Canonical

Ubuntu Linux

4108 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 14.14%
  • Veröffentlicht 03.07.2014 04:22:16
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The sctp_association_free function in net/sctp/associola.c in the Linux kernel before 3.15.2 does not properly manage a certain backlog value, which allows remote attackers to cause a denial of service (socket outage) via a crafted SCTP packet.

  • EPSS 8.6%
  • Veröffentlicht 03.07.2014 04:22:15
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Multiple integer overflows in the lzo1x_decompress_safe function in lib/lzo/lzo1x_decompress_safe.c in the LZO decompressor in the Linux kernel before 3.15.2 allow context-dependent attackers to cause a denial of service (memory corruption) via a cra...

  • EPSS 0.05%
  • Veröffentlicht 03.07.2014 04:22:15
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Race condition in the tlv handler functionality in the snd_ctl_elem_user_tlv function in sound/core/control.c in the ALSA control implementation in the Linux kernel before 3.15.2 allows local users to obtain sensitive information from kernel memory b...

  • EPSS 0.07%
  • Veröffentlicht 03.07.2014 04:22:15
  • Zuletzt bearbeitet 06.05.2026 22:30:45

sound/core/control.c in the ALSA control implementation in the Linux kernel before 3.15.2 does not ensure possession of a read/write lock, which allows local users to cause a denial of service (use-after-free) and obtain sensitive information from ke...

  • EPSS 0.07%
  • Veröffentlicht 03.07.2014 04:22:15
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The snd_ctl_elem_add function in sound/core/control.c in the ALSA control implementation in the Linux kernel before 3.15.2 does not check authorization for SNDRV_CTL_IOCTL_ELEM_REPLACE commands, which allows local users to remove kernel controls and ...

  • EPSS 0.04%
  • Veröffentlicht 03.07.2014 04:22:15
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The snd_ctl_elem_add function in sound/core/control.c in the ALSA control implementation in the Linux kernel before 3.15.2 does not properly maintain the user_ctl_count value, which allows local users to cause a denial of service (integer overflow an...

  • EPSS 0.08%
  • Veröffentlicht 03.07.2014 04:22:15
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Multiple integer overflows in sound/core/control.c in the ALSA control implementation in the Linux kernel before 3.15.2 allow local users to cause a denial of service by leveraging /dev/snd/controlCX access, related to (1) index values in the snd_ctl...

  • EPSS 0.04%
  • Veröffentlicht 23.06.2014 11:21:20
  • Zuletzt bearbeitet 06.05.2026 22:30:45

mm/shmem.c in the Linux kernel through 3.15.1 does not properly implement the interaction between range notification and hole punching, which allows local users to cause a denial of service (i_mutex hold) by using the mmap system call to access a hol...

  • EPSS 0.04%
  • Veröffentlicht 23.06.2014 11:21:20
  • Zuletzt bearbeitet 06.05.2026 22:30:45

arch/x86/kernel/entry_32.S in the Linux kernel through 3.15.1 on 32-bit x86 platforms, when syscall auditing is enabled and the sep CPU feature flag is set, allows local users to cause a denial of service (OOPS and system crash) via an invalid syscal...

  • EPSS 0.09%
  • Veröffentlicht 23.06.2014 11:21:18
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The rd_build_device_space function in drivers/target/target_core_rd.c in the Linux kernel before 3.14 does not properly initialize a certain data structure, which allows local users to obtain sensitive information from ramdisk_mcp memory by leveragin...