- EPSS 0.03%
- Veröffentlicht 11.01.2024 19:15:12
- Zuletzt bearbeitet 21.11.2024 08:38:47
An issue was discovered in the Linux kernel before 6.6.8. do_vcc_ioctl in net/atm/ioctl.c has a use-after-free because of a vcc_recvmsg race condition.
- EPSS 0.02%
- Veröffentlicht 11.01.2024 19:15:12
- Zuletzt bearbeitet 21.11.2024 08:38:47
An issue was discovered in the Linux kernel before 6.6.8. atalk_ioctl in net/appletalk/ddp.c has a use-after-free because of an atalk_recvmsg race condition.
- EPSS 0.02%
- Veröffentlicht 11.01.2024 19:15:12
- Zuletzt bearbeitet 21.11.2024 08:38:47
An issue was discovered in the Linux kernel before 6.6.8. rose_ioctl in net/rose/af_rose.c has a use-after-free because of a rose_accept race condition.
CVE-2024-0340
- EPSS 0.01%
- Veröffentlicht 09.01.2024 18:15:47
- Zuletzt bearbeitet 14.05.2025 04:16:07
A vulnerability was found in vhost_new_msg in drivers/vhost/vhost.c in the Linux kernel, which does not properly initialize memory in messages passed between virtual guests and the host operating system in the vhost/vhost.c:vhost_new_msg() function. ...
CVE-2021-3600
- EPSS 0.16%
- Veröffentlicht 08.01.2024 19:15:08
- Zuletzt bearbeitet 21.11.2024 06:21:56
It was discovered that the eBPF implementation in the Linux kernel did not properly track bounds information for 32 bit registers when performing div and mod operations. A local attacker could use this to possibly execute arbitrary code.
- EPSS 1.41%
- Veröffentlicht 08.01.2024 18:15:45
- Zuletzt bearbeitet 21.11.2024 07:01:19
io_uring UAF, Unix SCM garbage collection
CVE-2022-2586
- EPSS 2.5%
- Veröffentlicht 08.01.2024 18:15:44
- Zuletzt bearbeitet 28.10.2025 13:34:55
It was discovered that a nft object or expression could reference a nft set on a different nft table, leading to a use-after-free once that table was deleted.
CVE-2022-2588
- EPSS 54.31%
- Veröffentlicht 08.01.2024 18:15:44
- Zuletzt bearbeitet 21.11.2024 07:01:18
It was discovered that the cls_route filter implementation in the Linux kernel would not remove an old filter from the hashtable before freeing it if its handle had the value 0.
CVE-2023-34324
- EPSS 0.07%
- Veröffentlicht 05.01.2024 17:15:08
- Zuletzt bearbeitet 04.11.2025 20:16:30
Closing of an event channel in the Linux kernel can result in a deadlock. This happens when the close is being performed in parallel to an unrelated Xen console action and the handling of a Xen console interrupt in an unprivileged guest. The closing...
- EPSS 0.02%
- Veröffentlicht 04.01.2024 17:15:08
- Zuletzt bearbeitet 24.03.2026 12:16:09
A flaw was found in the ATA over Ethernet (AoE) driver in the Linux kernel. The aoecmd_cfg_pkts() function improperly updates the refcnt on `struct net_device`, and a use-after-free can be triggered by racing between the free on the struct and the ac...