- EPSS 0.41%
- Veröffentlicht 04.01.2024 17:15:08
- Zuletzt bearbeitet 24.03.2026 12:16:09
A flaw was found in the ATA over Ethernet (AoE) driver in the Linux kernel. The aoecmd_cfg_pkts() function improperly updates the refcnt on `struct net_device`, and a use-after-free can be triggered by racing between the free on the struct and the ac...
CVE-2023-7042
- EPSS 0.28%
- Veröffentlicht 21.12.2023 20:15:09
- Zuletzt bearbeitet 21.11.2024 08:45:06
A null pointer dereference vulnerability was found in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() in drivers/net/wireless/ath/ath10k/wmi-tlv.c in the Linux kernel. This issue could be exploited to trigger a denial of service.
CVE-2023-33053
- EPSS 0.14%
- Veröffentlicht 05.12.2023 03:15:11
- Zuletzt bearbeitet 11.08.2025 15:06:17
Memory corruption in Kernel while parsing metadata.
CVE-2023-5972
- EPSS 0.28%
- Veröffentlicht 23.11.2023 18:15:07
- Zuletzt bearbeitet 21.11.2024 08:42:53
A null pointer dereference flaw was found in the nft_inner.c functionality of netfilter in the Linux kernel. This issue could allow a local user to crash the system or escalate their privileges on the system.
CVE-2023-6238
- EPSS 0.29%
- Veröffentlicht 21.11.2023 21:15:09
- Zuletzt bearbeitet 21.11.2024 08:43:26
A buffer overflow vulnerability was found in the NVM Express (NVMe) driver in the Linux kernel. Only privileged user could specify a small meta buffer and let the device perform larger Direct Memory Access (DMA) into the same buffer, overwriting unre...
CVE-2023-47233
- EPSS 0.32%
- Veröffentlicht 03.11.2023 21:15:17
- Zuletzt bearbeitet 12.05.2026 11:16:14
The brcm80211 component in the Linux kernel through 6.5.10 has a brcmf_cfg80211_detach use-after-free in the device unplugging (disconnect the USB by hotplug) code. For physically proximate attackers with local access, this "could be exploited in a r...
CVE-2023-1193
- EPSS 1.05%
- Veröffentlicht 01.11.2023 20:15:08
- Zuletzt bearbeitet 21.11.2024 07:38:38
A use-after-free flaw was found in setup_async_work in the KSMBD implementation of the in-kernel samba server and CIFS in the Linux kernel. This issue could allow an attacker to crash the system by accessing freed work.
CVE-2023-3397
- EPSS 0.21%
- Veröffentlicht 01.11.2023 20:15:08
- Zuletzt bearbeitet 21.11.2024 08:17:11
A race condition occurred between the functions lmLogClose and txEnd in JFS, in the Linux Kernel, executed in different threads. This flaw allows a local attacker with normal user privileges to crash the system or leak internal kernel information.
CVE-2023-4010
- EPSS 0.6%
- Veröffentlicht 31.07.2023 17:15:10
- Zuletzt bearbeitet 25.08.2026 18:17:03
Rejected reason: Rejected because the CVE description attributes a vulnerability to a non-existent Linux kernel function (usb_giveback_urb()) and the reported issue cannot be mapped to any valid codebase.
CVE-2023-3640
- EPSS 0.76%
- Veröffentlicht 24.07.2023 16:15:13
- Zuletzt bearbeitet 21.07.2026 19:17:08
A possible unauthorized memory access flaw was found in the Linux kernel's cpu_entry_area mapping of X86 CPU data to memory, where a user may guess the location of exception stacks or other important data. Based on the previous CVE-2023-0597, the 'Ra...