CVE-2017-1000252
- EPSS 0.45%
- Veröffentlicht 26.09.2017 05:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The KVM subsystem in the Linux kernel through 4.13.3 allows guest OS users to cause a denial of service (assertion failure, and hypervisor hang or crash) via an out-of bounds guest_irq value, related to arch/x86/kvm/vmx.c and virt/kvm/eventfd.c.
CVE-2017-12154
- EPSS 0.51%
- Veröffentlicht 26.09.2017 05:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The prepare_vmcs02 function in arch/x86/kvm/vmx.c in the Linux kernel through 4.13.3 does not ensure that the "CR8-load exiting" and "CR8-store exiting" L0 vmcs02 controls exist in cases where L1 omits the "use TPR shadow" vmcs12 control, which allow...
CVE-2015-5327
- EPSS 1.63%
- Veröffentlicht 25.09.2017 21:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
Out-of-bounds memory read in the x509_decode_time function in x509_cert_parser.c in Linux kernels 4.3-rc1 and after.
CVE-2017-12153
- EPSS 0.47%
- Veröffentlicht 21.09.2017 15:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
A security flaw was discovered in the nl80211_set_rekey_data() function in net/wireless/nl80211.c in the Linux kernel through 4.13.3. This function does not check whether the required attributes are present in a Netlink request. This request can be i...
CVE-2015-7837
- EPSS 0.41%
- Veröffentlicht 19.09.2017 16:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The Linux kernel, as used in Red Hat Enterprise Linux 7, kernel-rt, and Enterprise MRG 2 and when booted with UEFI Secure Boot enabled, allows local users to bypass intended securelevel/secureboot restrictions by leveraging improper handling of secur...
CVE-2017-14340
- EPSS 0.42%
- Veröffentlicht 15.09.2017 11:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The XFS_IS_REALTIME_INODE macro in fs/xfs/xfs_linux.h in the Linux kernel before 4.13.2 does not verify that a filesystem has a realtime device, which allows local users to cause a denial of service (NULL pointer dereference and OOPS) via vectors rel...
CVE-2017-14489
- EPSS 1.16%
- Veröffentlicht 15.09.2017 10:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The iscsi_if_rx function in drivers/scsi/scsi_transport_iscsi.c in the Linux kernel through 4.13.2 allows local users to cause a denial of service (panic) by leveraging incorrect length validation.
- EPSS 16.18%
- Veröffentlicht 12.09.2017 17:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The native Bluetooth stack in the Linux Kernel (BlueZ), starting at the Linux kernel version 2.6.32 and up to and including 4.13.1, are vulnerable to a stack overflow vulnerability in the processing of L2CAP configuration responses resulting in Remot...
CVE-2017-0786
- EPSS 0.44%
- Veröffentlicht 08.09.2017 20:29:01
- Zuletzt bearbeitet 13.05.2026 00:24:29
A elevation of privilege vulnerability in the Broadcom wi-fi driver. Product: Android. Versions: Android kernel. Android ID: A-37351060. References: B-V2017060101.
CVE-2017-0794
- EPSS 0.43%
- Veröffentlicht 08.09.2017 20:29:01
- Zuletzt bearbeitet 13.05.2026 00:24:29
A elevation of privilege vulnerability in the Upstream kernel scsi driver. Product: Android. Versions: Android kernel. Android ID: A-35644812.