Vulnerability index

Browse CVEs

200 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Linux Kernel HIGH 7.8
CVE-2017-8064

drivers/media/usb/dvb-usb-v2/dvb_usb_core.c in the Linux kernel 4.9.x and 4.10.x before 4.10.12 interacts incorrectly with the CONFIG_VMAP_STACK opti…

Fix: 4.9.24 / 4.10.12+
Fix from $1,950 2017-04-23
Linux Kernel HIGH 7.8
CVE-2017-8065

crypto/ccm.c in the Linux kernel 4.9.x and 4.10.x through 4.10.12 interacts incorrectly with the CONFIG_VMAP_STACK option, which allows local users t…

Patch available
Fix from $1,950 2017-04-23
Linux Kernel HIGH 7.8
CVE-2017-8066

drivers/net/can/usb/gs_usb.c in the Linux kernel 4.9.x and 4.10.x before 4.10.2 interacts incorrectly with the CONFIG_VMAP_STACK option, which allows…

Patch available
Fix from $1,950 2017-04-23
Linux Kernel HIGH 7.8
CVE-2017-8068

drivers/net/usb/pegasus.c in the Linux kernel 4.9.x before 4.9.11 interacts incorrectly with the CONFIG_VMAP_STACK option, which allows local users t…

Patch available
Fix from $1,950 2017-04-23
Linux Kernel HIGH 7.8
CVE-2017-8069

drivers/net/usb/rtl8150.c in the Linux kernel 4.9.x before 4.9.11 interacts incorrectly with the CONFIG_VMAP_STACK option, which allows local users t…

Patch available
Fix from $1,950 2017-04-23
Linux Kernel HIGH 7.8
CVE-2017-8070

drivers/net/usb/catc.c in the Linux kernel 4.9.x before 4.9.11 interacts incorrectly with the CONFIG_VMAP_STACK option, which allows local users to c…

Patch available
Fix from $1,950 2017-04-23
Linux Kernel HIGH 7.8
CVE-2017-7187

The sg_ioctl function in drivers/scsi/sg.c in the Linux kernel through 4.10.4 allows local users to cause a denial of service (stack-based buffer ove…

Fix: 3.18.50 / 4.1.40+
Fix from $1,950 2017-03-20
Linux Kernel HIGH 7.8
CVE-2017-5547

drivers/hid/hid-corsair.c in the Linux kernel 4.9.x before 4.9.6 interacts incorrectly with the CONFIG_VMAP_STACK option, which allows local users to…

Fix: 4.4.45 / 4.9.6+
Fix from $1,950 2017-02-06
Linux Kernel HIGH 7.8
CVE-2017-5548

drivers/net/ieee802154/atusb.c in the Linux kernel 4.9.x before 4.9.6 interacts incorrectly with the CONFIG_VMAP_STACK option, which allows local use…

Patch available
Fix from $1,950 2017-02-06
Linux Kernel MEDIUM 5.5
CVE-2016-10154

The smbhash function in fs/cifs/smbencrypt.c in the Linux kernel 4.9.x before 4.9.1 interacts incorrectly with the CONFIG_VMAP_STACK option, which al…

Patch available
Fix from $1,600 2017-02-06
Linux Kernel CRITICAL 9.8
CVE-2016-8459

Possible buffer overflow in storage subsystem. Bad parameters as part of listener responses to RPMB commands could lead to buffer overflow. Product: …

Mitigation only
Fix from $2,300 2017-01-12
Linux Kernel CRITICAL 9.8
CVE-2016-8439

Possible buffer overflow in trust zone access control API. Buffer overflow may occur due to lack of buffer size checking. Product: Android. Versions:…

Mitigation only
Fix from $2,300 2017-01-12
Linux Kernel CRITICAL 9.8
CVE-2016-8440

Possible buffer overflow in SMMU system call. Improper input validation in ADSP SID2CB system call may result in hypervisor memory overwrite. Product…

Mitigation only
Fix from $2,300 2017-01-12
Linux Kernel HIGH 7.8
CVE-2016-8441

Possible buffer overflow in the hypervisor. Inappropriate usage of a static array could lead to a buffer overrun. Product: Android. Versions: Kernel …

No fix yet
Fix from $1,950 2017-01-12
Linux Kernel HIGH 7.8
CVE-2012-6704

The sock_setsockopt function in net/core/sock.c in the Linux kernel before 3.5 mishandles negative values of sk_sndbuf and sk_rcvbuf, which allows lo…

