Vulnerability index

Browse CVEs

34 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Numeric ErrorsCWE-189 × clear
Linux Kernel MEDIUM 5.6
CVE-2019-7308

kernel/bpf/verifier.c in the Linux kernel before 4.20.6 performs undesirable out-of-bounds speculation on pointer arithmetic in various cases, includ…

Fix: 4.19.19 / 4.20.6+
Fix from $1,600 2019-02-01
Linux Kernel HIGH 7.5
CVE-2016-2070

The tcp_cwnd_reduction function in net/ipv4/tcp_input.c in the Linux kernel before 4.3.5 allows remote attackers to cause a denial of service (divide…

Fix: 4.3.5+
Fix from $1,950 2016-05-02
Linux Kernel HIGH 7.8
CVE-2016-3135

Integer overflow in the xt_alloc_table_info function in net/netfilter/x_tables.c in the Linux kernel through 4.5.2 on 32-bit platforms allows local u…

Fix: 4.4.21 / 4.6+
Fix from $1,950 2016-04-27
Linux Kernel HIGH 7.8
CVE-2015-4003EPSS 6%

The oz_usb_handle_ep_data function in drivers/staging/ozwpan/ozusbsvc1.c in the OZWPAN driver in the Linux kernel through 4.0.5 allows remote attacke…

Fix: 3.4.109 / 3.10.81+
Fix from $1,950 2015-06-07
Linux Kernel HIGH 9.0
CVE-2015-4001EPSS 7%

Integer signedness error in the oz_hcd_get_desc_cnf function in drivers/staging/ozwpan/ozhcd.c in the OZWPAN driver in the Linux kernel through 4.0.5…

Fix: after 4.0.5
Fix from $1,950 2015-06-07
Linux Kernel MEDIUM 5.7
CVE-2013-6367

The apic_get_tmcct function in arch/x86/kvm/lapic.c in the KVM subsystem in the Linux kernel through 3.12.5 allows guest OS users to cause a denial o…

Fix: after 3.12.5
Fix from $1,600 2013-12-14
Linux Kernel MEDIUM 5.2
CVE-2013-6376

The recalculate_apic_map function in arch/x86/kvm/lapic.c in the KVM subsystem in the Linux kernel through 3.12.5 allows guest OS users to cause a de…

Fix: after 3.12.5
Fix from $1,600 2013-12-14
Linux Kernel HIGH 7.1
CVE-2013-4563

The udp6_ufo_fragment function in net/ipv6/udp_offload.c in the Linux kernel through 3.12, when UDP Fragmentation Offload (UFO) is enabled, does not …

Fix: 3.12.4+
Fix from $1,950 2013-11-20
Linux Kernel MEDIUM 6.9
CVE-2013-4511

Multiple integer overflows in Alchemy LCD frame-buffer drivers in the Linux kernel before 3.12 allow local users to create a read-write memory mappin…

Fix: 3.2.53 / 3.4.69+
Fix from $1,600 2013-11-12
Linux Kernel MEDIUM 5.8
CVE-2013-4345

Off-by-one error in the get_prng_bytes function in crypto/ansi_cprng.c in the Linux kernel through 3.11.4 makes it easier for context-dependent attac…

Fix: after 3.11.4
Fix from $1,600 2013-10-10
Linux Kernel HIGH 7.8
CVE-2013-4247

Off-by-one error in the build_unc_path_to_root function in fs/cifs/connect.c in the Linux kernel before 3.9.6 allows remote attackers to cause a deni…

Fix: 3.9.6+
Fix from $1,950 2013-08-25
Linux Kernel HIGH 8.4
CVE-2013-2094 KEVEPSS 48%

The perf_swevent_init function in kernel/events/core.c in the Linux kernel before 3.8.9 uses an incorrect integer data type, which allows local users…

Fix: 3.0.75 / 3.2.45+
Fix from $1,950 2013-05-14
Linux Kernel HIGH 7.2
CVE-2013-0913

Integer overflow in drivers/gpu/drm/i915/i915_gem_execbuffer.c in the i915 driver in the Direct Rendering Manager (DRM) subsystem in the Linux kernel…

Fix: 3.0.71 / 3.2.42+
Fix from $1,950 2013-03-18
Linux Kernel MEDIUM 6.2
CVE-2013-0228

The xen_iret function in arch/x86/xen/xen-asm_32.S in the Linux kernel before 3.7.9 on 32-bit Xen paravirt_ops platforms does not properly handle an …

Fix: after 3.7.8
Fix from $1,600 2013-03-01
Linux Kernel HIGH 7.8
CVE-2012-3412EPSS 6%

The sfc (aka Solarflare Solarstorm) driver in the Linux kernel before 3.2.30 allows remote attackers to cause a denial of service (DMA descriptor con…

