Vulnerability index

Browse CVEs

200 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Linux Kernel HIGH 7.8
CVE-2018-8822

Incorrect buffer length handling in the ncp_read_kernel function in fs/ncpfs/ncplib_kernel.c in the Linux kernel through 4.15.11, and in drivers/stag…

Fix: 3.2.102 / 3.16.57+
Fix from $1,950 2018-03-20
Linux Kernel MEDIUM 6.7
CVE-2018-1068

A flaw was found in the Linux 4.x kernel's implementation of 32-bit syscall interface for bridging. This allowed a privileged user to arbitrarily wri…

Fix: 3.2.102 / 3.16.57+
Fix from $1,600 2018-03-16
Linux Kernel HIGH 7.8
CVE-2017-18222

In the Linux kernel before 4.12, Hisilicon Network Subsystem (HNS) does not consider the ETH_SS_PRIV_FLAGS case when retrieving sset_count data, whic…

Fix: 4.12+
Fix from $1,950 2018-03-08
Linux Kernel MEDIUM 5.5
CVE-2018-7740

The resv_map_release function in mm/hugetlb.c in the Linux kernel through 4.15.7 allows local users to cause a denial of service (BUG) via a crafted …

Fix: after 4.15.7
Fix from $1,600 2018-03-07
Linux Kernel MEDIUM 5.5
CVE-2017-18193

fs/f2fs/extent_cache.c in the Linux kernel before 4.13 mishandles extent trees, which allows local users to cause a denial of service (BUG) via an ap…

Fix: 4.13+
Fix from $1,600 2018-02-22
Linux Kernel MEDIUM 5.9
CVE-2017-16913

The "stub_recv_cmd_submit()" function (drivers/usb/usbip/stub_rx.c) in the Linux Kernel before version 4.14.8, 4.9.71, and 4.4.114 when handling CMD_…

Fix: 4.1.49 / 4.4.107+
Fix from $1,600 2018-01-31
Linux Kernel HIGH 8.1
CVE-2017-15126

A use-after-free flaw was found in fs/userfaultfd.c in the Linux kernel before 4.13.6. The issue is related to the handling of fork failure when deal…

Fix: 4.13.6+
Fix from $1,950 2018-01-14
Linux Kernel MEDIUM 5.5
CVE-2017-15128

A flaw was found in the hugetlb_mcopy_atomic_pte function in mm/hugetlb.c in the Linux kernel before 4.13.12. A lack of size check could cause a deni…

Fix: after 4.13.11
Fix from $1,600 2018-01-14
Linux Kernel HIGH 7.8
CVE-2017-17852

kernel/bpf/verifier.c in the Linux kernel through 4.14.8 allows local users to cause a denial of service (memory corruption) or possibly have unspeci…

Fix: 4.14.9+
Fix from $1,950 2017-12-27
Linux Kernel HIGH 7.8
CVE-2017-17853

kernel/bpf/verifier.c in the Linux kernel through 4.14.8 allows local users to cause a denial of service (memory corruption) or possibly have unspeci…

Fix: 4.14.9+
Fix from $1,950 2017-12-27
Linux Kernel HIGH 7.8
CVE-2017-17855

kernel/bpf/verifier.c in the Linux kernel through 4.14.8 allows local users to cause a denial of service (memory corruption) or possibly have unspeci…

Fix: 4.14.9+
Fix from $1,950 2017-12-27
Linux Kernel HIGH 7.8
CVE-2017-17856

kernel/bpf/verifier.c in the Linux kernel through 4.14.8 allows local users to cause a denial of service (memory corruption) or possibly have unspeci…

Fix: 4.14.9+
Fix from $1,950 2017-12-27
Linux Kernel HIGH 7.8
CVE-2017-17857

The check_stack_boundary function in kernel/bpf/verifier.c in the Linux kernel through 4.14.8 allows local users to cause a denial of service (memory…

Fix: 4.14.9+
Fix from $1,950 2017-12-27
Linux Kernel HIGH 7.8
CVE-2017-16995EPSS 30%

The check_alu_op function in kernel/bpf/verifier.c in the Linux kernel through 4.4 allows local users to cause a denial of service (memory corruption…

Fix: 4.9.72 / 4.14.9+
Fix from $1,950 2017-12-27
Linux Kernel HIGH 7.8
CVE-2017-16996

kernel/bpf/verifier.c in the Linux kernel through 4.14.8 allows local users to cause a denial of service (memory corruption) or possibly have unspeci…

