Canonical

Ubuntu 16.04 LTS

1009 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 2.73%
  • Veröffentlicht 19.06.2017 16:29:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

The offset2lib patch as used by the Linux Kernel contains a vulnerability, if RLIMIT_STACK is set to RLIM_INFINITY and 1 Gigabyte of memory is allocated (the maximum under the 1/4 restriction) then the stack will be grown down to 0x80000000, and as t...

  • EPSS 1.83%
  • Veröffentlicht 19.06.2017 16:29:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

The Linux Kernel running on AMD64 systems will sometimes map the contents of PIE executable, the heap or ld.so to where the stack is mapped allowing attackers to more easily manipulate the stack. Linux Kernel version 4.11.5 is affected.

  • EPSS 0.72%
  • Veröffentlicht 17.06.2017 18:29:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

sound/core/timer.c in the Linux kernel before 4.11.5 is vulnerable to a data race in the ALSA /dev/snd/timer driver resulting in local users being able to read information belonging to other users, i.e., uninitialized memory contents may be disclosed...

  • EPSS 0.44%
  • Veröffentlicht 13.06.2017 20:29:01
  • Zuletzt bearbeitet 13.05.2026 00:24:29

In all Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists in a WLAN function due to an incorrect message length.

  • EPSS 0.38%
  • Veröffentlicht 13.06.2017 19:29:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

The vmw_gb_surface_define_ioctl function (accessible via DRM_IOCTL_VMW_GB_SURFACE_CREATE) in drivers/gpu/drm/vmwgfx/vmwgfx_surface.c in the Linux kernel through 4.11.4 defines a backup_handle variable but does not give it an initial value. If one att...

  • EPSS 0.41%
  • Veröffentlicht 27.05.2017 01:29:02
  • Zuletzt bearbeitet 13.05.2026 00:24:29

The __ip6_append_data function in net/ipv6/ip6_output.c in the Linux kernel through 4.11.3 is too late in checking whether an overwrite of an skb data structure may occur, which allows local users to cause a denial of service (system crash) via craft...

  • EPSS 1.26%
  • Veröffentlicht 22.05.2017 22:29:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

The do_check function in kernel/bpf/verifier.c in the Linux kernel before 4.11.1 does not make the allow_ptr_leaks value available for restricting the output of the print_bpf_insn function, which allows local users to obtain sensitive address informa...

  • EPSS 0.72%
  • Veröffentlicht 19.05.2017 14:29:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

The tcp_v6_syn_recv_sock function in net/ipv6/tcp_ipv6.c in the Linux kernel through 4.11.1 mishandles inheritance, which allows local users to cause a denial of service or possibly have unspecified other impact via crafted system calls, a related is...

  • EPSS 0.42%
  • Veröffentlicht 19.05.2017 07:29:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

The IPv6 fragmentation implementation in the Linux kernel through 4.11.1 does not consider that the nexthdr field may be associated with an invalid option, which allows local users to cause a denial of service (out-of-bounds read and BUG) or possibly...

  • EPSS 0.37%
  • Veröffentlicht 19.05.2017 07:29:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

The sctp_v6_create_accept_sk function in net/sctp/ipv6.c in the Linux kernel through 4.11.1 mishandles inheritance, which allows local users to cause a denial of service or possibly have unspecified other impact via crafted system calls, a related is...