CVE-2023-32629
- EPSS 10.36%
- Veröffentlicht 26.07.2023 02:15:09
- Zuletzt bearbeitet 21.11.2024 08:03:44
Local privilege escalation vulnerability in Ubuntu Kernels overlayfs ovl_copy_up_meta_inode_data skip permission checks when calling ovl_do_setxattr on Ubuntu kernels
CVE-2023-3772
- EPSS 0.45%
- Veröffentlicht 25.07.2023 16:15:11
- Zuletzt bearbeitet 21.11.2024 08:18:01
A flaw was found in the Linux kernel’s IP framework for transforming packets (XFRM subsystem). This issue may allow a malicious user with CAP_NET_ADMIN privileges to directly dereference a NULL pointer in xfrm_update_ae_params(), leading to a possibl...
CVE-2023-20593
- EPSS 5.19%
- Veröffentlicht 24.07.2023 20:15:10
- Zuletzt bearbeitet 13.02.2025 17:16:01
An issue in “Zen 2” CPUs, under specific microarchitectural circumstances, may allow an attacker to potentially access sensitive information.
CVE-2023-3812
- EPSS 0.34%
- Veröffentlicht 24.07.2023 16:15:13
- Zuletzt bearbeitet 21.11.2024 08:18:07
An out-of-bounds memory access flaw was found in the Linux kernel’s TUN/TAP device driver functionality in how a user generates a malicious (too big) networking packet when napi frags is enabled. This flaw allows a local user to crash or potentially ...
CVE-2023-3567
- EPSS 0.42%
- Veröffentlicht 24.07.2023 16:15:12
- Zuletzt bearbeitet 21.11.2024 08:17:33
A use-after-free flaw was found in vcs_read in drivers/tty/vt/vc_screen.c in vc_screen in the Linux Kernel. This issue may allow an attacker with local user access to cause a system crash or leak internal kernel information.
CVE-2023-2860
- EPSS 0.33%
- Veröffentlicht 24.07.2023 16:15:11
- Zuletzt bearbeitet 21.11.2024 07:59:26
An out-of-bounds read vulnerability was found in the SR-IPv6 implementation in the Linux kernel. The flaw exists within the processing of seg6 attributes. The issue results from the improper validation of user-supplied data, which can result in a rea...
CVE-2023-3863
- EPSS 0.23%
- Veröffentlicht 24.07.2023 15:15:09
- Zuletzt bearbeitet 21.11.2024 08:18:14
A use-after-free flaw was found in nfc_llcp_find_local in net/nfc/llcp_core.c in NFC in the Linux kernel. This flaw allows a local user with special privileges to impact a kernel information leak issue.
CVE-2023-3609
- EPSS 0.45%
- Veröffentlicht 21.07.2023 21:15:11
- Zuletzt bearbeitet 11.09.2026 16:16:30
A use-after-free vulnerability in the Linux kernel's net/sched: cls_u32 component can be exploited to achieve local privilege escalation. If tcf_change_indev() fails, u32_set_parms() will immediately return an error after incrementing or decrement...
CVE-2023-3611
- EPSS 0.27%
- Veröffentlicht 21.07.2023 21:15:11
- Zuletzt bearbeitet 13.02.2025 17:16:58
An out-of-bounds write vulnerability in the Linux kernel's net/sched: sch_qfq component can be exploited to achieve local privilege escalation. The qfq_change_agg() function in net/sched/sch_qfq.c allows an out-of-bounds write because lmax is update...
CVE-2023-3776
- EPSS 0.51%
- Veröffentlicht 21.07.2023 21:15:11
- Zuletzt bearbeitet 13.02.2025 17:16:58
A use-after-free vulnerability in the Linux kernel's net/sched: cls_fw component can be exploited to achieve local privilege escalation. If tcf_change_indev() fails, fw_set_parms() will immediately return an error after incrementing or decrementing ...