CVE-2021-29154
- EPSS 0.93%
- Veröffentlicht 08.04.2021 21:15:13
- Zuletzt bearbeitet 21.11.2024 06:00:47
BPF JIT compilers in the Linux kernel through 5.11.12 have incorrect computation of branch displacements, allowing them to execute arbitrary code within the kernel context. This affects arch/x86/net/bpf_jit_comp.c and arch/x86/net/bpf_jit_comp32.c.
CVE-2020-36311
- EPSS 0.34%
- Veröffentlicht 07.04.2021 00:15:13
- Zuletzt bearbeitet 21.11.2024 05:29:14
An issue was discovered in the Linux kernel before 5.9. arch/x86/kvm/svm/sev.c allows attackers to cause a denial of service (soft lockup) by triggering destruction of a large SEV VM (which requires unregistering many encrypted regions), aka CID-7be7...
CVE-2020-36312
- EPSS 0.31%
- Veröffentlicht 07.04.2021 00:15:13
- Zuletzt bearbeitet 21.11.2024 05:29:14
An issue was discovered in the Linux kernel before 5.8.10. virt/kvm/kvm_main.c has a kvm_io_bus_unregister_dev memory leak upon a kmalloc failure, aka CID-f65886606c2d.
CVE-2021-28688
- EPSS 0.33%
- Veröffentlicht 06.04.2021 19:15:14
- Zuletzt bearbeitet 21.11.2024 06:00:08
The fix for XSA-365 includes initialization of pointers such that subsequent cleanup code wouldn't use uninitialized or stale values. This initialization went too far and may under certain conditions also overwrite pointers which are in need of clean...
CVE-2021-30002
- EPSS 0.37%
- Veröffentlicht 02.04.2021 05:15:12
- Zuletzt bearbeitet 21.11.2024 06:03:12
An issue was discovered in the Linux kernel before 5.11.3 when a webcam device exists. video_usercopy in drivers/media/v4l2-core/v4l2-ioctl.c has a memory leak for large arguments, aka CID-fb18802a338b.
CVE-2021-29647
- EPSS 0.37%
- Veröffentlicht 30.03.2021 21:15:14
- Zuletzt bearbeitet 21.11.2024 06:01:33
An issue was discovered in the Linux kernel before 5.11.11. qrtr_recvmsg in net/qrtr/qrtr.c allows attackers to obtain sensitive information from kernel memory because of a partially uninitialized data structure, aka CID-50535249f624.
CVE-2021-29650
- EPSS 0.41%
- Veröffentlicht 30.03.2021 21:15:14
- Zuletzt bearbeitet 21.11.2024 06:01:34
An issue was discovered in the Linux kernel before 5.11.11. The netfilter subsystem allows attackers to cause a denial of service (panic) because net/netfilter/x_tables.c and include/linux/netfilter/x_tables.h lack a full memory barrier upon the assi...
CVE-2021-29264
- EPSS 0.27%
- Veröffentlicht 26.03.2021 22:15:13
- Zuletzt bearbeitet 21.11.2024 06:00:54
An issue was discovered in the Linux kernel through 5.11.10. drivers/net/ethernet/freescale/gianfar.c in the Freescale Gianfar Ethernet driver allows attackers to cause a system crash because a negative fragment size is calculated in situations invol...
CVE-2021-29265
- EPSS 0.26%
- Veröffentlicht 26.03.2021 22:15:13
- Zuletzt bearbeitet 21.11.2024 06:00:54
An issue was discovered in the Linux kernel before 5.11.7. usbip_sockfd_store in drivers/usb/usbip/stub_dev.c allows attackers to cause a denial of service (GPF) because the stub-up sequence has race conditions during an update of the local and share...
CVE-2020-35508
- EPSS 0.23%
- Veröffentlicht 26.03.2021 17:15:12
- Zuletzt bearbeitet 21.11.2024 05:27:27
A flaw possibility of race condition and incorrect initialization of the process id was found in the Linux kernel child/parent process identification handling while filtering signal handlers. A local attacker is able to abuse this flaw to bypass chec...