Vulnerability index

Browse CVEs

228 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Linux Kernel CRITICAL 9.8
CVE-2017-5897

The ip6gre_err function in net/ipv6/ip6_gre.c in the Linux kernel allows remote attackers to have unspecified impact via vectors involving GRE flags …

Fix: 3.10.106 / 3.12.71+
Fix from $2,300 2017-03-23
Linux Kernel CRITICAL 9.8
CVE-2016-10150EPSS 10%

Use-after-free vulnerability in the kvm_ioctl_create_device function in virt/kvm/kvm_main.c in the Linux kernel before 4.8.13 allows host OS users to…

Fix: 4.8.13+
Fix from $2,300 2017-02-06
Linux Kernel CRITICAL 9.8
CVE-2016-8459

Possible buffer overflow in storage subsystem. Bad parameters as part of listener responses to RPMB commands could lead to buffer overflow. Product: …

Mitigation only
Fix from $2,300 2017-01-12
Linux Kernel CRITICAL 9.8
CVE-2016-8398

Unauthenticated messages processed by the UE. Certain NAS messages are processed when no EPS security context exists in the UE. Product: Android. Ver…

Mitigation only
Fix from $2,300 2017-01-12
Linux Kernel CRITICAL 9.8
CVE-2016-8437

Improper input validation in Access Control APIs. Access control API may return memory range checking incorrectly. Product: Android. Versions: Kernel…

Mitigation only
Fix from $2,300 2017-01-12
Linux Kernel CRITICAL 9.8
CVE-2016-8438

Integer overflow leading to a TOCTOU condition in hypervisor PIL. An integer overflow exposes a race condition that may be used to bypass (Peripheral…

Mitigation only
Fix from $2,300 2017-01-12
Linux Kernel CRITICAL 9.8
CVE-2016-8439

Possible buffer overflow in trust zone access control API. Buffer overflow may occur due to lack of buffer size checking. Product: Android. Versions:…

Mitigation only
Fix from $2,300 2017-01-12
Linux Kernel CRITICAL 9.8
CVE-2016-8440

Possible buffer overflow in SMMU system call. Improper input validation in ADSP SID2CB system call may result in hypervisor memory overwrite. Product…

Mitigation only
Fix from $2,300 2017-01-12
Linux Kernel CRITICAL 9.8
CVE-2016-9555EPSS 9%

The sctp_sf_ootb function in net/sctp/sm_statefuns.c in the Linux kernel before 4.8.8 lacks chunk-length checking for the first chunk, which allows r…

Fix: 3.2.85 / 3.10.105+
Fix from $2,300 2016-11-28
Linux Kernel CRITICAL 9.8
CVE-2016-5343

drivers/soc/qcom/qdsp6v2/voice_svc.c in the QDSP6v2 Voice Service driver for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Andro…

Fix: after 3.19.8
Fix from $2,300 2016-10-10
Linux Kernel CRITICAL 9.8
CVE-2016-5344

Multiple integer overflows in the MDSS driver for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM de…

Fix: after 7.0
Fix from $2,300 2016-08-30
Linux Kernel CRITICAL 9.8
CVE-2015-0573

drivers/media/platform/msm/broadcast/tsc.c in the TSC driver for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android contribut…

Fix: after 3.19.8
Fix from $2,300 2016-08-07
Linux Kernel CRITICAL 9.8
CVE-2014-9410

The vfe31_proc_general function in drivers/media/video/msm/vfe/msm_vfe31.c in the MSM-VFE31 driver for the Linux kernel 3.x, as used in Qualcomm Inno…

Fix: after 3.19.8
Fix from $2,300 2016-08-07
Linux Kernel CRITICAL 9.8
CVE-2015-8812EPSS 15%

drivers/infiniband/hw/cxgb3/iwch_cm.c in the Linux kernel before 4.5 does not properly identify error conditions, which allows remote attackers to ex…

Fix: 3.2.78 / 3.10.99+
Fix from $2,300 2016-04-27
Linux Kernel CRITICAL 9.8
CVE-2015-8787EPSS 9%

The nf_nat_redirect_ipv4 function in net/netfilter/nf_nat_redirect.c in the Linux kernel before 4.4 allows remote attackers to cause a denial of serv…

Fix: 4.1.31 / 4.4+
Fix from $2,300 2016-02-08
Linux Kernel CRITICAL 10.0
CVE-2015-8104

The KVM subsystem in the Linux kernel through 4.2.6, and Xen 4.3.x through 4.6.x, allows guest OS users to cause a denial of service (host OS panic o…

Fix: after 5.0.13
Fix from $2,300 2015-11-16
Linux Kernel CRITICAL 9.8
CVE-2011-1180

Multiple stack-based buffer overflows in the iriap_getvaluebyclass_indication function in net/irda/iriap.c in the Linux kernel before 2.6.39 allow re…

Fix: 2.6.39+
Fix from $2,300 2013-06-08
Linux Kernel CRITICAL 9.1
CVE-2011-3188EPSS 6%

The (1) IPv4 and (2) IPv6 implementations in the Linux kernel before 3.1 use a modified MD4 algorithm to generate sequence numbers and Fragment Ident…

Fix: 3.1+
Fix from $2,300 2012-05-24