CVE-2017-0627
- EPSS 0.34%
- Veröffentlicht 12.05.2017 15:29:02
- Zuletzt bearbeitet 13.05.2026 00:24:29
An information disclosure vulnerability in the kernel UVC driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it first requires compromising a privileged process. ...
- EPSS 0.26%
- Veröffentlicht 12.05.2017 15:29:01
- Zuletzt bearbeitet 07.11.2023 02:37:45
Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none
CVE-2017-7472
- EPSS 0.5%
- Veröffentlicht 11.05.2017 19:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The KEYS subsystem in the Linux kernel before 4.10.13 allows local users to cause a denial of service (memory consumption) via a series of KEY_REQKEY_DEFL_THREAD_KEYRING keyctl_set_reqkey_keyring calls.
CVE-2017-8890
- EPSS 0.4%
- Veröffentlicht 10.05.2017 16:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The inet_csk_clone_lock function in net/ipv4/inet_connection_sock.c in the Linux kernel through 4.10.15 allows attackers to cause a denial of service (double free) or possibly have unspecified other impact by leveraging use of the accept system call.
CVE-2017-8831
- EPSS 0.09%
- Veröffentlicht 08.05.2017 06:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The saa7164_bus_get function in drivers/media/pci/saa7164/saa7164-bus.c in the Linux kernel through 4.11.5 allows local users to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact by changing a certain se...
- EPSS 21.52%
- Veröffentlicht 28.04.2017 10:59:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The NFSv2 and NFSv3 server implementations in the Linux kernel through 4.10.13 lack certain checks for the end of a buffer, which allows remote attackers to trigger pointer-arithmetic errors or possibly have unspecified other impact via crafted reque...
CVE-2007-6761
- EPSS 0.11%
- Veröffentlicht 24.04.2017 06:59:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
drivers/media/video/videobuf-vmalloc.c in the Linux kernel before 2.6.24 does not initialize videobuf_mapping data structures, which allows local users to trigger an incorrect count value and videobuf leak via unspecified vectors, a different vulnera...
CVE-2010-5329
- EPSS 0.12%
- Veröffentlicht 24.04.2017 06:59:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The video_usercopy function in drivers/media/video/v4l2-ioctl.c in the Linux kernel before 2.6.39 relies on the count value of a v4l2_ext_controls data structure to determine a kmalloc size, which might allow local users to cause a denial of service ...
CVE-2017-7645
- EPSS 16.01%
- Veröffentlicht 18.04.2017 14:59:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The NFSv2/NFSv3 server in the nfsd subsystem in the Linux kernel through 4.10.11 allows remote attackers to cause a denial of service (system crash) via a long RPC reply, related to net/sunrpc/svc.c, fs/nfsd/nfs3xdr.c, and fs/nfsd/nfsxdr.c.
CVE-2017-7889
- EPSS 0.03%
- Veröffentlicht 17.04.2017 00:59:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The mm subsystem in the Linux kernel through 3.2 does not properly enforce the CONFIG_STRICT_DEVMEM protection mechanism, which allows local users to read or write to kernel memory locations in the first megabyte (and bypass slab-allocation access re...