Canonical

Ubuntu 14.04 LTS

821 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 16.01%
  • Veröffentlicht 18.04.2017 14:59:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

The NFSv2/NFSv3 server in the nfsd subsystem in the Linux kernel through 4.10.11 allows remote attackers to cause a denial of service (system crash) via a long RPC reply, related to net/sunrpc/svc.c, fs/nfsd/nfs3xdr.c, and fs/nfsd/nfsxdr.c.

  • EPSS 0.03%
  • Veröffentlicht 17.04.2017 00:59:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

The mm subsystem in the Linux kernel through 3.2 does not properly enforce the CONFIG_STRICT_DEVMEM protection mechanism, which allows local users to read or write to kernel memory locations in the first megabyte (and bypass slab-allocation access re...

  • EPSS 0.09%
  • Veröffentlicht 10.04.2017 14:59:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

Incorrect error handling in the set_mempolicy and mbind compat syscalls in mm/mempolicy.c in the Linux kernel through 4.10.9 allows local users to obtain sensitive information from uninitialized stack data by triggering failure of a certain bitmap op...

  • EPSS 0.5%
  • Veröffentlicht 05.04.2017 06:59:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

The ping_unhash function in net/ipv4/ping.c in the Linux kernel through 4.10.8 is too late in obtaining a certain lock and consequently cannot ensure that disconnect function calls are safe, which allows local users to cause a denial of service (pani...

  • EPSS 0.07%
  • Veröffentlicht 04.04.2017 05:59:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

The eCryptfs subsystem in the Linux kernel before 3.18 allows local users to gain privileges via a large filesystem stack that includes an overlayfs layer, related to fs/ecryptfs/main.c and fs/overlayfs/super.c.

  • EPSS 1.35%
  • Veröffentlicht 04.04.2017 05:59:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

udp.c in the Linux kernel before 4.5 allows remote attackers to execute arbitrary code via UDP traffic that triggers an unsafe second checksum calculation during execution of a recv system call with the MSG_PEEK flag.

  • EPSS 0.04%
  • Veröffentlicht 31.03.2017 04:59:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

The KEYS subsystem in the Linux kernel before 3.18 allows local users to gain privileges or cause a denial of service (NULL pointer dereference and system crash) via vectors involving a NULL value for a certain match field, related to the keyring_sea...

  • EPSS 0.1%
  • Veröffentlicht 30.03.2017 23:59:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

The vmw_gb_surface_define_ioctl function in drivers/gpu/drm/vmwgfx/vmwgfx_surface.c in the Linux kernel through 4.10.7 does not validate certain levels data, which allows local users to cause a denial of service (system hang) via a crafted ioctl call...

  • EPSS 87%
  • Veröffentlicht 29.03.2017 20:59:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

The packet_set_ring function in net/packet/af_packet.c in the Linux kernel through 4.10.6 does not properly validate certain block-size data, which allows local users to cause a denial of service (integer signedness error and out-of-bounds write), or...

  • EPSS 0.05%
  • Veröffentlicht 29.03.2017 02:59:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

The vmw_surface_define_ioctl function in drivers/gpu/drm/vmwgfx/vmwgfx_surface.c in the Linux kernel through 4.10.6 does not validate addition of certain levels data, which allows local users to trigger an integer overflow and out-of-bounds write, an...