CVE-2016-8633
- EPSS 1.77%
- Veröffentlicht 28.11.2016 03:59:06
- Zuletzt bearbeitet 06.05.2026 22:30:45
drivers/firewire/net.c in the Linux kernel before 4.8.7, in certain unusual hardware configurations, allows remote attackers to execute arbitrary code via crafted fragmented packets.
CVE-2016-8632
- EPSS 0.4%
- Veröffentlicht 28.11.2016 03:59:04
- Zuletzt bearbeitet 06.05.2026 22:30:45
The tipc_msg_build function in net/tipc/msg.c in the Linux kernel through 4.8.11 does not validate the relationship between the minimum fragment length and the maximum packet size, which allows local users to gain privileges or cause a denial of serv...
CVE-2015-1328
- EPSS 37.68%
- Veröffentlicht 28.11.2016 03:59:00
- Zuletzt bearbeitet 06.05.2026 22:30:45
The overlayfs implementation in the linux (aka Linux kernel) package before 3.19.0-21.21 in Ubuntu through 15.04 does not properly check permissions for file creation in the upper filesystem directory, which allows local users to obtain root access b...
CVE-2016-7916
- EPSS 0.39%
- Veröffentlicht 16.11.2016 05:59:11
- Zuletzt bearbeitet 06.05.2026 22:30:45
Race condition in the environ_read function in fs/proc/base.c in the Linux kernel before 4.5.4 allows local users to obtain sensitive information from kernel memory by reading a /proc/*/environ file during a process-setup time interval in which envir...
CVE-2016-7915
- EPSS 1.74%
- Veröffentlicht 16.11.2016 05:59:09
- Zuletzt bearbeitet 06.05.2026 22:30:45
The hid_input_field function in drivers/hid/hid-core.c in the Linux kernel before 4.6 allows physically proximate attackers to obtain sensitive information from kernel memory or cause a denial of service (out-of-bounds read) by connecting a device, a...
CVE-2016-7913
- EPSS 2.16%
- Veröffentlicht 16.11.2016 05:59:08
- Zuletzt bearbeitet 06.05.2026 22:30:45
The xc2028_set_config function in drivers/media/tuners/tuner-xc2028.c in the Linux kernel before 4.6 allows local users to gain privileges or cause a denial of service (use-after-free) via vectors involving omission of the firmware name from a certai...
CVE-2016-7914
- EPSS 2.04%
- Veröffentlicht 16.11.2016 05:59:08
- Zuletzt bearbeitet 06.05.2026 22:30:45
The assoc_array_insert_into_terminal_node function in lib/assoc_array.c in the Linux kernel before 4.5.3 does not check whether a slot is a leaf, which allows local users to obtain sensitive information from kernel memory or cause a denial of service...
CVE-2016-7911
- EPSS 1.54%
- Veröffentlicht 16.11.2016 05:59:06
- Zuletzt bearbeitet 06.05.2026 22:30:45
Race condition in the get_task_ioprio function in block/ioprio.c in the Linux kernel before 4.6.6 allows local users to gain privileges or cause a denial of service (use-after-free) via a crafted ioprio_get system call.
CVE-2016-7910
- EPSS 2.97%
- Veröffentlicht 16.11.2016 05:59:05
- Zuletzt bearbeitet 06.05.2026 22:30:45
Use-after-free vulnerability in the disk_seqf_stop function in block/genhd.c in the Linux kernel before 4.7.1 allows local users to gain privileges by leveraging the execution of a certain stop operation even if the corresponding start operation had ...
CVE-2015-8964
- EPSS 1.5%
- Veröffentlicht 16.11.2016 05:59:03
- Zuletzt bearbeitet 06.05.2026 22:30:45
The tty_set_termios_ldisc function in drivers/tty/tty_ldisc.c in the Linux kernel before 4.5 allows local users to obtain sensitive information from kernel memory by reading a tty data structure.