Fix: 3.2.85 / 3.5+
Fix from $1,950 2016-12-28
Linux Kernel HIGH 7.8
CVE-2016-9793

The sock_setsockopt function in net/core/sock.c in the Linux kernel before 4.8.14 mishandles negative values of sk_sndbuf and sk_rcvbuf, which allows…

Fix: 3.12.69 / 3.16.40+
Fix from $1,950 2016-12-28
Linux Kernel HIGH 7.8
CVE-2016-9083

drivers/vfio/pci/vfio_pci.c in the Linux kernel through 4.8.11 allows local users to bypass integer overflow checks, and cause a denial of service (m…

Fix: 3.10.107 / 3.12.70+
Fix from $1,950 2016-11-28
Linux Kernel MEDIUM 6.8
CVE-2016-8633

drivers/firewire/net.c in the Linux kernel before 4.8.7, in certain unusual hardware configurations, allows remote attackers to execute arbitrary cod…

Fix: after 4.8.6
Fix from $1,600 2016-11-28
Linux Kernel HIGH 7.8
CVE-2016-8632

The tipc_msg_build function in net/tipc/msg.c in the Linux kernel through 4.8.11 does not validate the relationship between the minimum fragment leng…

Fix: 3.2.85 / 3.16.40+
Fix from $1,950 2016-11-28
Linux Kernel MEDIUM 6.1
CVE-2016-8658

Stack-based buffer overflow in the brcmf_cfg80211_start_ap function in drivers/net/wireless/broadcom/brcm80211/brcmfmac/cfg80211.c in the Linux kerne…

Fix: after 4.7.4
Fix from $1,600 2016-10-16
Linux Kernel HIGH 7.8
CVE-2016-7425

The arcmsr_iop_message_xfer function in drivers/scsi/arcmsr/arcmsr_hba.c in the Linux kernel through 4.8.2 does not restrict a certain length field, …

Fix: 3.2.84 / 3.10.105+
Fix from $1,950 2016-10-16
Linux Kernel MEDIUM 6.2
CVE-2016-7042

The proc_keys_show function in security/keys/proc.c in the Linux kernel through 4.8.2, when the GNU Compiler Collection (gcc) stack protector is enab…

Fix: after 4.8.2
Fix from $1,600 2016-10-16
Linux Kernel HIGH 7.8
CVE-2016-2063

Stack-based buffer overflow in the supply_lm_input_write function in drivers/thermal/supply_lm_core.c in the MSM Thermal driver for the Linux kernel …

Fix: after 3.19.8
Fix from $1,950 2016-08-07
Linux Kernel HIGH 7.4
CVE-2016-6516

Race condition in the ioctl_file_dedupe_range function in fs/ioctl.c in the Linux kernel through 4.7 allows local users to cause a denial of service …

Fix: after 4.7
Fix from $1,950 2016-08-06
Linux Kernel HIGH 7.8
CVE-2016-6187

The apparmor_setprocattr function in security/apparmor/lsm.c in the Linux kernel before 4.6.5 does not validate the buffer size, which allows local u…

Fix: 4.6.5+
Fix from $1,950 2016-08-06
Linux Kernel HIGH 7.1
CVE-2016-4998

The IPT_SO_SET_REPLACE setsockopt implementation in the netfilter subsystem in the Linux kernel before 4.6 allows local users to cause a denial of se…

Fix: after 4.5.5
Fix from $1,950 2016-07-03
Linux Kernel HIGH 7.8
CVE-2016-1583

The ecryptfs_privileged_open function in fs/ecryptfs/kthread.c in the Linux kernel before 4.6.3 allows local users to gain privileges or cause a deni…

Fix: 3.18.54 / 4.4.14+
Fix from $1,950 2016-06-27
Linux Kernel HIGH 7.8
CVE-2016-4568

drivers/media/v4l2-core/videobuf2-v4l2.c in the Linux kernel before 4.5.3 allows local users to cause a denial of service (kernel memory write operat…

Fix: 4.4.9 / 4.5.3+
Fix from $1,950 2016-05-23
Linux Kernel HIGH 8.4
CVE-2016-3134

The netfilter subsystem in the Linux kernel through 4.5.2 does not validate certain offset fields, which allows local users to gain privileges or cau…

Fix: after 4.5.2
Fix from $1,950 2016-04-27
Linux Kernel MEDIUM 6.1
CVE-2015-5156

The virtnet_probe function in drivers/net/virtio_net.c in the Linux kernel before 4.2 attempts to support a FRAGLIST feature without proper memory al…

Fix: after 4.1.10
Fix from $1,600 2015-10-19