Canonical

Ubuntu 14.04 LTS

821 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 10.56%
  • Veröffentlicht 10.10.2016 11:00:13
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Use-after-free vulnerability in the __sys_recvmmsg function in net/socket.c in the Linux kernel before 4.5.2 allows remote attackers to execute arbitrary code via vectors involving a recvmmsg system call that is mishandled during error processing.

  • EPSS 0.06%
  • Veröffentlicht 10.10.2016 10:59:03
  • Zuletzt bearbeitet 06.05.2026 22:30:45

arch/arm64/kernel/perf_event.c in the Linux kernel before 4.1 on arm64 platforms allows local users to gain privileges or cause a denial of service (invalid pointer dereference) via vectors involving events that are mishandled during a span of multip...

  • EPSS 0.06%
  • Veröffentlicht 06.08.2016 20:59:14
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Race condition in the ioctl_send_fib function in drivers/scsi/aacraid/commctrl.c in the Linux kernel through 4.7 allows local users to cause a denial of service (out-of-bounds access or system crash) by changing a certain size value, aka a "double fe...

  • EPSS 0.03%
  • Veröffentlicht 06.08.2016 20:59:06
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Race condition in the audit_log_single_execve_arg function in kernel/auditsc.c in the Linux kernel through 4.7 allows local users to bypass intended character-set restrictions or disrupt system-call auditing by changing a certain string, aka a "doubl...

Exploit
  • EPSS 51.99%
  • Veröffentlicht 06.08.2016 20:59:05
  • Zuletzt bearbeitet 06.05.2026 22:30:45

net/ipv4/tcp_input.c in the Linux kernel before 4.7 does not properly determine the rate of challenge ACK segments, which makes it easier for remote attackers to hijack TCP sessions via a blind in-window attack.

  • EPSS 0.03%
  • Veröffentlicht 06.08.2016 20:59:01
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The IPv6 stack in the Linux kernel before 4.3.3 mishandles options data, which allows local users to gain privileges or cause a denial of service (use-after-free and system crash) via a crafted sendmsg system call.

  • EPSS 0.07%
  • Veröffentlicht 06.08.2016 20:59:00
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The trace_writeback_dirty_page implementation in include/trace/events/writeback.h in the Linux kernel before 4.4 improperly interacts with mm/migrate.c, which allows local users to cause a denial of service (NULL pointer dereference and system crash)...

  • EPSS 0.06%
  • Veröffentlicht 06.08.2016 10:59:54
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The ioresources_init function in kernel/resource.c in the Linux kernel through 4.7, as used in Android before 2016-08-05 on Nexus 6 and 7 (2013) devices, uses weak permissions for /proc/iomem, which allows local users to obtain sensitive information ...

  • EPSS 0.08%
  • Veröffentlicht 06.08.2016 10:59:44
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The ethtool_get_wol function in net/core/ethtool.c in the Linux kernel through 4.7, as used in Android before 2016-08-05 on Nexus 5 and 7 (2013) devices, does not initialize a certain data structure, which allows local users to obtain sensitive infor...

  • EPSS 0.09%
  • Veröffentlicht 06.08.2016 10:59:39
  • Zuletzt bearbeitet 06.05.2026 22:30:45

drivers/media/media-device.c in the Linux kernel before 3.11, as used in Android before 2016-08-05 on Nexus 5 and 7 (2013) devices, does not properly initialize certain data structures, which allows local users to obtain sensitive information via a c...