Vulnerability index

Browse CVEs

200 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Linux Kernel HIGH 7.8
CVE-2022-3545

A vulnerability has been found in Linux Kernel and classified as critical. Affected by this vulnerability is the function area_cache_get of the file …

Fix: 4.14.303 / 4.19.270+
Fix from $1,950 2022-10-17
Linux Kernel HIGH 7.8
CVE-2022-3541

A vulnerability classified as critical has been found in Linux Kernel. This affects the function spl2sw_nvmem_get_mac_address of the file drivers/net…

Fix: 5.19.17 / 6.0.3+
Fix from $1,950 2022-10-17
Linux Kernel HIGH 8.0
CVE-2022-3534

A vulnerability has been found in Linux Kernel up to 5.10.162/5.15.85/6.0.15/6.1.1. The impacted element is the function btf_dump_name_dups of the fi…

Patch available
Fix from $1,950 2022-10-17
Linux Kernel MEDIUM 5.3
CVE-2022-3523

A vulnerability was found in Linux Kernel. It has been classified as problematic. Affected is an unknown function of the file mm/memory.c of the comp…

Patch available
Fix from $1,600 2022-10-16
Linux Kernel HIGH 7.8
CVE-2022-2964

A flaw was found in the Linux kernel’s driver for the ASIX AX88179_178A-based USB 2.0/3.0 Gigabit Ethernet Devices. The vulnerability contains multip…

Fix: 5.4.180 / 5.10.101+
Fix from $1,950 2022-09-09
Linux Kernel HIGH 7.1
CVE-2021-4204

An out-of-bounds (OOB) memory access flaw was found in the Linux kernel's eBPF due to an Improper Input Validation. This flaw allows a local attacker…

Fix: 5.8.0+
Fix from $1,950 2022-08-24
Linux Kernel HIGH 7.8
CVE-2022-0500

A flaw was found in unrestricted eBPF usage by the BPF_BTF_LOAD, leading to a possible out-of-bounds memory write in the Linux kernel’s BPF subsystem…

Fix: 5.15.37 / 5.16.11+
Fix from $1,950 2022-03-25
Linux Kernel HIGH 8.0
CVE-2021-4157

An out of memory bounds write flaw (1 or 2 bytes of memory) in the Linux kernel NFS subsystem was found in the way users use mirroring (replication o…

Fix: 4.4.269 / 4.9.269+
Fix from $1,950 2022-03-25
Linux Kernel HIGH 7.5
CVE-2021-38201

net/sunrpc/xdr.c in the Linux kernel before 5.13.4 allows remote attackers to cause a denial of service (xdr_set_page_base slab-out-of-bounds access)…

Fix: 5.12.19 / 5.13.4+
Fix from $1,950 2021-08-08
Linux Kernel HIGH 7.8
CVE-2021-3489

The eBPF RINGBUF bpf_ringbuf_reserve() function in the Linux kernel did not check that the allocated size was smaller than the ringbuf size, allowing…

Fix: 5.10.37 / 5.11.21+
Fix from $1,950 2021-06-04
Linux Kernel HIGH 7.8
CVE-2020-27815

A flaw was found in the JFS filesystem code in the Linux Kernel which allows a local attacker with the ability to set extended attributes to panic th…

Fix: 4.9.249 / 4.14.213+
Fix from $1,950 2021-05-26
Linux Kernel HIGH 7.8
CVE-2021-22543

An issue was discovered in Linux: KVM through Improper handling of VM_IO|VM_PFNMAP vmas in KVM can bypass RO checks and can lead to pages being freed…

No fix yet
Fix from $1,950 2021-05-26
Linux Kernel HIGH 7.8
CVE-2020-10757

A flaw was found in the Linux Kernel in versions after 4.5-rc1 in the way mremap handled DAX Huge Pages. This flaw allows a local attacker with acces…

Fix: 4.9.227 / 4.14.184+
Fix from $1,950 2020-06-09
Linux Kernel MEDIUM 6.1
CVE-2019-19602

fpregs_state_valid in arch/x86/include/asm/fpu/internal.h in the Linux kernel before 5.4.2, when GCC 9 is used, allows context-dependent attackers to…

Fix: 5.4.2+
Fix from $1,600 2019-12-05
Linux Kernel HIGH 7.8
CVE-2019-15117

parse_audio_mixer_unit in sound/usb/mixer.c in the Linux kernel through 5.2.9 mishandles a short descriptor, leading to out-of-bounds memory access.

