CVE-2017-13693
- EPSS 0.09%
- Veröffentlicht 25.08.2017 08:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The acpi_ds_create_operands() function in drivers/acpi/acpica/dsutils.c in the Linux kernel through 4.12.9 does not flush the operand cache and causes a kernel stack dump, which allows local users to obtain sensitive information from kernel memory an...
CVE-2017-13694
- EPSS 0.12%
- Veröffentlicht 25.08.2017 08:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The acpi_ps_complete_final_op() function in drivers/acpi/acpica/psobject.c in the Linux kernel through 4.12.9 does not flush the node and node_ext caches and causes a kernel stack dump, which allows local users to obtain sensitive information from ke...
CVE-2017-0537
- EPSS 0.28%
- Veröffentlicht 08.03.2017 01:59:03
- Zuletzt bearbeitet 13.05.2026 00:24:29
An information disclosure vulnerability in the kernel USB gadget driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it first requires compromising a privileged pr...
CVE-2016-8660
- EPSS 0.11%
- Veröffentlicht 16.10.2016 21:59:14
- Zuletzt bearbeitet 06.05.2026 22:30:45
The XFS subsystem in the Linux kernel through 4.8.2 allows local users to cause a denial of service (fdatasync failure and system hang) by using the vfs syscall group in the trinity program, related to a "page lock order bug in the XFS seek hole/data...
CVE-2015-8553
- EPSS 0.27%
- Veröffentlicht 13.04.2016 15:59:07
- Zuletzt bearbeitet 06.05.2026 22:30:45
Xen allows guest OS users to obtain sensitive information from uninitialized locations in host OS kernel memory by not enabling memory and I/O decoding control bits. NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-0777.
CVE-2013-7445
- EPSS 1.13%
- Veröffentlicht 16.10.2015 01:59:00
- Zuletzt bearbeitet 06.05.2026 22:30:45
The Direct Rendering Manager (DRM) subsystem in the Linux kernel through 4.x mishandles requests for Graphics Execution Manager (GEM) objects, which allows context-dependent attackers to cause a denial of service (memory consumption) via an applicati...
CVE-2012-4542
- EPSS 0.08%
- Veröffentlicht 28.02.2013 19:55:01
- Zuletzt bearbeitet 29.04.2026 01:13:23
block/scsi_ioctl.c in the Linux kernel through 3.8 does not properly consider the SCSI device class during authorization of SCSI commands, which allows local users to bypass intended access restrictions via an SG_IO ioctl call that leverages overlapp...