Canonical

Ubuntu 16.04 LTS

1009 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 10.81%
  • Veröffentlicht 28.04.2017 10:59:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

The NFSv2 and NFSv3 server implementations in the Linux kernel through 4.10.13 lack certain checks for the end of a buffer, which allows remote attackers to trigger pointer-arithmetic errors or possibly have unspecified other impact via crafted reque...

  • EPSS 0.46%
  • Veröffentlicht 24.04.2017 06:59:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

drivers/media/video/videobuf-vmalloc.c in the Linux kernel before 2.6.24 does not initialize videobuf_mapping data structures, which allows local users to trigger an incorrect count value and videobuf leak via unspecified vectors, a different vulnera...

  • EPSS 0.37%
  • Veröffentlicht 24.04.2017 06:59:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

The video_usercopy function in drivers/media/video/v4l2-ioctl.c in the Linux kernel before 2.6.39 relies on the count value of a v4l2_ext_controls data structure to determine a kmalloc size, which might allow local users to cause a denial of service ...

  • EPSS 5.91%
  • Veröffentlicht 18.04.2017 14:59:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

The NFSv2/NFSv3 server in the nfsd subsystem in the Linux kernel through 4.10.11 allows remote attackers to cause a denial of service (system crash) via a long RPC reply, related to net/sunrpc/svc.c, fs/nfsd/nfs3xdr.c, and fs/nfsd/nfsxdr.c.

  • EPSS 0.31%
  • Veröffentlicht 17.04.2017 00:59:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

The mm subsystem in the Linux kernel through 3.2 does not properly enforce the CONFIG_STRICT_DEVMEM protection mechanism, which allows local users to read or write to kernel memory locations in the first megabyte (and bypass slab-allocation access re...

  • EPSS 0.41%
  • Veröffentlicht 10.04.2017 14:59:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

Incorrect error handling in the set_mempolicy and mbind compat syscalls in mm/mempolicy.c in the Linux kernel through 4.10.9 allows local users to obtain sensitive information from uninitialized stack data by triggering failure of a certain bitmap op...

  • EPSS 4.26%
  • Veröffentlicht 10.04.2017 14:59:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

crypto/ahash.c in the Linux kernel through 4.10.9 allows attackers to cause a denial of service (API operation calling its own callback, and infinite recursion) by triggering EBUSY on a full queue.

  • EPSS 1.46%
  • Veröffentlicht 05.04.2017 06:59:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

The ping_unhash function in net/ipv4/ping.c in the Linux kernel through 4.10.8 is too late in obtaining a certain lock and consequently cannot ensure that disconnect function calls are safe, which allows local users to cause a denial of service (pani...

  • EPSS 2.16%
  • Veröffentlicht 04.04.2017 16:59:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

A missing authorization check in the fscrypt_process_policy function in fs/crypto/policy.c in the ext4 and f2fs filesystem encryption support in the Linux kernel before 4.7.4 allows a user to assign an encryption policy to a directory owned by a diff...

  • EPSS 1.27%
  • Veröffentlicht 04.04.2017 05:59:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

The eCryptfs subsystem in the Linux kernel before 3.18 allows local users to gain privileges via a large filesystem stack that includes an overlayfs layer, related to fs/ecryptfs/main.c and fs/overlayfs/super.c.