CVE-2023-3397
- EPSS 0.21%
- Veröffentlicht 01.11.2023 20:15:08
- Zuletzt bearbeitet 21.11.2024 08:17:11
A race condition occurred between the functions lmLogClose and txEnd in JFS, in the Linux Kernel, executed in different threads. This flaw allows a local attacker with normal user privileges to crash the system or leak internal kernel information.
CVE-2023-20569
- EPSS 6.71%
- Veröffentlicht 08.08.2023 18:15:11
- Zuletzt bearbeitet 21.11.2024 07:41:08
A side channel vulnerability on some of the AMD CPUs may allow an attacker to influence the return address prediction. This may result in speculative execution at an attacker-controlled address, potentially leading to information disclosure. ...
CVE-2023-4133
- EPSS 0.23%
- Veröffentlicht 03.08.2023 15:15:33
- Zuletzt bearbeitet 21.11.2024 08:34:27
A use-after-free vulnerability was found in the cxgb4 driver in the Linux kernel. The bug occurs when the cxgb4 device is detaching due to a possible rearming of the flower_stats_timer from the work queue. This flaw allows a local user to crash the s...
CVE-2023-4010
- EPSS 0.6%
- Veröffentlicht 31.07.2023 17:15:10
- Zuletzt bearbeitet 25.08.2026 18:17:03
Rejected reason: Rejected because the CVE description attributes a vulnerability to a non-existent Linux kernel function (usb_giveback_urb()) and the reported issue cannot be mapped to any valid codebase.
CVE-2023-2640
- EPSS 16.05%
- Veröffentlicht 26.07.2023 02:15:09
- Zuletzt bearbeitet 21.11.2024 07:58:59
On Ubuntu kernels carrying both c914c0e27eb0 and "UBUNTU: SAUCE: overlayfs: Skip permission checking for trusted.overlayfs.* xattrs", an unprivileged user may set privileged extended attributes on the mounted files, leading them to be set on the uppe...
CVE-2023-3640
- EPSS 0.76%
- Veröffentlicht 24.07.2023 16:15:13
- Zuletzt bearbeitet 21.07.2026 19:17:08
A possible unauthorized memory access flaw was found in the Linux kernel's cpu_entry_area mapping of X86 CPU data to memory, where a user may guess the location of exception stacks or other important data. Based on the previous CVE-2023-0597, the 'Ra...
CVE-2023-0160
- EPSS 0.29%
- Veröffentlicht 18.07.2023 17:15:11
- Zuletzt bearbeitet 21.11.2024 07:36:39
A deadlock flaw was found in the Linux kernel’s BPF subsystem. This flaw allows a local user to potentially crash the system.
CVE-2023-37454
- EPSS 0.36%
- Veröffentlicht 06.07.2023 17:15:14
- Zuletzt bearbeitet 21.11.2024 08:11:44
An issue was discovered in the Linux kernel through 6.4.2. A crafted UDF filesystem image causes a use-after-free write operation in the udf_put_super and udf_close_lvid functions in fs/udf/super.c. NOTE: the suse.com reference has a different perspe...
CVE-2023-33288
- EPSS 0.3%
- Veröffentlicht 22.05.2023 03:15:09
- Zuletzt bearbeitet 18.03.2025 19:15:41
An issue was discovered in the Linux kernel before 6.2.9. A use-after-free was found in bq24190_remove in drivers/power/supply/bq24190_charger.c. It could allow a local attacker to crash the system due to a race condition.
CVE-2023-2007
- EPSS 0.29%
- Veröffentlicht 24.04.2023 23:15:18
- Zuletzt bearbeitet 21.11.2024 07:57:45
The specific flaw exists within the DPT I2O Controller driver. The issue results from the lack of proper locking when performing operations on an object. An attacker can leverage this in conjunction with other vulnerabilities to escalate privileges a...