CVE-2016-2185
- EPSS 0.06%
- Veröffentlicht 02.05.2016 10:59:28
- Zuletzt bearbeitet 06.05.2026 22:30:45
The ati_remote2_probe function in drivers/input/misc/ati_remote2.c in the Linux kernel before 4.5.1 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and system crash) via a crafted endpoints value in a USB ...
CVE-2016-2117
- EPSS 0.64%
- Veröffentlicht 02.05.2016 10:59:27
- Zuletzt bearbeitet 06.05.2026 22:30:45
The atl2_probe function in drivers/net/ethernet/atheros/atlx/atl2.c in the Linux kernel through 4.5.2 incorrectly enables scatter/gather I/O, which allows remote attackers to obtain sensitive information from kernel memory by reading packet data.
CVE-2016-2070
- EPSS 0.77%
- Veröffentlicht 02.05.2016 10:59:26
- Zuletzt bearbeitet 06.05.2026 22:30:45
The tcp_cwnd_reduction function in net/ipv4/tcp_input.c in the Linux kernel before 4.3.5 allows remote attackers to cause a denial of service (divide-by-zero error and system crash) via crafted TCP traffic.
CVE-2015-8839
- EPSS 0.04%
- Veröffentlicht 02.05.2016 10:59:22
- Zuletzt bearbeitet 06.05.2026 22:30:45
Multiple race conditions in the ext4 filesystem implementation in the Linux kernel before 4.5 allow local users to cause a denial of service (disk corruption) by writing to a page that is associated with a different user's file after unsynchronized h...
CVE-2015-8324
- EPSS 0.08%
- Veröffentlicht 02.05.2016 10:59:18
- Zuletzt bearbeitet 06.05.2026 22:30:45
The ext4 implementation in the Linux kernel before 2.6.34 does not properly track the initialization of certain data structures, which allows physically proximate attackers to cause a denial of service (NULL pointer dereference and panic) via a craft...
CVE-2015-4178
- EPSS 0.04%
- Veröffentlicht 02.05.2016 10:59:16
- Zuletzt bearbeitet 06.05.2026 22:30:45
The fs_pin implementation in the Linux kernel before 4.0.5 does not ensure the internal consistency of a certain list data structure, which allows local users to cause a denial of service (system crash) by leveraging user-namespace root access for an...
CVE-2015-4177
- EPSS 0.04%
- Veröffentlicht 02.05.2016 10:59:15
- Zuletzt bearbeitet 06.05.2026 22:30:45
The collect_mounts function in fs/namespace.c in the Linux kernel before 4.0.5 does not properly consider that it may execute after a path has been unmounted, which allows local users to cause a denial of service (system crash) by leveraging user-nam...
CVE-2015-4176
- EPSS 0.05%
- Veröffentlicht 02.05.2016 10:59:13
- Zuletzt bearbeitet 06.05.2026 22:30:45
fs/namespace.c in the Linux kernel before 4.0.2 does not properly support mount connectivity, which allows local users to read arbitrary files by leveraging user-namespace root access for deletion of a file or directory.
CVE-2015-4170
- EPSS 0.06%
- Veröffentlicht 02.05.2016 10:59:12
- Zuletzt bearbeitet 06.05.2026 22:30:45
Race condition in the ldsem_cmpxchg function in drivers/tty/tty_ldsem.c in the Linux kernel before 3.13-rc4-next-20131218 allows local users to cause a denial of service (ldsem_down_read and ldsem_down_write deadlock) by establishing a new tty thread...
CVE-2015-1350
- EPSS 0.07%
- Veröffentlicht 02.05.2016 10:59:07
- Zuletzt bearbeitet 06.05.2026 22:30:45
The VFS subsystem in the Linux kernel 3.x provides an incomplete set of requirements for setattr operations that underspecifies removing extended privilege attributes, which allows local users to cause a denial of service (capability stripping) via a...