- EPSS 0.37%
- Veröffentlicht 19.08.2019 02:15:09
- Zuletzt bearbeitet 21.11.2024 02:45:02
An issue was discovered in drivers/net/ethernet/arc/emac_main.c in the Linux kernel before 4.5. A use-after-free is caused by a race condition between the functions arc_emac_tx and arc_emac_tx_clean.
CVE-2019-15118
- EPSS 0.76%
- Veröffentlicht 16.08.2019 14:15:10
- Zuletzt bearbeitet 21.11.2024 04:28:05
check_input_term in sound/usb/mixer.c in the Linux kernel through 5.2.9 mishandles recursion, leading to kernel stack exhaustion.
CVE-2019-15117
- EPSS 0.61%
- Veröffentlicht 16.08.2019 14:15:09
- Zuletzt bearbeitet 21.11.2024 04:28:05
parse_audio_mixer_unit in sound/usb/mixer.c in the Linux kernel through 5.2.9 mishandles a short descriptor, leading to out-of-bounds memory access.
CVE-2019-15098
- EPSS 0.72%
- Veröffentlicht 16.08.2019 02:15:11
- Zuletzt bearbeitet 21.11.2024 04:28:02
drivers/net/wireless/ath/ath6kl/usb.c in the Linux kernel through 5.2.9 has a NULL pointer dereference via an incomplete address in an endpoint descriptor.
CVE-2019-9506
- EPSS 2.69%
- Veröffentlicht 14.08.2019 17:15:11
- Zuletzt bearbeitet 21.11.2024 04:51:45
The Bluetooth BR/EDR specification up to and including version 5.1 permits sufficiently low encryption key length and does not prevent an attacker from influencing the key length negotiation. This allows practical brute-force attacks (aka "KNOB") tha...
CVE-2017-18509
- EPSS 0.84%
- Veröffentlicht 13.08.2019 14:15:11
- Zuletzt bearbeitet 21.11.2024 03:20:16
An issue was discovered in net/ipv6/ip6mr.c in the Linux kernel before 4.11. By setting a specific socket option, an attacker can control a pointer in kernel land and cause an inet_csk_listen_stop general protection fault, or potentially execute arbi...
- EPSS 6.34%
- Veröffentlicht 07.08.2019 15:15:11
- Zuletzt bearbeitet 21.11.2024 04:02:34
In the Linux kernel before 4.16.4, a double free vulnerability in the f_midi_set_alt function of drivers/usb/gadget/function/f_midi.c in the f_midi driver may allow attackers to cause a denial of service or possibly have unspecified other impact.
CVE-2019-10142
- EPSS 0.37%
- Veröffentlicht 30.07.2019 17:15:12
- Zuletzt bearbeitet 21.11.2024 04:18:30
A flaw was found in the Linux kernel's freescale hypervisor manager implementation, kernel versions 5.0.x up to, excluding 5.0.17. A parameter passed to an ioctl was incorrectly validated and used in size calculations for the page size calculation. A...
CVE-2019-14283
- EPSS 0.73%
- Veröffentlicht 26.07.2019 13:15:13
- Zuletzt bearbeitet 21.11.2024 04:26:22
In the Linux kernel before 5.2.3, set_geometry in drivers/block/floppy.c does not validate the sect and head fields, as demonstrated by an integer overflow and out-of-bounds read. It can be triggered by an unprivileged local user when a floppy disk h...
CVE-2019-14284
- EPSS 0.7%
- Veröffentlicht 26.07.2019 13:15:13
- Zuletzt bearbeitet 21.11.2024 04:26:22
In the Linux kernel before 5.2.3, drivers/block/floppy.c allows a denial of service by setup_format_params division-by-zero. Two consecutive ioctls can trigger the bug: the first one should set the drive geometry with .sect and .rate values that make...