CVE-2019-11479
- EPSS 13.36%
- Veröffentlicht 19.06.2019 00:15:12
- Zuletzt bearbeitet 21.11.2024 04:21:09
Jonathan Looney discovered that the Linux kernel default MSS is hard-coded to 48 bytes. This allows a remote peer to fragment TCP resend queues significantly more than if a larger MSS were enforced. A remote attacker could use this to cause a denial ...
CVE-2019-12881
- EPSS 0.39%
- Veröffentlicht 18.06.2019 23:15:10
- Zuletzt bearbeitet 21.11.2024 04:23:45
i915_gem_userptr_get_pages in drivers/gpu/drm/i915/i915_gem_userptr.c in the Linux kernel 4.15.0 on Ubuntu 18.04.2 allows local users to cause a denial of service (NULL pointer dereference and BUG) or possibly have unspecified other impact via crafte...
CVE-2019-10126
- EPSS 2.86%
- Veröffentlicht 14.06.2019 14:29:00
- Zuletzt bearbeitet 21.11.2024 04:18:28
A flaw was found in the Linux kernel. A heap based buffer overflow in mwifiex_uap_parse_tail_ies function in drivers/net/wireless/marvell/mwifiex/ie.c might lead to memory corruption and possibly other consequences.
CVE-2019-12818
- EPSS 5.46%
- Veröffentlicht 14.06.2019 02:29:00
- Zuletzt bearbeitet 21.11.2024 04:23:38
An issue was discovered in the Linux kernel before 4.20.15. The nfc_llcp_build_tlv function in net/nfc/llcp_commands.c may return NULL. If the caller does not check for this, it will trigger a NULL pointer dereference. This will cause denial of servi...
CVE-2019-12819
- EPSS 0.07%
- Veröffentlicht 14.06.2019 02:29:00
- Zuletzt bearbeitet 21.11.2024 04:23:39
An issue was discovered in the Linux kernel before 5.0. The function __mdiobus_register() in drivers/net/phy/mdio_bus.c calls put_device(), which will trigger a fixed_mdio_bus_init use-after-free. This will cause a denial of service.
CVE-2019-0136
- EPSS 0.73%
- Veröffentlicht 13.06.2019 16:29:00
- Zuletzt bearbeitet 21.11.2024 04:16:18
Insufficient access control in the Intel(R) PROSet/Wireless WiFi Software driver before version 21.10 may allow an unauthenticated user to potentially enable denial of service via adjacent access.
CVE-2019-2101
- EPSS 0.1%
- Veröffentlicht 07.06.2019 20:29:01
- Zuletzt bearbeitet 21.11.2024 04:40:13
In uvc_parse_standard_control of uvc_driver.c, there is a possible out-of-bound read due to improper input validation. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for ...
CVE-2019-12614
- EPSS 0.08%
- Veröffentlicht 03.06.2019 22:29:00
- Zuletzt bearbeitet 21.11.2024 04:23:11
An issue was discovered in dlpar_parse_cc_property in arch/powerpc/platforms/pseries/dlpar.c in the Linux kernel through 5.1.6. There is an unchecked kstrdup of prop->name, which might allow an attacker to cause a denial of service (NULL pointer dere...
CVE-2019-3846
- EPSS 1.1%
- Veröffentlicht 03.06.2019 19:29:02
- Zuletzt bearbeitet 21.11.2024 04:42:41
A flaw that allowed an attacker to corrupt memory and possibly escalate privileges was found in the mwifiex kernel module while connecting to a malicious wireless network.
CVE-2019-11091
- EPSS 1.7%
- Veröffentlicht 30.05.2019 16:29:01
- Zuletzt bearbeitet 21.11.2024 04:20:31
Microarchitectural Data Sampling Uncacheable Memory (MDSUM): Uncacheable memory on some microprocessors utilizing speculative execution may allow an authenticated user to potentially enable information disclosure via a side channel with local access....