CVE-2018-7757
- EPSS 0.1%
- Veröffentlicht 08.03.2018 14:29:00
- Zuletzt bearbeitet 21.11.2024 04:12:40
Memory leak in the sas_smp_get_phy_events function in drivers/scsi/libsas/sas_expander.c in the Linux kernel through 4.15.7 allows local users to cause a denial of service (memory consumption) via many read accesses to files in the /sys/class/sas_phy...
CVE-2018-7755
- EPSS 0.01%
- Veröffentlicht 08.03.2018 07:29:01
- Zuletzt bearbeitet 21.11.2024 04:12:40
An issue was discovered in the fd_locked_ioctl function in drivers/block/floppy.c in the Linux kernel through 4.15.7. The floppy driver will copy a kernel pointer to user memory in response to the FDGETPRM ioctl. An attacker can send the FDGETPRM ioc...
CVE-2018-7740
- EPSS 0.09%
- Veröffentlicht 07.03.2018 08:29:00
- Zuletzt bearbeitet 21.11.2024 04:12:38
The resv_map_release function in mm/hugetlb.c in the Linux kernel through 4.15.7 allows local users to cause a denial of service (BUG) via a crafted application that makes mmap system calls and has a large pgoff argument to the remap_file_pages syste...
CVE-2017-18216
- EPSS 0.05%
- Veröffentlicht 05.03.2018 18:29:00
- Zuletzt bearbeitet 21.11.2024 03:19:35
In fs/ocfs2/cluster/nodemanager.c in the Linux kernel before 4.15, local users can cause a denial of service (NULL pointer dereference and BUG) because a required mutex is not used.
CVE-2018-1066
- EPSS 5.04%
- Veröffentlicht 02.03.2018 08:29:00
- Zuletzt bearbeitet 21.11.2024 03:59:06
The Linux kernel before version 4.11 is vulnerable to a NULL pointer dereference in fs/cifs/cifsencrypt.c:setup_ntlmv2_rsp() that allows an attacker controlling a CIFS server to kernel panic a client that has this server mounted, because an empty Tar...
CVE-2017-18203
- EPSS 0.05%
- Veröffentlicht 27.02.2018 20:29:00
- Zuletzt bearbeitet 21.11.2024 03:19:33
The dm_get_from_kobject function in drivers/md/dm.c in the Linux kernel before 4.14.3 allow local users to cause a denial of service (BUG) by leveraging a race condition with __dm_destroy during creation and removal of DM devices.
CVE-2018-7492
- EPSS 0.07%
- Veröffentlicht 26.02.2018 20:29:00
- Zuletzt bearbeitet 21.11.2024 04:12:14
A NULL pointer dereference was found in the net/rds/rdma.c __rds_rdma_map() function in the Linux kernel before 4.14.7 allowing local attackers to cause a system panic and a denial-of-service, related to RDS_GET_MR and RDS_GET_MR_FOR_DEST.
CVE-2018-6927
- EPSS 0.04%
- Veröffentlicht 12.02.2018 19:29:01
- Zuletzt bearbeitet 21.11.2024 04:11:26
The futex_requeue function in kernel/futex.c in the Linux kernel before 4.14.15 might allow attackers to cause a denial of service (integer overflow) or possibly have unspecified other impact by triggering a negative wake or requeue value.
CVE-2017-16911
- EPSS 0.06%
- Veröffentlicht 31.01.2018 22:29:00
- Zuletzt bearbeitet 21.11.2024 03:17:13
The vhci_hcd driver in the Linux Kernel before version 4.14.8 and 4.4.114 allows allows local attackers to disclose kernel memory addresses. Successful exploitation requires that a USB device is attached over IP.
CVE-2017-16912
- EPSS 8.62%
- Veröffentlicht 31.01.2018 22:29:00
- Zuletzt bearbeitet 21.11.2024 03:17:13
The "get_pipe()" function (drivers/usb/usbip/stub_rx.c) in the Linux Kernel before version 4.14.8, 4.9.71, and 4.4.114 allows attackers to cause a denial of service (out-of-bounds read) via a specially crafted USB over IP packet.