Vulnerability index

Browse CVEs

116 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
Linux Kernel HIGH 7.1
CVE-2026-46243

In the Linux kernel, the following vulnerability has been resolved: smb: client: reject userspace cifs.spnego descriptions cifs.spnego key descript…

Fix: 5.10.258 / 5.15.209+
Fix from $1,950 2026-06-01
Linux Kernel HIGH 8.2
CVE-2023-39191

An improper input validation flaw was found in the eBPF subsystem in the Linux kernel. The issue occurs due to a lack of proper validation of dynamic…

Fix: 6.3+
Fix from $1,950 2023-10-04
Linux Kernel HIGH 7.5
CVE-2023-32820

In wlan firmware, there is a possible firmware assertion due to improper input handling. This could lead to remote denial of service with no addition…

Mitigation only
Fix from $1,950 2023-10-02
Linux Kernel MEDIUM 5.5
CVE-2023-0615

A memory leak flaw and potential divide by zero and Integer overflow was found in the Linux kernel V4L2 and vivid test code functionality. This issue…

Fix: 6.2+
Fix from $1,600 2023-02-06
Linux Kernel MEDIUM 5.5
CVE-2022-3169

A flaw was found in the Linux kernel. A denial of service flaw may occur if there is a consecutive request of the NVME_IOCTL_RESET and the NVME_IOCTL…

Mitigation only
Fix from $1,600 2022-09-09
Linux Kernel HIGH 7.1
CVE-2021-4204

An out-of-bounds (OOB) memory access flaw was found in the Linux kernel's eBPF due to an Improper Input Validation. This flaw allows a local attacker…

Fix: 5.8.0+
Fix from $1,950 2022-08-24
Linux Kernel HIGH 8.8
CVE-2017-5123

Insufficient data validation in waitid allowed an user to escape sandboxes on Linux.

Fix: 4.13.7+
Fix from $1,950 2021-11-02
Linux Kernel HIGH 7.8
CVE-2021-3612

An out-of-bounds memory write flaw was found in the Linux kernel's joystick devices subsystem in versions before 5.9-rc1, in the way the user calls i…

Fix: 5.9.0+
Fix from $1,950 2021-07-09
Tizen CRITICAL 9.8
CVE-2021-25434

Improper input validation vulnerability in Tizen bootloader prior to Firmware update JUL-2021 Release allows arbitrary code execution using param par…

Fix: 5.5+
Fix from $2,300 2021-07-08
Tizen CRITICAL 9.8
CVE-2021-25435

Improper input validation vulnerability in Tizen bootloader prior to Firmware update JUL-2021 Release allows arbitrary code execution using recovery …

Fix: 5.5+
Fix from $2,300 2021-07-08
Tizen CRITICAL 9.8
CVE-2021-25436

Improper input validation vulnerability in Tizen FOTA service prior to Firmware update JUL-2021 Release allows arbitrary code execution via Samsung A…

Fix: 5.5+
Fix from $2,300 2021-07-08
Tizen CRITICAL 9.8
CVE-2021-25437

Improper access control vulnerability in Tizen FOTA service prior to Firmware update JUL-2021 Release allows attackers to arbitrary code execution by…

Fix: 5.5+
Fix from $2,300 2021-07-08
Linux Kernel HIGH 7.8
CVE-2021-3490EPSS 27%

The eBPF ALU32 bounds tracking for bitwise ops (AND, OR and XOR) in the Linux kernel did not properly update 32-bit bounds, which could be turned int…

Fix: 5.10.37 / 5.11.21+
Fix from $1,950 2021-06-04
Linux Kernel HIGH 7.8
CVE-2021-20268

An out-of-bounds access flaw was found in the Linux kernel's implementation of the eBPF code verifier in the way a user running the eBPF script calls…

Fix: 5.10.10+
Fix from $1,950 2021-03-09
Linux Kernel HIGH 7.8
CVE-2021-20194

There is a vulnerability in the linux kernel versions higher than 5.2 (if kernel compiled with config params CONFIG_BPF_SYSCALL=y , CONFIG_BPF=y , CO…

Patch available
Fix from $1,950 2021-02-23
Linux Kernel HIGH 8.8
CVE-2020-12351EPSS 8%

Improper input validation in BlueZ may allow an unauthenticated user to potentially enable escalation of privilege via adjacent access.

