Vulnerability index

Browse CVEs

97 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Information ExposureCWE-200 × clear
Linux Kernel MEDIUM 5.5
CVE-2017-0334

An information disclosure vulnerability in the NVIDIA GPU driver could enable a local malicious application to access data outside of its permission …

Patch available
Fix from $1,600 2017-03-08
Linux Kernel MEDIUM 5.5
CVE-2017-0336

An information disclosure vulnerability in the NVIDIA GPU driver could enable a local malicious application to access data outside of its permission …

Patch available
Fix from $1,600 2017-03-08
Linux Kernel MEDIUM 5.5
CVE-2017-0448

An information disclosure vulnerability in the NVIDIA video driver could enable a local malicious application to access data outside of its permissio…

Fix: after 7.1.1
Fix from $1,600 2017-02-08
Linux Kernel MEDIUM 5.5
CVE-2017-5550

Off-by-one error in the pipe_advance function in lib/iov_iter.c in the Linux kernel before 4.9.5 allows local users to obtain sensitive information f…

Fix: after 4.9.4
Fix from $1,600 2017-02-06
Linux Kernel HIGH 7.1
CVE-2017-2584

arch/x86/kvm/emulate.c in the Linux kernel through 4.9.3 allows local users to obtain sensitive information from kernel memory or cause a denial of s…

Fix: after 4.9.3
Fix from $1,950 2017-01-15
Linux Kernel MEDIUM 5.5
CVE-2016-8460

An information disclosure vulnerability in the NVIDIA video driver could enable a local malicious application to access data outside of its permissio…

Mitigation only
Fix from $1,600 2017-01-12
Linux Kernel MEDIUM 5.5
CVE-2016-8461

An information disclosure vulnerability in the bootloader could enable a local attacker to access data outside of its permission level. This issue is…

Mitigation only
Fix from $1,600 2017-01-12
Linux Kernel MEDIUM 5.5
CVE-2016-8397

An information disclosure vulnerability in the NVIDIA video driver could enable a local malicious application to access data outside of its permissio…

Mitigation only
Fix from $1,600 2017-01-12
Linux Kernel MEDIUM 5.5
CVE-2016-8400

An information disclosure vulnerability in the NVIDIA librm library (libnvrm) could enable a local malicious application to access data outside of it…

Mitigation only
Fix from $1,600 2017-01-12
Linux Kernel MEDIUM 5.5
CVE-2016-9756

arch/x86/kvm/emulate.c in the Linux kernel before 4.8.12 does not properly initialize Code Segment (CS) in certain error cases, which allows local us…

Fix: after 4.8.11
Fix from $1,600 2016-12-28
Linux Kernel MEDIUM 5.5
CVE-2016-9178

The __get_user_asm_ex macro in arch/x86/include/asm/uaccess.h in the Linux kernel before 4.7.5 does not initialize a certain integer variable, which …

Fix: after 4.7.4
Fix from $1,600 2016-11-28
Linux Kernel MEDIUM 5.0
CVE-2016-7917

The nfnetlink_rcv_batch function in net/netfilter/nfnetlink.c in the Linux kernel before 4.5 does not check whether a batch message's length field is…

Fix: after 4.4.32
Fix from $1,600 2016-11-16
Linux Kernel MEDIUM 5.5
CVE-2015-8964

The tty_set_termios_ldisc function in drivers/tty/tty_ldisc.c in the Linux kernel before 4.5 allows local users to obtain sensitive information from …

Fix: after 4.4.32
Fix from $1,600 2016-11-16
Linux Kernel MEDIUM 5.5
CVE-2015-8950

arch/arm64/mm/dma-mapping.c in the Linux kernel before 4.0.3, as used in the ION subsystem in Android and other products, does not initialize certain…

Fix: after 4.0.2
Fix from $1,600 2016-10-10
Linux Kernel MEDIUM 5.5
CVE-2015-8944

The ioresources_init function in kernel/resource.c in the Linux kernel through 4.7, as used in Android before 2016-08-05 on Nexus 6 and 7 (2013) devi…

Fix: after 6.0.1
Fix from $1,600 2016-08-06
Linux Kernel MEDIUM 5.5
CVE-2014-9900

