CVE-2023-2162
- EPSS 0.25%
- Veröffentlicht 19.04.2023 20:15:12
- Zuletzt bearbeitet 19.03.2025 16:15:21
A use-after-free vulnerability was found in iscsi_sw_tcp_session_create in drivers/scsi/iscsi_tcp.c in SCSI sub-component in the Linux Kernel. In this flaw an attacker could leak kernel internal information.
CVE-2023-1829
- EPSS 1.04%
- Veröffentlicht 12.04.2023 12:15:07
- Zuletzt bearbeitet 29.07.2026 15:16:18
A use-after-free vulnerability in the Linux Kernel traffic control index filter (tcindex) can be exploited to achieve local privilege escalation. The tcindex_delete function which does not properly deactivate filters in case of a perfect hashes while...
- EPSS 0.39%
- Veröffentlicht 11.04.2023 21:15:15
- Zuletzt bearbeitet 21.11.2024 07:40:17
A use-after-free flaw was found in btsdio_remove in drivers\bluetooth\btsdio.c in the Linux Kernel. In this flaw, a call to btsdio_remove with an unfinished job, may cause a race problem leading to a UAF on hdev devices.
CVE-2023-30456
- EPSS 0.47%
- Veröffentlicht 10.04.2023 02:15:06
- Zuletzt bearbeitet 19.03.2025 16:15:22
An issue was discovered in arch/x86/kvm/vmx/nested.c in the Linux kernel before 6.2.8. nVMX on x86_64 lacks consistency checks for CR0 and CR4.
CVE-2020-11935
- EPSS 0.2%
- Veröffentlicht 07.04.2023 02:15:07
- Zuletzt bearbeitet 21.11.2024 04:58:56
It was discovered that aufs improperly managed inode reference counts in the vfsub_dentry_open() method. A local attacker could use this vulnerability to cause a denial of service attack.
CVE-2023-1670
- EPSS 0.28%
- Veröffentlicht 30.03.2023 23:15:06
- Zuletzt bearbeitet 14.02.2025 16:15:32
A flaw use after free in the Linux kernel Xircom 16-bit PCMCIA (PC-card) Ethernet driver was found.A local user could use this flaw to crash the system or potentially escalate their privileges on the system.
CVE-2023-1073
- EPSS 0.39%
- Veröffentlicht 27.03.2023 21:15:10
- Zuletzt bearbeitet 23.04.2025 17:16:24
A memory corruption flaw was found in the Linux kernel’s human interface device (HID) subsystem in how a user inserts a malicious USB device. This flaw allows a local user to crash or potentially escalate their privileges on the system.
CVE-2023-1074
- EPSS 0.24%
- Veröffentlicht 27.03.2023 21:15:10
- Zuletzt bearbeitet 19.03.2025 16:15:16
A memory leak flaw was found in the Linux kernel's Stream Control Transmission Protocol. This issue may occur when a user starts a malicious networking service and someone connects to this service. This could allow a local user to starve resources, c...
- EPSS 0.28%
- Veröffentlicht 27.03.2023 21:15:10
- Zuletzt bearbeitet 21.11.2024 07:38:24
In the Linux kernel, pick_next_rt_entity() may return a type confused entry, not detected by the BUG_ON condition, as the confused entry will not be NULL, but list_head.The buggy error condition would lead to a type confused entry with the list head,...
CVE-2023-1380
- EPSS 16.53%
- Veröffentlicht 27.03.2023 21:15:10
- Zuletzt bearbeitet 21.11.2024 07:39:04
A slab-out-of-bound read problem was found in brcmf_get_assoc_ies in drivers/net/wireless/broadcom/brcm80211/brcmfmac/cfg80211.c in the Linux Kernel. This issue could occur when assoc_info->req_len data is bigger than the size of the buffer, defined ...