CVE-2017-18222
- EPSS 0.16%
- Veröffentlicht 08.03.2018 14:29:00
- Zuletzt bearbeitet 21.11.2024 03:19:36
In the Linux kernel before 4.12, Hisilicon Network Subsystem (HNS) does not consider the ETH_SS_PRIV_FLAGS case when retrieving sset_count data, which allows local users to cause a denial of service (buffer overflow and memory corruption) or possibly...
CVE-2018-7757
- EPSS 0.1%
- Veröffentlicht 08.03.2018 14:29:00
- Zuletzt bearbeitet 21.11.2024 04:12:40
Memory leak in the sas_smp_get_phy_events function in drivers/scsi/libsas/sas_expander.c in the Linux kernel through 4.15.7 allows local users to cause a denial of service (memory consumption) via many read accesses to files in the /sys/class/sas_phy...
CVE-2018-7755
- EPSS 0.01%
- Veröffentlicht 08.03.2018 07:29:01
- Zuletzt bearbeitet 21.11.2024 04:12:40
An issue was discovered in the fd_locked_ioctl function in drivers/block/floppy.c in the Linux kernel through 4.15.7. The floppy driver will copy a kernel pointer to user memory in response to the FDGETPRM ioctl. An attacker can send the FDGETPRM ioc...
CVE-2017-18221
- EPSS 0.1%
- Veröffentlicht 07.03.2018 08:29:00
- Zuletzt bearbeitet 21.11.2024 03:19:36
The __munlock_pagevec function in mm/mlock.c in the Linux kernel before 4.11.4 allows local users to cause a denial of service (NR_MLOCK accounting corruption) via crafted use of mlockall and munlockall system calls.
CVE-2018-7740
- EPSS 0.09%
- Veröffentlicht 07.03.2018 08:29:00
- Zuletzt bearbeitet 21.11.2024 04:12:38
The resv_map_release function in mm/hugetlb.c in the Linux kernel through 4.15.7 allows local users to cause a denial of service (BUG) via a crafted application that makes mmap system calls and has a large pgoff argument to the remap_file_pages syste...
CVE-2017-6280
- EPSS 0.12%
- Veröffentlicht 06.03.2018 16:29:00
- Zuletzt bearbeitet 21.11.2024 03:29:26
NVIDIA driver contains a possible out-of-bounds read vulnerability due to a leak which may lead to information disclosure. This issue is rated as moderate. Android: A-63851980.
CVE-2017-18216
- EPSS 0.05%
- Veröffentlicht 05.03.2018 18:29:00
- Zuletzt bearbeitet 21.11.2024 03:19:35
In fs/ocfs2/cluster/nodemanager.c in the Linux kernel before 4.15, local users can cause a denial of service (NULL pointer dereference and BUG) because a required mutex is not used.
CVE-2018-1065
- EPSS 0.08%
- Veröffentlicht 02.03.2018 08:29:00
- Zuletzt bearbeitet 21.11.2024 03:59:06
The netfilter subsystem in the Linux kernel through 4.15.7 mishandles the case of a rule blob that contains a jump but lacks a user-defined chain, which allows local users to cause a denial of service (NULL pointer dereference) by leveraging the CAP_...
CVE-2018-1066
- EPSS 5.04%
- Veröffentlicht 02.03.2018 08:29:00
- Zuletzt bearbeitet 21.11.2024 03:59:06
The Linux kernel before version 4.11 is vulnerable to a NULL pointer dereference in fs/cifs/cifsencrypt.c:setup_ntlmv2_rsp() that allows an attacker controlling a CIFS server to kernel panic a client that has this server mounted, because an empty Tar...
CVE-2017-18208
- EPSS 0.05%
- Veröffentlicht 01.03.2018 05:29:00
- Zuletzt bearbeitet 21.11.2024 03:19:34
The madvise_willneed function in mm/madvise.c in the Linux kernel before 4.14.4 allows local users to cause a denial of service (infinite loop) by triggering use of MADVISE_WILLNEED for a DAX mapping.