denial of service (BUG) by leveraging a race condition with __dm_destroy during creation and removal of DM devices.

Exploit
  • EPSS 0.07%
  • Veröffentlicht 26.02.2018 20:29:00
  • Zuletzt bearbeitet 21.11.2024 04:12:14

A NULL pointer dereference was found in the net/rds/rdma.c __rds_rdma_map() function in the Linux kernel before 4.14.7 allowing local attackers to cause a system panic and a denial-of-service, related to RDS_GET_MR and RDS_GET_MR_FOR_DEST.

  • EPSS 0.04%
  • Veröffentlicht 12.02.2018 19:29:01
  • Zuletzt bearbeitet 21.11.2024 04:11:26

The futex_requeue function in kernel/futex.c in the Linux kernel before 4.14.15 might allow attackers to cause a denial of service (integer overflow) or possibly have unspecified other impact by triggering a negative wake or requeue value.

  • EPSS 0.06%
  • Veröffentlicht 31.01.2018 22:29:00
  • Zuletzt bearbeitet 21.11.2024 03:17:13

The vhci_hcd driver in the Linux Kernel before version 4.14.8 and 4.4.114 allows allows local attackers to disclose kernel memory addresses. Successful exploitation requires that a USB device is attached over IP.

  • EPSS 8.62%
  • Veröffentlicht 31.01.2018 22:29:00
  • Zuletzt bearbeitet 21.11.2024 03:17:13

The "get_pipe()" function (drivers/usb/usbip/stub_rx.c) in the Linux Kernel before version 4.14.8, 4.9.71, and 4.4.114 allows attackers to cause a denial of service (out-of-bounds read) via a specially crafted USB over IP packet.