- EPSS 17.13%
- Veröffentlicht 16.03.2015 10:59:06
- Zuletzt bearbeitet 06.05.2026 22:30:45
Use-after-free vulnerability in the sctp_assoc_update function in net/sctp/associola.c in the Linux kernel before 3.18.8 allows remote attackers to cause a denial of service (slab corruption and panic) or possibly have unspecified other impact by tri...
CVE-2015-0274
- EPSS 0.04%
- Veröffentlicht 16.03.2015 10:59:05
- Zuletzt bearbeitet 06.05.2026 22:30:45
The XFS implementation in the Linux kernel before 3.15 improperly uses an old size value during remote attribute replacement, which allows local users to cause a denial of service (transaction overrun and data corruption) or possibly gain privileges ...
CVE-2014-8173
- EPSS 0.05%
- Veröffentlicht 16.03.2015 10:59:03
- Zuletzt bearbeitet 06.05.2026 22:30:45
The pmd_none_or_trans_huge_or_clear_bad function in include/asm-generic/pgtable.h in the Linux kernel before 3.13 on NUMA systems does not properly determine whether a Page Middle Directory (PMD) entry is a transparent huge-table entry, which allows ...
CVE-2014-8172
- EPSS 0.05%
- Veröffentlicht 16.03.2015 10:59:02
- Zuletzt bearbeitet 06.05.2026 22:30:45
The filesystem implementation in the Linux kernel before 3.13 performs certain operations on lists of files with an inappropriate locking approach, which allows local users to cause a denial of service (soft lockup or system crash) via unspecified us...
CVE-2014-8159
- EPSS 0.14%
- Veröffentlicht 16.03.2015 10:59:01
- Zuletzt bearbeitet 06.05.2026 22:30:45
The InfiniBand (IB) implementation in the Linux kernel package before 2.6.32-504.12.2 on Red Hat Enterprise Linux (RHEL) 6 does not properly restrict use of User Verbs for registration of memory regions, which allows local users to access arbitrary p...
CVE-2014-7822
- EPSS 0.38%
- Veröffentlicht 16.03.2015 10:59:00
- Zuletzt bearbeitet 06.05.2026 22:30:45
The implementation of certain splice_write file operations in the Linux kernel before 3.16 does not enforce a restriction on the maximum size of a single file, which allows local users to cause a denial of service (system crash) or possibly have unsp...
CVE-2015-2150
- EPSS 0.11%
- Veröffentlicht 12.03.2015 14:59:02
- Zuletzt bearbeitet 06.05.2026 22:30:45
Xen 3.3.x through 4.5.x and the Linux kernel through 3.19.1 do not properly restrict access to PCI command registers, which might allow local guest OS users to cause a denial of service (non-maskable interrupt and host crash) by disabling the (1) mem...
CVE-2014-9683
- EPSS 0.06%
- Veröffentlicht 03.03.2015 11:59:02
- Zuletzt bearbeitet 06.05.2026 22:30:45
Off-by-one error in the ecryptfs_decode_from_filename function in fs/ecryptfs/crypto.c in the eCryptfs subsystem in the Linux kernel before 3.18.2 allows local users to cause a denial of service (buffer overflow and system crash) or possibly gain pri...
CVE-2015-0239
- EPSS 0.1%
- Veröffentlicht 02.03.2015 11:59:04
- Zuletzt bearbeitet 06.05.2026 22:30:45
The em_sysenter function in arch/x86/kvm/emulate.c in the Linux kernel before 3.18.5, when the guest OS lacks SYSENTER MSR initialization, allows guest OS users to gain guest OS privileges or cause a denial of service (guest OS crash) by triggering u...
CVE-2014-9644
- EPSS 0.06%
- Veröffentlicht 02.03.2015 11:59:03
- Zuletzt bearbeitet 06.05.2026 22:30:45
The Crypto API in the Linux kernel before 3.18.5 allows local users to load arbitrary kernel modules via a bind system call for an AF_ALG socket with a parenthesized module template expression in the salg_name field, as demonstrated by the vfat(aes) ...