CVE-2022-22942
- EPSS 2.58%
- Veröffentlicht 13.12.2023 09:15:33
- Zuletzt bearbeitet 21.11.2024 06:47:39
The vmwgfx driver contains a local privilege escalation vulnerability that allows unprivileged users to gain access to files opened by other processes on the system through a dangling 'file' pointer.
CVE-2020-36766
- EPSS 0.23%
- Veröffentlicht 18.09.2023 09:15:07
- Zuletzt bearbeitet 21.11.2024 05:30:15
An issue was discovered in the Linux kernel before 5.8.6. drivers/media/cec/core/cec-api.c leaks one byte of kernel memory on specific hardware to unprivileged users, because of directly assigning log_addrs with a hole in the struct.
CVE-2020-27418
- EPSS 0.22%
- Veröffentlicht 22.08.2023 19:16:20
- Zuletzt bearbeitet 09.07.2026 01:16:42
A Use After Free vulnerability in Fedora Linux kernel 5.9.0-rc9 allows attackers to obatin sensitive information via vgacon_invert_region() function.
CVE-2023-4459
- EPSS 0.25%
- Veröffentlicht 21.08.2023 19:15:09
- Zuletzt bearbeitet 08.10.2026 21:17:49
A NULL pointer dereference flaw was found in vmxnet3_rq_cleanup in drivers/net/vmxnet3/vmxnet3_drv.c in the networking sub-component in vmxnet3 in the Linux Kernel. This issue may allow a local attacker with normal user privilege to cause a denial of...
CVE-2023-4387
- EPSS 0.25%
- Veröffentlicht 16.08.2023 19:15:10
- Zuletzt bearbeitet 03.06.2025 03:15:25
A use-after-free flaw was found in vmxnet3_rq_alloc_rx_buf in drivers/net/vmxnet3/vmxnet3_drv.c in VMware's vmxnet3 ethernet NIC driver in the Linux Kernel. This issue could allow a local attacker to crash the system due to a double-free while cleani...
CVE-2023-4385
- EPSS 0.23%
- Veröffentlicht 16.08.2023 17:15:11
- Zuletzt bearbeitet 21.11.2024 08:34:58
A NULL pointer dereference flaw was found in dbFree in fs/jfs/jfs_dmap.c in the journaling file system (JFS) in the Linux Kernel. This issue may allow a local attacker to crash the system due to a missing sanity check.
CVE-2023-3812
- EPSS 0.34%
- Veröffentlicht 24.07.2023 16:15:13
- Zuletzt bearbeitet 21.11.2024 08:18:07
An out-of-bounds memory access flaw was found in the Linux kernel’s TUN/TAP device driver functionality in how a user generates a malicious (too big) networking packet when napi frags is enabled. This flaw allows a local user to crash or potentially ...
CVE-2023-3567
- EPSS 0.42%
- Veröffentlicht 24.07.2023 16:15:12
- Zuletzt bearbeitet 21.11.2024 08:17:33
A use-after-free flaw was found in vcs_read in drivers/tty/vt/vc_screen.c in vc_screen in the Linux Kernel. This issue may allow an attacker with local user access to cause a system crash or leak internal kernel information.
CVE-2023-2860
- EPSS 0.33%
- Veröffentlicht 24.07.2023 16:15:11
- Zuletzt bearbeitet 21.11.2024 07:59:26
An out-of-bounds read vulnerability was found in the SR-IPv6 implementation in the Linux kernel. The flaw exists within the processing of seg6 attributes. The issue results from the improper validation of user-supplied data, which can result in a rea...
CVE-2023-3358
- EPSS 0.2%
- Veröffentlicht 28.06.2023 22:15:09
- Zuletzt bearbeitet 10.03.2025 21:15:39
A null pointer dereference was found in the Linux kernel's Integrated Sensor Hub (ISH) driver. This issue could allow a local user to crash the system.