CVE-2016-10208
- EPSS 0.05%
- Veröffentlicht 06.02.2017 06:59:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The ext4_fill_super function in fs/ext4/super.c in the Linux kernel through 4.9.8 does not properly validate meta block groups, which allows physically proximate attackers to cause a denial of service (out-of-bounds read and system crash) via a craft...
CVE-2017-2583
- EPSS 0.08%
- Veröffentlicht 06.02.2017 06:59:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The load_segment_descriptor implementation in arch/x86/kvm/emulate.c in the Linux kernel before 4.9.5 improperly emulates a "MOV SS, NULL selector" instruction, which allows guest OS users to cause a denial of service (guest OS crash) or gain guest O...
CVE-2017-5549
- EPSS 0.08%
- Veröffentlicht 06.02.2017 06:59:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The klsi_105_get_line_state function in drivers/usb/serial/kl5kusb105.c in the Linux kernel before 4.9.5 places uninitialized heap-memory contents into a log entry upon a failure to read the line status, which allows local users to obtain sensitive i...
CVE-2017-2584
- EPSS 0.09%
- Veröffentlicht 15.01.2017 02:59:02
- Zuletzt bearbeitet 13.05.2026 00:24:29
arch/x86/kvm/emulate.c in the Linux kernel through 4.9.3 allows local users to obtain sensitive information from kernel memory or cause a denial of service (use-after-free) via a crafted application that leverages instruction emulation for fxrstor, f...
CVE-2016-10142
- EPSS 1.1%
- Veröffentlicht 14.01.2017 07:59:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
An issue was discovered in the IPv6 protocol specification, related to ICMP Packet Too Big (PTB) messages. (The scope of this CVE is all affected IPv6 implementations from all vendors.) The security implications of IP fragmentation have been discusse...
CVE-2016-8405
- EPSS 0.34%
- Veröffentlicht 12.01.2017 15:59:01
- Zuletzt bearbeitet 06.05.2026 22:30:45
An information disclosure vulnerability in kernel components including the ION subsystem, Binder, USB driver and networking subsystem could enable a local malicious application to access data outside of its permission levels. This issue is rated as M...
CVE-2016-9754
- EPSS 0.04%
- Veröffentlicht 05.01.2017 11:59:00
- Zuletzt bearbeitet 06.05.2026 22:30:45
The ring_buffer_resize function in kernel/trace/ring_buffer.c in the profiling subsystem in the Linux kernel before 4.6.1 mishandles certain integer calculations, which allows local users to gain privileges by writing to the /sys/kernel/debug/tracing...
- EPSS 0.08%
- Veröffentlicht 30.12.2016 18:59:00
- Zuletzt bearbeitet 06.05.2026 22:30:45
The sg implementation in the Linux kernel through 4.9 does not properly restrict write operations in situations where the KERNEL_DS option is set, which allows local users to read or write to arbitrary kernel memory locations or cause a denial of ser...
CVE-2012-6704
- EPSS 0.05%
- Veröffentlicht 28.12.2016 07:59:00
- Zuletzt bearbeitet 06.05.2026 22:30:45
The sock_setsockopt function in net/core/sock.c in the Linux kernel before 3.5 mishandles negative values of sk_sndbuf and sk_rcvbuf, which allows local users to cause a denial of service (memory corruption and system crash) or possibly have unspecif...
CVE-2016-6213
- EPSS 0.04%
- Veröffentlicht 28.12.2016 07:59:00
- Zuletzt bearbeitet 06.05.2026 22:30:45
fs/namespace.c in the Linux kernel before 4.9 does not restrict how many mounts may exist in a mount namespace, which allows local users to cause a denial of service (memory consumption and deadlock) via MS_BIND mount system calls, as demonstrated by...