Fix: 3.0.44 / 3.2.30+
Fix from $1,950 2012-10-03
Linux Kernel HIGH 7.1
CVE-2012-2100

The ext4_fill_flex_info function in fs/ext4/super.c in the Linux kernel before 3.2.2, on the x86 platform and unspecified other platforms, allows use…

Fix: after 3.2.1
Fix from $1,950 2012-07-03
Linux Kernel MEDIUM 6.2
CVE-2011-1759

Integer overflow in the sys_oabi_semtimedop function in arch/arm/kernel/sys_oabi-compat.c in the Linux kernel before 2.6.39 on the ARM platform, when…

Fix: after 2.6.38.8
Fix from $1,600 2012-06-13
Linux Kernel MEDIUM 6.9
CVE-2011-1746

Multiple integer overflows in the (1) agp_allocate_memory and (2) agp_create_user_memory functions in drivers/char/agp/generic.c in the Linux kernel …

Fix: 2.6.38.5+
Fix from $1,600 2011-05-09
Linux Kernel MEDIUM 6.9
CVE-2011-1494

Integer overflow in the _ctl_do_mpt_command function in drivers/scsi/mpt2sas/mpt2sas_ctl.c in the Linux kernel 2.6.38 and earlier might allow local u…

Fix: after 2.6.38
Fix from $1,600 2011-05-03
Linux Kernel HIGH 7.1
CVE-2010-1085

The azx_position_ok function in hda_intel.c in Linux kernel 2.6.33-rc4 and earlier, when running on the AMD780V chip set, allows context-dependent at…

Fix: 2.6.33+
Fix from $1,950 2010-04-06
Linux Kernel HIGH 7.8
CVE-2005-4886

The selinux_parse_skb_ipv6 function in security/selinux/hooks.c in the Linux kernel before 2.6.12-rc4 allows remote attackers to cause a denial of se…

Fix: after 2.6.12
Fix from $1,950 2010-02-26
Linux Kernel HIGH 7.8
CVE-2009-4536EPSS 5%

drivers/net/e1000/e1000_main.c in the e1000 driver in the Linux kernel 2.6.32.3 and earlier handles Ethernet frames that exceed the MTU by processing…

Fix: after 2.6.32.3
Fix from $1,950 2010-01-12
Linux Kernel HIGH 7.1
CVE-2009-4307

The ext4_fill_flex_info function in fs/ext4/super.c in the Linux kernel before 2.6.32-git6 allows user-assisted remote attackers to cause a denial of…

Fix: after 2.6.32
Fix from $1,950 2009-12-13
Linux Kernel HIGH 7.2
CVE-2009-3638

Integer overflow in the kvm_dev_ioctl_get_supported_cpuid function in arch/x86/kvm/x86.c in the KVM subsystem in the Linux kernel before 2.6.31.4 all…

Fix: after 2.6.31.3
Fix from $1,950 2009-10-29
Linux Kernel HIGH 7.2
CVE-2009-2584

Off-by-one error in the options_write function in drivers/misc/sgi-gru/gruprocfs.c in the SGI GRU driver in the Linux kernel 2.6.30.2 and earlier on …

Fix: after 2.6.30.2
Fix from $1,950 2009-07-23
Kernel HIGH 7.8
CVE-2009-1385EPSS 33%

Integer underflow in the e1000_clean_rx_irq function in drivers/net/e1000/e1000_main.c in the e1000 driver in the Linux kernel before 2.6.30-rc8, the…

Fix: after 7.4.35
Fix from $1,950 2009-06-04
Linux Kernel MEDIUM 5.0
CVE-2009-1265

Integer overflow in rose_sendmsg (sys/net/af_rose.c) in the Linux kernel 2.6.24.4, and other versions before 2.6.30-rc1, might allow remote attackers…

No fix yet
Fix from $1,600 2009-04-08
Linux Kernel HIGH 7.8
CVE-2008-3526

Integer overflow in the sctp_setsockopt_auth_key function in net/sctp/socket.c in the Stream Control Transmission Protocol (sctp) implementation in t…

Mitigation only
Fix from $1,950 2008-08-27
Linux Kernel HIGH 7.1
CVE-2008-3276

Integer overflow in the dccp_setsockopt_change function in net/dccp/proto.c in the Datagram Congestion Control Protocol (DCCP) subsystem in the Linux…

Mitigation only
Fix from $1,950 2008-08-18
Linux Kernel HIGH 7.2
CVE-2008-2358

Integer overflow in the dccp_feat_change function in net/dccp/feat.c in the Datagram Congestion Control Protocol (DCCP) subsystem in the Linux kernel…

Mitigation only
Fix from $1,950 2008-06-10