CVE-2017-12134
- EPSS 0.5%
- Veröffentlicht 24.08.2017 14:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The xen_biovec_phys_mergeable function in drivers/xen/biomerge.c in Xen might allow local OS guest users to corrupt block device data streams and consequently obtain sensitive memory information, cause a denial of service, or gain host OS privileges ...
CVE-2017-10661
- EPSS 13.38%
- Veröffentlicht 19.08.2017 18:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
Race condition in fs/timerfd.c in the Linux kernel before 4.10.15 allows local users to gain privileges or cause a denial of service (list corruption or use-after-free) via simultaneous file-descriptor operations that leverage improper might_cancel q...
CVE-2017-10662
- EPSS 0.47%
- Veröffentlicht 19.08.2017 18:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The sanity_check_raw_super function in fs/f2fs/super.c in the Linux kernel before 4.11.1 does not validate the segment count, which allows local users to gain privileges via unspecified vectors.
CVE-2017-10663
- EPSS 0.44%
- Veröffentlicht 19.08.2017 18:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The sanity_check_ckpt function in fs/f2fs/super.c in the Linux kernel before 4.12.4 does not validate the blkoff and segno arrays, which allows local users to gain privileges via unspecified vectors.
CVE-2016-5863
- EPSS 0.55%
- Veröffentlicht 16.08.2017 15:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
In an ioctl handler in all Qualcomm products with Android for MSM, Firefox OS for MSM, or QRD Android, several sanity checks are missing which can lead to out-of-bounds accesses.
CVE-2017-0750
- EPSS 0.96%
- Veröffentlicht 09.08.2017 21:29:01
- Zuletzt bearbeitet 13.05.2026 00:24:29
A elevation of privilege vulnerability in the Upstream Linux file system. Product: Android. Versions: Android kernel. Android ID: A-36817013.
- EPSS 5.23%
- Veröffentlicht 09.08.2017 21:29:01
- Zuletzt bearbeitet 13.05.2026 00:24:29
In /drivers/isdn/i4l/isdn_net.c: A user-controlled buffer is copied into a local buffer of constant size using strcpy without a length check which can cause a buffer overflow. This affects the Linux kernel 4.9-stable tree, 4.12-stable tree, 3.18-stab...
CVE-2006-3635
- EPSS 0.53%
- Veröffentlicht 07.08.2017 03:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The ia64 subsystem in the Linux kernel before 2.6.26 allows local users to cause a denial of service (stack consumption and system crash) via a crafted application that leverages the mishandling of invalid Register Stack Engine (RSE) state.
CVE-2017-7541
- EPSS 0.55%
- Veröffentlicht 25.07.2017 04:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The brcmf_cfg80211_mgmt_tx function in drivers/net/wireless/broadcom/brcm80211/brcmfmac/cfg80211.c in the Linux kernel before 4.12.3 allows local users to cause a denial of service (buffer overflow and system crash) or possibly gain privileges via a ...
CVE-2017-7542
- EPSS 0.45%
- Veröffentlicht 21.07.2017 16:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The ip6_find_1stfragopt function in net/ipv6/output_core.c in the Linux kernel through 4.12.3 allows local users to cause a denial of service (integer overflow and infinite loop) by leveraging the ability to open a raw socket.