CVE-2023-21255
- EPSS 0.19%
- Veröffentlicht 13.07.2023 00:15:24
- Zuletzt bearbeitet 13.02.2025 17:16:02
In multiple functions of binder.c, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
CVE-2023-21400
- EPSS 0.26%
- Veröffentlicht 13.07.2023 00:15:24
- Zuletzt bearbeitet 13.02.2025 17:16:02
In multiple functions of io_uring.c, there is a possible kernel memory corruption due to improper locking. This could lead to local escalation of privilege in the kernel with System execution privileges needed. User interaction is not needed for exp...
CVE-2023-37453
- EPSS 0.63%
- Veröffentlicht 06.07.2023 17:15:14
- Zuletzt bearbeitet 05.05.2025 16:15:42
An issue was discovered in the USB subsystem in the Linux kernel through 6.4.2. There is an out-of-bounds and crash in read_descriptors in drivers/usb/core/sysfs.c.
CVE-2023-35001
- EPSS 1.51%
- Veröffentlicht 05.07.2023 19:15:10
- Zuletzt bearbeitet 21.11.2024 08:07:48
Linux Kernel nftables Out-Of-Bounds Read/Write Vulnerability; nft_byteorder poorly handled vm register contents when CAP_NET_ADMIN is in any user or network namespace
- EPSS 0.04%
- Veröffentlicht 30.06.2023 22:15:10
- Zuletzt bearbeitet 07.11.2023 04:17:55
Rejected reason: Duplicate of CVE-2023-3390.
CVE-2023-3338
- EPSS 8.03%
- Veröffentlicht 30.06.2023 22:15:10
- Zuletzt bearbeitet 21.11.2024 08:17:02
A null pointer dereference flaw was found in the Linux kernel's DECnet networking protocol. This issue could allow a remote user to crash the system.
CVE-2023-1206
- EPSS 0.55%
- Veröffentlicht 30.06.2023 22:15:09
- Zuletzt bearbeitet 21.11.2024 07:38:40
A hash collision flaw was found in the IPv6 connection lookup table in the Linux kernel’s IPv6 functionality when a user makes a new kind of SYN flood attack. A user located in the local network or with a high bandwidth connection can increase the CP...
CVE-2023-3358
- EPSS 0.2%
- Veröffentlicht 28.06.2023 22:15:09
- Zuletzt bearbeitet 10.03.2025 21:15:39
A null pointer dereference was found in the Linux kernel's Integrated Sensor Hub (ISH) driver. This issue could allow a local user to crash the system.
CVE-2023-3390
- EPSS 0.91%
- Veröffentlicht 28.06.2023 21:15:10
- Zuletzt bearbeitet 22.07.2026 12:16:53
A use-after-free vulnerability was found in the Linux kernel's netfilter subsystem in net/netfilter/nf_tables_api.c. Mishandled error handling with NFT_MSG_NEWRULE makes it possible to use a dangling pointer in the same transaction causing a use-aft...
CVE-2023-3090
- EPSS 0.49%
- Veröffentlicht 28.06.2023 20:15:09
- Zuletzt bearbeitet 13.02.2025 17:16:55
A heap out-of-bounds write vulnerability in the Linux Kernel ipvlan network driver can be exploited to achieve local privilege escalation. The out-of-bounds write is caused by missing skb->cb initialization in the ipvlan network driver. The vulnera...