CVE-2017-13694
- EPSS 0.12%
- Veröffentlicht 25.08.2017 08:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The acpi_ps_complete_final_op() function in drivers/acpi/acpica/psobject.c in the Linux kernel through 4.12.9 does not flush the node and node_ext caches and causes a kernel stack dump, which allows local users to obtain sensitive information from ke...
CVE-2017-13695
- EPSS 0.01%
- Veröffentlicht 25.08.2017 08:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The acpi_ns_evaluate() function in drivers/acpi/acpica/nseval.c in the Linux kernel through 4.12.9 does not flush the operand cache and causes a kernel stack dump, which allows local users to obtain sensitive information from kernel memory and bypass...
CVE-2017-9986
- EPSS 0.1%
- Veröffentlicht 28.06.2017 06:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The intr function in sound/oss/msnd_pinnacle.c in the Linux kernel through 4.11.7 allows local users to cause a denial of service (over-boundary access) or possibly have unspecified other impact by changing the value of a message queue head pointer b...
CVE-2010-5321
- EPSS 0.13%
- Veröffentlicht 24.04.2017 06:59:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
Memory leak in drivers/media/video/videobuf-core.c in the videobuf subsystem in the Linux kernel 2.6.x through 4.x allows local users to cause a denial of service (memory consumption) by leveraging /dev/video access for a series of mmap calls that re...
CVE-2017-0537
- EPSS 0.28%
- Veröffentlicht 08.03.2017 01:59:03
- Zuletzt bearbeitet 13.05.2026 00:24:29
An information disclosure vulnerability in the kernel USB gadget driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it first requires compromising a privileged pr...
CVE-2015-2877
- EPSS 0.11%
- Veröffentlicht 03.03.2017 11:59:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
Kernel Samepage Merging (KSM) in the Linux kernel 2.6.32 through 4.x does not prevent use of a write-timing side channel, which allows guest OS users to defeat the ASLR protection mechanism on other guest OS instances via a Cross-VM ASL INtrospection...
- EPSS 0.05%
- Veröffentlicht 14.02.2017 06:59:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The time subsystem in the Linux kernel through 4.9.9, when CONFIG_TIMER_STATS is enabled, allows local users to discover real PID values (as distinguished from PID values inside a PID namespace) by reading the /proc/timer_list file, related to the pr...
CVE-2017-5972
- EPSS 18.91%
- Veröffentlicht 14.02.2017 06:59:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The TCP stack in the Linux kernel 3.x does not properly implement a SYN cookie protection mechanism for the case of a fast network connection, which allows remote attackers to cause a denial of service (CPU consumption) by sending many TCP SYN packet...
- EPSS 0.09%
- Veröffentlicht 28.12.2016 07:59:00
- Zuletzt bearbeitet 06.05.2026 22:30:45
kernel/events/core.c in the performance subsystem in the Linux kernel before 4.0 mismanages locks during certain migrations, which allows local users to gain privileges via a crafted application, aka Android internal bug 30955111.
- EPSS 0.09%
- Veröffentlicht 28.12.2016 07:59:00
- Zuletzt bearbeitet 06.05.2026 22:30:45
kernel/events/core.c in the performance subsystem in the Linux kernel before 4.0 mismanages locks during certain migrations, which allows local users to gain privileges via a crafted application, aka Android internal bug 31095224.