The ethtool_get_wol function in net/core/ethtool.c in the Linux kernel through 4.7, as used in Android before 2016-08-05 on Nexus 5 and 7 (2013) devi…

Fix: after 6.0.1
Fix from $1,600 2016-08-06
Linux Kernel MEDIUM 5.5
CVE-2014-9895

drivers/media/media-device.c in the Linux kernel before 3.11, as used in Android before 2016-08-05 on Nexus 5 and 7 (2013) devices, does not properly…

Fix: after 6.0.1
Fix from $1,600 2016-08-06
Linux Kernel MEDIUM 5.5
CVE-2014-9892

The snd_compr_tstamp function in sound/core/compress_offload.c in the Linux kernel through 4.7, as used in Android before 2016-08-05 on Nexus 5 and 7…

Fix: after 6.0.1
Fix from $1,600 2016-08-06
Linux Kernel MEDIUM 5.5
CVE-2016-5243

The tipc_nl_compat_link_dump function in net/tipc/netlink_compat.c in the Linux kernel through 4.6.3 does not properly copy a certain string, which a…

Fix: after 4.6.3
Fix from $1,600 2016-06-27
Linux Kernel MEDIUM 5.5
CVE-2014-9903

The sched_read_attr function in kernel/sched/core.c in the Linux kernel 3.14-rc before 3.14-rc4 uses an incorrect size, which allows local users to o…

Patch available
Fix from $1,600 2016-06-27
Linux Kernel HIGH 7.5
CVE-2016-4580

The x25_negotiate_facilities function in net/x25/x25_facilities.c in the Linux kernel before 4.5.5 does not properly initialize a certain data struct…

Fix: after 4.5.4
Fix from $1,950 2016-05-23
Linux Kernel MEDIUM 5.5
CVE-2016-4578

sound/core/timer.c in the Linux kernel through 4.6 does not initialize certain r1 data structures, which allows local users to obtain sensitive infor…

Fix: after 4.6
Fix from $1,600 2016-05-23
Linux Kernel MEDIUM 5.5
CVE-2016-4569

The snd_timer_user_params function in sound/core/timer.c in the Linux kernel through 4.6 does not initialize a certain data structure, which allows l…

Fix: after 4.6
Fix from $1,600 2016-05-23
Linux Kernel MEDIUM 5.5
CVE-2015-4176

fs/namespace.c in the Linux kernel before 4.0.2 does not properly support mount connectivity, which allows local users to read arbitrary files by lev…

Fix: after 4.0.1
Fix from $1,600 2016-05-02
Linux Kernel MEDIUM 6.8
CVE-2016-0723

Race condition in the tty_ioctl function in drivers/tty/tty_io.c in the Linux kernel through 4.4.1 allows local users to obtain sensitive information…

Fix: after 4.4.1
Fix from $1,600 2016-02-08
Linux Kernel MEDIUM 5.0
CVE-2014-8709

The ieee80211_fragment function in net/mac80211/tx.c in the Linux kernel before 3.13.5 does not properly maintain a certain tail pointer, which allow…

Fix: after 3.13.4
Fix from $1,600 2014-11-10
Linux Kernel MEDIUM 6.4
CVE-2014-7284

The net_get_random_once implementation in net/core/utils.c in the Linux kernel 3.13.x and 3.14.x before 3.14.5 on certain Intel processors does not p…

Patch available
Fix from $1,600 2014-10-13
Linux Kernel MEDIUM 6.0
CVE-2013-4299

Interpretation conflict in drivers/md/dm-snap-persistent.c in the Linux kernel through 3.11.6 allows remote authenticated users to obtain sensitive i…

Fix: after 3.11.6
Fix from $1,600 2013-10-24
Linux Kernel MEDIUM 6.0
CVE-2011-2707

The ptrace_setxregs function in arch/xtensa/kernel/ptrace.c in the Linux kernel before 3.1 does not validate user-space pointers, which allows local …

Fix: 3.1+
Fix from $1,600 2012-05-24
Linux Kernel MEDIUM 5.5
CVE-2011-2898

net/packet/af_packet.c in the Linux kernel before 2.6.39.3 does not properly restrict user-space access to certain packet data structures associated …

Fix: 2.6.39.3+
Fix from $1,600 2012-05-24