Fix: after 5.2.9
Fix from $1,950 2019-08-16
Linux Kernel HIGH 7.8
CVE-2019-10142

A flaw was found in the Linux kernel's freescale hypervisor manager implementation, kernel versions 5.0.x up to, excluding 5.0.17. A parameter passed…

Fix: 5.0.17+
Fix from $1,950 2019-07-30
Linux Kernel CRITICAL 9.8
CVE-2011-5327

In the Linux kernel before 3.1, an off by one in the drivers/target/loopback/tcm_loop.c tcm_loop_make_naa_tpg() function could result in at least mem…

Fix: 3.1+
Fix from $2,300 2019-07-27
Linux Kernel CRITICAL 9.8
CVE-2012-6712

In the Linux kernel before 3.4, a buffer overflow occurs in drivers/net/wireless/iwlwifi/iwl-agn-sta.c, which will cause at least memory corruption.

Fix: 3.4+
Fix from $2,300 2019-07-27
Linux Kernel CRITICAL 9.8
CVE-2016-10764

In the Linux kernel before 4.9.6, there is an off by one in the drivers/mtd/spi-nor/cadence-quadspi.c cqspi_setup_flash() function. There are CQSPI_M…

Fix: 4.9.6+
Fix from $2,300 2019-07-27
Linux Kernel CRITICAL 9.8
CVE-2017-18379

In the Linux kernel before 4.14, an out of boundary access happened in drivers/nvme/target/fc.c.

Fix: 4.14+
Fix from $2,300 2019-07-27
Linux Kernel MEDIUM 5.6
CVE-2010-5332

In the Linux kernel before 2.6.37, an out of bounds array access happened in drivers/net/mlx4/port.c. When searching for a free entry in either mlx4_…

Fix: 2.6.37+
Fix from $1,600 2019-07-27
Linux Kernel CRITICAL 9.8
CVE-2007-6762

In the Linux kernel before 2.6.20, there is an off-by-one bug in net/netlabel/netlabel_cipso_v4.c where it is possible to overflow the doi_def->tags[…

Fix: 2.6.20+
Fix from $2,300 2019-07-27
Linux Kernel HIGH 7.5
CVE-2017-2634EPSS 5%

It was found that the Linux kernel's Datagram Congestion Control Protocol (DCCP) implementation before 2.6.22.17 used the IPv4-only inet_sk_rebuild_h…

Fix: 2.6.22.17+
Fix from $1,950 2018-07-27
Linux Kernel MEDIUM 5.5
CVE-2018-14615

An issue was discovered in the Linux kernel through 4.17.10. There is a buffer overflow in truncate_inline_inode() in fs/f2fs/inline.c when umounting…

Fix: after 4.17.10
Fix from $1,600 2018-07-27
Linux Kernel MEDIUM 5.3
CVE-2018-1120EPSS 7%

A flaw was found affecting the Linux kernel before version 4.17. By mmap()ing a FUSE-backed file onto a process's memory containing command line argu…

Fix: 4.17+
Fix from $1,600 2018-06-20
Linux Kernel HIGH 7.8
CVE-2018-12233

In the ea_get function in fs/jfs/xattr.c in the Linux kernel through 4.17.1, a memory corruption bug in JFS can be triggered by calling setxattr twic…

Fix: 3.16.58 / 3.18.118+
Fix from $1,950 2018-06-12
Linux Kernel MEDIUM 5.5
CVE-2018-10940

The cdrom_ioctl_media_changed function in drivers/cdrom/cdrom.c in the Linux kernel before 4.16.6 allows local attackers to use a incorrect bounds ch…

Fix: 4.16.6+
Fix from $1,600 2018-05-09
Linux Kernel MEDIUM 5.5
CVE-2018-10124

The kill_something_info function in kernel/signal.c in the Linux kernel before 4.13, when an unspecified architecture and compiler is used, might all…

Fix: 4.13+
Fix from $1,600 2018-04-16
Linux Kernel HIGH 7.8
CVE-2018-7566

The Linux kernel 4.15 has a Buffer Overflow via an SNDRV_SEQ_IOCTL_SET_CLIENT_POOL ioctl write operation to /dev/snd/seq by a local user.

Patch available
Fix from $1,950 2018-03-30
Linux Kernel MEDIUM 5.5
CVE-2018-1091

In the flush_tmregs_to_thread function in arch/powerpc/kernel/ptrace.c in the Linux kernel before 4.13.5, a guest kernel crash can be triggered from …

Fix: after 4.13.4
Fix from $1,600 2018-03-27