Fix: 4.9.240 / 4.14.202+
Fix from $1,950 2020-11-23
Linux Kernel HIGH 7.2
CVE-2020-25643

A flaw was found in the HDLC_PPP module of the Linux kernel in versions before 5.9-rc7. Memory corruption and a read overflow is caused by improper i…

Fix: 4.4.238 / 4.9.238+
Fix from $1,950 2020-10-06
Linux Kernel HIGH 7.5
CVE-2010-2243

A vulnerability exists in kernel/time/clocksource.c in the Linux kernel before 2.6.34 where on non-GENERIC_TIME systems (GENERIC_TIME=n), accessing /…

Fix: 2.6.33+
Fix from $1,950 2019-11-07
Linux Kernel HIGH 7.8
CVE-2017-18509

An issue was discovered in net/ipv6/ip6mr.c in the Linux kernel before 4.11. By setting a specific socket option, an attacker can control a pointer i…

Fix: 3.16.72 / 4.4.187+
Fix from $1,950 2019-08-13
Linux Kernel MEDIUM 6.5
CVE-2019-3460

A heap data infoleak in multiple locations including L2CAP_PARSE_CONF_RSP was found in the Linux kernel before 5.1-rc1.

Fix: after 5.1
Fix from $1,600 2019-04-11
Linux Kernel HIGH 7.8
CVE-2018-20669

An issue where a provided address with access_ok() is not checked was discovered in i915_gem_execbuffer2_ioctl in drivers/gpu/drm/i915/i915_gem_execb…

Fix: 4.14.185 / 4.19.129+
Fix from $1,950 2019-03-21
Linux Kernel MEDIUM 5.5
CVE-2018-14656

A missing address check in the callers of the show_opcodes() in the Linux kernel allows an attacker to dump the kernel memory at an arbitrary kernel …

Fix: after 4.18
Fix from $1,600 2018-10-08
Linux Kernel HIGH 7.1
CVE-2018-18021

arch/arm64/kvm/guest.c in KVM in the Linux kernel before 4.18.12 on the arm64 platform mishandles the KVM_SET_ON_REG ioctl. This is exploitable by at…

Fix: 4.18.12+
Fix from $1,950 2018-10-07
Linux Kernel MEDIUM 5.9
CVE-2018-14641

A security flaw was found in the ip_frag_reasm() function in net/ipv4/ip_fragment.c in the Linux kernel from 4.19-rc1 to 4.19-rc3 inclusive, which ca…

Patch available
Fix from $1,600 2018-09-18
Linux Kernel HIGH 7.5
CVE-2018-5391EPSS 32%

The Linux kernel, versions 3.9+, is vulnerable to a denial of service attack with low rates of specially modified packets targeting IP fragment re-as…

Fix: after 4.18
Fix from $1,950 2018-09-06
Linux Kernel HIGH 7.8
CVE-2018-14619

A flaw was found in the crypto subsystem of the Linux kernel before version kernel-4.15-rc4. The "null skcipher" was being dropped when each af_alg_c…

Fix: 4.14.8+
Fix from $1,950 2018-08-30
Linux Kernel MEDIUM 5.5
CVE-2018-5803

In the Linux Kernel before version 4.15.8, 4.14.25, 4.9.87, 4.4.121, 4.1.51, and 3.2.102, an error in the "_sctp_make_chunk()" function (net/sctp/sm_…

Fix: 3.2.102 / 4.1.51+
Fix from $1,600 2018-06-12
Linux Kernel MEDIUM 5.5
CVE-2018-11232

The etm_setup_aux function in drivers/hwtracing/coresight/coresight-etm-perf.c in the Linux kernel before 4.10.2 allows attackers to cause a denial o…

Fix: 4.10.2+
Fix from $1,600 2018-05-18
Linux Kernel MEDIUM 5.5
CVE-2018-10087

The kernel_wait4 function in kernel/exit.c in the Linux kernel before 4.13, when an unspecified architecture and compiler is used, might allow local …

Fix: 4.13+
Fix from $1,600 2018-04-13
Linux Kernel MEDIUM 5.5
CVE-2017-18221

The __munlock_pagevec function in mm/mlock.c in the Linux kernel before 4.11.4 allows local users to cause a denial of service (NR_MLOCK accounting c…

Fix: 4.11.4+
Fix from $1,600 2018-03-07