Canonical

Ubuntu 16.04 LTS

1009 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.34%
  • Veröffentlicht 06.08.2016 20:59:14
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Race condition in the ioctl_send_fib function in drivers/scsi/aacraid/commctrl.c in the Linux kernel through 4.7 allows local users to cause a denial of service (out-of-bounds access or system crash) by changing a certain size value, aka a "double fe...

Exploit
  • EPSS 0.61%
  • Veröffentlicht 06.08.2016 20:59:13
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The filesystem layer in the Linux kernel before 4.5.5 proceeds with post-rename operations after an OverlayFS file is renamed to a self-hardlink, which allows local users to cause a denial of service (system crash) via a rename system call, related t...

  • EPSS 0.49%
  • Veröffentlicht 06.08.2016 20:59:12
  • Zuletzt bearbeitet 06.05.2026 22:30:45

fs/overlayfs/dir.c in the OverlayFS filesystem implementation in the Linux kernel before 4.6 does not properly verify the upper dentry before proceeding with unlink and rename system-call processing, which allows local users to cause a denial of serv...

  • EPSS 0.27%
  • Veröffentlicht 06.08.2016 20:59:08
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Race condition in the ec_device_ioctl_xcmd function in drivers/platform/chrome/cros_ec_dev.c in the Linux kernel before 4.7 allows local users to cause a denial of service (out-of-bounds array access) by changing a certain size value, aka a "double f...

  • EPSS 0.27%
  • Veröffentlicht 06.08.2016 20:59:06
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Race condition in the audit_log_single_execve_arg function in kernel/auditsc.c in the Linux kernel through 4.7 allows local users to bypass intended character-set restrictions or disrupt system-call auditing by changing a certain string, aka a "doubl...

Exploit
  • EPSS 15.07%
  • Veröffentlicht 06.08.2016 20:59:05
  • Zuletzt bearbeitet 06.05.2026 22:30:45

net/ipv4/tcp_input.c in the Linux kernel before 4.7 does not properly determine the rate of challenge ACK segments, which makes it easier for remote attackers to hijack TCP sessions via a blind in-window attack.

  • EPSS 0.35%
  • Veröffentlicht 06.08.2016 20:59:04
  • Zuletzt bearbeitet 06.05.2026 22:30:45

arch/powerpc/kvm/book3s_hv_rmhandlers.S in the Linux kernel through 4.7 on PowerPC platforms, when CONFIG_KVM_BOOK3S_64_HV is enabled, allows guest OS users to cause a denial of service (host OS infinite loop) by making a H_CEDE hypercall during the ...

  • EPSS 0.37%
  • Veröffentlicht 06.08.2016 20:59:02
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Memory leak in the airspy_probe function in drivers/media/usb/airspy/airspy.c in the airspy USB driver in the Linux kernel before 4.7 allows local users to cause a denial of service (memory consumption) via a crafted USB device that emulates many VFL...

  • EPSS 0.59%
  • Veröffentlicht 06.08.2016 10:59:54
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The ioresources_init function in kernel/resource.c in the Linux kernel through 4.7, as used in Android before 2016-08-05 on Nexus 6 and 7 (2013) devices, uses weak permissions for /proc/iomem, which allows local users to obtain sensitive information ...

  • EPSS 0.52%
  • Veröffentlicht 06.08.2016 10:59:44
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The ethtool_get_wol function in net/core/ethtool.c in the Linux kernel through 4.7, as used in Android before 2016-08-05 on Nexus 5 and 7 (2013) devices, does not initialize a certain data structure, which allows local users to obtain sensitive infor...