CVE-2017-18261
- EPSS 0.05%
- Veröffentlicht 19.04.2018 08:29:00
- Zuletzt bearbeitet 21.11.2024 03:19:42
The arch_timer_reg_read_stable macro in arch/arm64/include/asm/arch_timer.h in the Linux kernel before 4.13 allows local users to cause a denial of service (infinite recursion) by writing to a file under /sys/kernel/debug in certain circumstances, as...
CVE-2018-10021
- EPSS 0.04%
- Veröffentlicht 11.04.2018 17:29:00
- Zuletzt bearbeitet 21.11.2024 03:40:41
drivers/scsi/libsas/sas_scsi_host.c in the Linux kernel before 4.16 allows local users to cause a denial of service (ata qc leak) by triggering certain failure conditions. NOTE: a third party disputes the relevance of this report because the failure ...
- EPSS 0.02%
- Veröffentlicht 05.04.2018 18:29:00
- Zuletzt bearbeitet 21.11.2024 02:39:40
In blk_mq_tag_to_rq in blk-mq.c in the upstream kernel, there is a possible use after free due to a race condition when a request has been previously freed by blk_mq_complete_request. This could lead to local escalation of privilege. Product: Android...
CVE-2018-1092
- EPSS 0.24%
- Veröffentlicht 02.04.2018 03:29:00
- Zuletzt bearbeitet 21.11.2024 03:59:09
The ext4_iget function in fs/ext4/inode.c in the Linux kernel through 4.15.15 mishandles the case of a root directory with a zero i_links_count, which allows attackers to cause a denial of service (ext4_process_freed_data NULL pointer dereference and...
CVE-2018-1093
- EPSS 0.1%
- Veröffentlicht 02.04.2018 03:29:00
- Zuletzt bearbeitet 21.11.2024 03:59:10
The ext4_valid_block_bitmap function in fs/ext4/balloc.c in the Linux kernel through 4.15.15 allows attackers to cause a denial of service (out-of-bounds read and system crash) via a crafted ext4 image because balloc.c and ialloc.c do not validate bi...
CVE-2018-1094
- EPSS 0.29%
- Veröffentlicht 02.04.2018 03:29:00
- Zuletzt bearbeitet 21.11.2024 03:59:10
The ext4_fill_super function in fs/ext4/super.c in the Linux kernel through 4.15.15 does not always initialize the crc32c checksum driver, which allows attackers to cause a denial of service (ext4_xattr_inode_hash NULL pointer dereference and system ...
CVE-2018-1095
- EPSS 0.15%
- Veröffentlicht 02.04.2018 03:29:00
- Zuletzt bearbeitet 21.11.2024 03:59:10
The ext4_xattr_check_entries function in fs/ext4/xattr.c in the Linux kernel through 4.15.15 does not properly validate xattr sizes, which causes misinterpretation of a size as an error code, and consequently allows attackers to cause a denial of ser...
CVE-2018-8087
- EPSS 0.04%
- Veröffentlicht 13.03.2018 06:29:00
- Zuletzt bearbeitet 21.11.2024 04:13:14
Memory leak in the hwsim_new_radio_nl function in drivers/net/wireless/mac80211_hwsim.c in the Linux kernel through 4.15.9 allows local users to cause a denial of service (memory consumption) by triggering an out-of-array error case.
CVE-2018-7755
- EPSS 0.01%
- Veröffentlicht 08.03.2018 07:29:01
- Zuletzt bearbeitet 21.11.2024 04:12:40
An issue was discovered in the fd_locked_ioctl function in drivers/block/floppy.c in the Linux kernel through 4.15.7. The floppy driver will copy a kernel pointer to user memory in response to the FDGETPRM ioctl. An attacker can send the FDGETPRM ioc...
CVE-2017-6280
- EPSS 0.12%
- Veröffentlicht 06.03.2018 16:29:00
- Zuletzt bearbeitet 21.11.2024 03:29:26
NVIDIA driver contains a possible out-of-bounds read vulnerability due to a leak which may lead to information disclosure. This issue is rated as moderate. Android: A-63851980.