CVE-2023-42752
- EPSS 0.01%
- Veröffentlicht 13.10.2023 02:15:09
- Zuletzt bearbeitet 21.11.2024 08:23:05
An integer overflow flaw was found in the Linux kernel. This issue leads to the kernel allocating `skb_shared_info` in the userspace, which is exploitable in systems without SMAP protection since `skb_shared_info` contains references to function poin...
- EPSS 0.01%
- Veröffentlicht 09.10.2023 18:15:10
- Zuletzt bearbeitet 21.11.2024 08:14:52
A flaw was found in the Netfilter subsystem in the Linux kernel. The nfnl_osf_add_callback function did not validate the user mode controlled opt_num field. This flaw allows a local privileged (CAP_NET_ADMIN) attacker to trigger an out-of-bounds read...
- EPSS 0.01%
- Veröffentlicht 09.10.2023 18:15:10
- Zuletzt bearbeitet 21.11.2024 08:14:53
A flaw was found in the Netfilter subsystem in the Linux kernel. The xt_u32 module did not validate the fields in the xt_u32 structure. This flaw allows a local privileged attacker to trigger an out-of-bounds read by setting the size fields with a va...
- EPSS 0.01%
- Veröffentlicht 09.10.2023 18:15:10
- Zuletzt bearbeitet 21.11.2024 08:14:53
A flaw was found in the Netfilter subsystem in the Linux kernel. The sctp_mt_check did not validate the flag_count field. This flaw allows a local privileged (CAP_NET_ADMIN) attacker to trigger an out-of-bounds read, leading to a crash or information...
CVE-2023-42755
- EPSS 0.01%
- Veröffentlicht 05.10.2023 19:15:11
- Zuletzt bearbeitet 21.11.2024 08:23:06
A flaw was found in the IPv4 Resource Reservation Protocol (RSVP) classifier in the Linux kernel. The xprt pointer may go beyond the linear part of the skb, leading to an out-of-bounds read in the `rsvp_classify` function. This issue may allow a loca...
CVE-2023-4921
- EPSS 0.01%
- Veröffentlicht 12.09.2023 20:15:10
- Zuletzt bearbeitet 13.02.2025 18:15:48
A use-after-free vulnerability in the Linux kernel's net/sched: sch_qfq component can be exploited to achieve local privilege escalation. When the plug qdisc is used as a class of the qfq qdisc, sending network packets triggers use-after-free in qfq...
CVE-2023-4623
- EPSS 0.02%
- Veröffentlicht 06.09.2023 14:15:12
- Zuletzt bearbeitet 20.03.2025 16:59:51
A use-after-free vulnerability in the Linux kernel's net/sched: sch_hfsc (HFSC qdisc traffic control) component can be exploited to achieve local privilege escalation. If a class with a link-sharing curve (i.e. with the HFSC_FSC flag set) has a pare...
CVE-2020-27418
- EPSS 0.09%
- Veröffentlicht 22.08.2023 19:16:20
- Zuletzt bearbeitet 21.11.2024 05:21:12
A Use After Free vulnerability in Fedora Linux kernel 5.9.0-rc9 allows attackers to obatin sensitive information via vgacon_invert_region() function.
CVE-2023-4459
- EPSS 0.01%
- Veröffentlicht 21.08.2023 19:15:09
- Zuletzt bearbeitet 21.11.2024 08:35:12
A NULL pointer dereference flaw was found in vmxnet3_rq_cleanup in drivers/net/vmxnet3/vmxnet3_drv.c in the networking sub-component in vmxnet3 in the Linux Kernel. This issue may allow a local attacker with normal user privilege to cause a denial of...
CVE-2023-4385
- EPSS 0.01%
- Veröffentlicht 16.08.2023 17:15:11
- Zuletzt bearbeitet 21.11.2024 08:34:58
A NULL pointer dereference flaw was found in dbFree in fs/jfs/jfs_dmap.c in the journaling file system (JFS) in the Linux Kernel. This issue may allow a local attacker to crash the system due to a missing sanity check.