Fix: 4.14.9+
Fix from $1,950 2017-12-27
Linux Kernel MEDIUM 6.8
CVE-2017-16534

The cdc_parse_cdc_header function in drivers/usb/core/message.c in the Linux kernel before 4.13.6 allows local users to cause a denial of service (ou…

Fix: 4.4.92 / 4.9.55+
Fix from $1,600 2017-11-04
Linux Kernel HIGH 7.8
CVE-2017-16526

drivers/uwb/uwbd.c in the Linux kernel before 4.13.6 allows local users to cause a denial of service (general protection fault and system crash) or p…

Fix: 3.2.97 / 3.16.52+
Fix from $1,950 2017-11-04
Linux Kernel MEDIUM 6.6
CVE-2017-16531

drivers/usb/core/config.c in the Linux kernel before 4.13.6 allows local users to cause a denial of service (out-of-bounds read and system crash) or …

Fix: 3.2.95 / 3.16.75+
Fix from $1,600 2017-11-04
Linux Kernel HIGH 7.8
CVE-2017-14497

The tpacket_rcv function in net/packet/af_packet.c in the Linux kernel before 4.13 mishandles vnet headers, which might allow local users to cause a …

Fix: 4.9.51 / 4.12.14+
Fix from $1,950 2017-09-15
Linux Kernel CRITICAL 9.8
CVE-2017-12762EPSS 5%

In /drivers/isdn/i4l/isdn_net.c: A user-controlled buffer is copied into a local buffer of constant size using strcpy without a length check which ca…

Fix: 3.18.64+
Fix from $2,300 2017-08-09
Linux Kernel MEDIUM 5.5
CVE-2006-3635

The ia64 subsystem in the Linux kernel before 2.6.26 allows local users to cause a denial of service (stack consumption and system crash) via a craft…

Fix: after 2.6.25.20
Fix from $1,600 2017-08-07
Linux Kernel HIGH 7.8
CVE-2017-7541

The brcmf_cfg80211_mgmt_tx function in drivers/net/wireless/broadcom/brcm80211/brcmfmac/cfg80211.c in the Linux kernel before 4.12.3 allows local use…

Fix: 3.10.108 / 3.16.48+
Fix from $1,950 2017-07-25
Linux Kernel HIGH 7.4
CVE-2017-1000364EPSS 5%

An issue was discovered in the size of the stack guard page on Linux, specifically a 4k stack guard page is not sufficiently large and can be "jumped…

Fix: after 4.11.5
Fix from $1,950 2017-06-19
Linux Kernel MEDIUM 5.9
CVE-2017-1000377

An issue was discovered in the size of the default stack guard page on PAX Linux (originally from GRSecurity but shipped by other Linux vendors), spe…

Mitigation only
Fix from $1,600 2017-06-19
Linux Kernel CRITICAL 9.8
CVE-2017-7895EPSS 11%

The NFSv2 and NFSv3 server implementations in the Linux kernel through 4.10.13 lack certain checks for the end of a buffer, which allows remote attac…

Fix: 3.2.89 / 3.16.44+
Fix from $2,300 2017-04-28
Linux Kernel HIGH 7.0
CVE-2017-7477

Heap-based buffer overflow in drivers/net/macsec.c in the MACsec module in the Linux kernel through 4.10.12 allows attackers to cause a denial of ser…

Fix: 4.9.28 / 4.10.16+
Fix from $1,950 2017-04-25
Linux Kernel HIGH 7.8
CVE-2007-6761

drivers/media/video/videobuf-vmalloc.c in the Linux kernel before 2.6.24 does not initialize videobuf_mapping data structures, which allows local use…

Fix: after 2.6.23
Fix from $1,950 2017-04-24
Linux Kernel HIGH 7.8
CVE-2017-8061

drivers/media/usb/dvb-usb/dvb-usb-firmware.c in the Linux kernel 4.9.x and 4.10.x before 4.10.7 interacts incorrectly with the CONFIG_VMAP_STACK opti…

Patch available
Fix from $1,950 2017-04-23
Linux Kernel HIGH 7.8
CVE-2017-8062

drivers/media/usb/dvb-usb/dw2102.c in the Linux kernel 4.9.x and 4.10.x before 4.10.4 interacts incorrectly with the CONFIG_VMAP_STACK option, which …

Fix: 4.9.16 / 4.10.4+
Fix from $1,950 2017-04-23
Linux Kernel HIGH 7.8
CVE-2017-8063

drivers/media/usb/dvb-usb/cxusb.c in the Linux kernel 4.9.x and 4.10.x before 4.10.12 interacts incorrectly with the CONFIG_VMAP_STACK option, which …

Fix: 4.9.24 / 4.10.12+
Fix from $1,950 2017-04-23