CVE-2018-25020
- EPSS 0.51%
- Veröffentlicht 08.12.2021 05:15:07
- Zuletzt bearbeitet 21.11.2024 04:03:22
The BPF subsystem in the Linux kernel before 4.17 mishandles situations with a long jump over an instruction sequence where inner instructions require substantial expansions into multiple BPF instructions, leading to an overflow. This affects kernel/...
CVE-2021-33098
- EPSS 0.29%
- Veröffentlicht 17.11.2021 20:15:10
- Zuletzt bearbeitet 21.11.2024 06:08:17
Improper input validation in the Intel(R) Ethernet ixgbe driver for Linux before version 3.17.3 may allow an authenticated user to potentially enable denial of service via local access.
CVE-2021-43975
- EPSS 0.51%
- Veröffentlicht 17.11.2021 17:15:08
- Zuletzt bearbeitet 08.10.2026 22:17:13
In the Linux kernel through 5.15.2, hw_atl_utils_fw_rpc_wait in drivers/net/ethernet/aquantia/atlantic/hw_atl/hw_atl_utils.c allows an attacker (who can introduce a crafted device) to trigger an out-of-bounds write via a crafted length value.
CVE-2021-43976
- EPSS 0.64%
- Veröffentlicht 17.11.2021 17:15:08
- Zuletzt bearbeitet 21.11.2024 06:30:07
In the Linux kernel through 5.15.2, mwifiex_usb_recv in drivers/net/wireless/marvell/mwifiex/usb.c allows an attacker (who can connect a crafted USB device) to cause a denial of service (skb_over_panic).
CVE-2021-43389
- EPSS 0.67%
- Veröffentlicht 04.11.2021 19:15:07
- Zuletzt bearbeitet 21.11.2024 06:29:08
An issue was discovered in the Linux kernel before 5.14.15. There is an array-index-out-of-bounds flaw in the detach_capi_ctr function in drivers/isdn/capi/kcapi.c.
CVE-2021-0941
- EPSS 0.17%
- Veröffentlicht 25.10.2021 14:15:09
- Zuletzt bearbeitet 21.11.2024 05:43:16
In bpf_skb_change_head of filter.c, there is a possible out of bounds read due to a use after free. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: And...
- EPSS 0.24%
- Veröffentlicht 20.10.2021 15:15:07
- Zuletzt bearbeitet 07.11.2023 03:38:05
Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2021-42739. Reason: This candidate is a reservation duplicate of CVE-2021-42739. Notes: All CVE users should reference CVE-2021-42739 instead of this candidate. All references and des...
CVE-2021-42739
- EPSS 0.47%
- Veröffentlicht 20.10.2021 07:15:09
- Zuletzt bearbeitet 21.11.2024 06:28:04
The firewire subsystem in the Linux kernel through 5.14.13 has a buffer overflow related to drivers/media/firewire/firedtv-avc.c and drivers/media/firewire/firedtv-ci.c, because avc_ca_pmt mishandles bounds checking.
CVE-2021-42252
- EPSS 0.37%
- Veröffentlicht 11.10.2021 19:15:07
- Zuletzt bearbeitet 05.08.2026 18:31:20
An issue was discovered in aspeed_lpc_ctrl_mmap in drivers/soc/aspeed/aspeed-lpc-ctrl.c in the Linux kernel before 5.14.6. Local attackers able to access the Aspeed LPC control interface could overwrite memory in the kernel and potentially execute pr...
CVE-2021-42008
- EPSS 1.56%
- Veröffentlicht 05.10.2021 00:15:07
- Zuletzt bearbeitet 21.11.2024 06:27:03
The decode_data function in drivers/net/hamradio/6pack.c in the Linux kernel before 5.13.13 has a slab out-of-bounds write. Input from a process that has the CAP_NET_ADMIN capability can lead to root access.