- EPSS 0.69%
- Veröffentlicht 10.05.2021 22:15:06
- Zuletzt bearbeitet 21.11.2024 06:06:59
net/bluetooth/hci_request.c in the Linux kernel through 5.12.2 has a race condition for removal of the HCI controller.
CVE-2021-31916
- EPSS 0.7%
- Veröffentlicht 06.05.2021 17:15:08
- Zuletzt bearbeitet 21.11.2024 06:06:30
An out-of-bounds (OOB) memory write flaw was found in list_devices in drivers/md/dm-ioctl.c in the Multi-device driver module in the Linux kernel before 5.12. A bound check failure allows an attacker with special user (CAP_SYS_ADMIN) privilege to gai...
CVE-2021-31829
- EPSS 0.31%
- Veröffentlicht 06.05.2021 16:15:07
- Zuletzt bearbeitet 21.11.2024 06:06:18
kernel/bpf/verifier.c in the Linux kernel through 5.12.1 performs undesirable speculative loads, leading to disclosure of stack content via side-channel attacks, aka CID-801c6058d14a. The specific concern is not protecting the BPF stack area against ...
CVE-2020-35519
- EPSS 0.41%
- Veröffentlicht 06.05.2021 15:15:07
- Zuletzt bearbeitet 21.11.2024 05:27:29
An out-of-bounds (OOB) memory access flaw was found in x25_bind in net/x25/af_x25.c in the Linux kernel version v5.12-rc5. A bounds check failure allows a local attacker with a user account on the system to gain access to out-of-bounds memory, leadin...
- EPSS 0.47%
- Veröffentlicht 22.04.2021 18:15:08
- Zuletzt bearbeitet 30.07.2026 19:31:32
A race condition in Linux kernel SCTP sockets (net/sctp/socket.c) before 5.12-rc8 can lead to kernel privilege escalation from the context of a network service or an unprivileged process. If sctp_destroy_sock is called without sock_net(sk)->sctp.addr...
CVE-2021-29155
- EPSS 1.07%
- Veröffentlicht 20.04.2021 16:15:10
- Zuletzt bearbeitet 21.11.2024 06:00:47
An issue was discovered in the Linux kernel through 5.11.x. kernel/bpf/verifier.c performs undesirable out-of-bounds speculation on pointer arithmetic, leading to side-channel attacks that defeat Spectre mitigations and obtain sensitive information f...
CVE-2021-3506
- EPSS 0.37%
- Veröffentlicht 19.04.2021 22:15:13
- Zuletzt bearbeitet 01.09.2026 18:04:20
An out-of-bounds (OOB) memory access flaw was found in fs/f2fs/node.c in the f2fs module in the Linux kernel in versions before 5.12.0-rc4. A bounds check failure allows a local attacker to gain access to out-of-bounds memory leading to a system cras...
CVE-2021-3493
- EPSS 49.17%
- Veröffentlicht 17.04.2021 05:15:14
- Zuletzt bearbeitet 28.10.2025 13:49:50
The overlayfs implementation in the linux kernel did not properly validate with respect to user namespaces the setting of file capabilities on files in an underlying file system. Due to the combination of unprivileged user namespaces along with a pat...
CVE-2020-36322
- EPSS 0.38%
- Veröffentlicht 14.04.2021 06:15:12
- Zuletzt bearbeitet 21.11.2024 05:29:16
An issue was discovered in the FUSE filesystem implementation in the Linux kernel before 5.10.6, aka CID-5d069dbe8aaf. fuse_do_getattr() calls make_bad_inode() in inappropriate situations, causing a system crash. NOTE: the original fix for this vulne...
CVE-2021-29154
- EPSS 0.93%
- Veröffentlicht 08.04.2021 21:15:13
- Zuletzt bearbeitet 21.11.2024 06:00:47
BPF JIT compilers in the Linux kernel through 5.11.12 have incorrect computation of branch displacements, allowing them to execute arbitrary code within the kernel context. This affects arch/x86/net/bpf_jit_comp.c and arch/x86/net/bpf_jit_comp32.c.