Vulnerability index

Browse CVEs

99 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Permissions, Privileges & Access ControlsCWE-264 × clear
Linux Kernel HIGH 7.8
CVE-2014-9888

arch/arm/mm/dma-mapping.c in the Linux kernel before 3.13 on ARM platforms, as used in Android before 2016-08-05 on Nexus 5 and 7 (2013) devices, doe…

Fix: after 3.12.9
Fix from $1,950 2016-08-06
Linux Kernel HIGH 7.8
CVE-2014-9870

The Linux kernel before 3.11 on ARM platforms, as used in Android before 2016-08-05 on Nexus 5 and 7 (2013) devices, does not properly consider user-…

Fix: after 6.0.1
Fix from $1,950 2016-08-06
Linux Kernel HIGH 7.8
CVE-2016-4997EPSS 6%

The compat IPT_SO_SET_REPLACE and IP6T_SO_SET_REPLACE setsockopt implementations in the netfilter subsystem in the Linux kernel before 4.6.3 allow lo…

Fix: 3.2.80 / 3.10.103+
Fix from $1,950 2016-07-03
Linux Kernel HIGH 7.8
CVE-2016-4440

arch/x86/kvm/vmx.c in the Linux kernel through 4.6.3 mishandles the APICv on/off state, which allows guest OS users to obtain direct APIC MSR access …

Fix: 4.7+
Fix from $1,950 2016-06-27
Linux Kernel HIGH 7.8
CVE-2016-4565

The InfiniBand (aka IB) stack in the Linux kernel before 4.5.3 incorrectly relies on the write system call, which allows local users to cause a denia…

Fix: 3.2.81 / 3.10.103+
Fix from $1,950 2016-05-23
Linux Kernel HIGH 7.8
CVE-2015-2686

net/socket.c in the Linux kernel 3.19 before 3.19.3 does not validate certain range data for (1) sendto and (2) recvfrom system calls, which allows l…

Patch available
Fix from $1,950 2016-05-02
Linux Kernel HIGH 7.0
CVE-2015-8709

kernel/ptrace.c in the Linux kernel through 4.4.1 mishandles uid and gid mappings, which allows local users to gain privileges by establishing a user…

Fix: after 4.4.1
Fix from $1,950 2016-02-08
Linux Kernel MEDIUM 6.7
CVE-2015-8660EPSS 22%

The ovl_setattr function in fs/overlayfs/inode.c in the Linux kernel through 4.3.3 attempts to merge distinct setattr operations, which allows local …

Fix: 3.18.31 / 4.1.22+
Fix from $1,600 2015-12-28
Linux Kernel HIGH 7.2
CVE-2015-3290

arch/x86/entry/entry_64.S in the Linux kernel before 4.1.6 on the x86_64 platform improperly relies on espfix64 during nested NMI processing, which a…

Fix: 3.12.47 / 3.14.54+
Fix from $1,950 2015-08-31
Linux Kernel MEDIUM 5.0
CVE-2015-1593

The stack randomization feature in the Linux kernel before 3.19.1 on 64-bit platforms uses incorrect data types for the results of bitwise left-shift…

Fix: after 3.18.9
Fix from $1,600 2015-03-16
Linux Kernel MEDIUM 6.9
CVE-2014-8159

The InfiniBand (IB) implementation in the Linux kernel package before 2.6.32-504.12.2 on Red Hat Enterprise Linux (RHEL) 6 does not properly restrict…

Fix: 3.2.69 / 3.4.108+
Fix from $1,600 2015-03-16
Linux Kernel HIGH 7.2
CVE-2014-7822

The implementation of certain splice_write file operations in the Linux kernel before 3.16 does not enforce a restriction on the maximum size of a si…

Fix: after 3.15.8
Fix from $1,950 2015-03-16
Linux Kernel MEDIUM 6.2
CVE-2014-4014

The capabilities implementation in the Linux kernel before 3.14.8 does not properly consider that namespaces are inapplicable to inodes, which allows…

Fix: 3.14.8+
Fix from $1,600 2014-06-23
Linux Kernel MEDIUM 6.9
CVE-2013-6383

The aac_compat_ioctl function in drivers/scsi/aacraid/linit.c in the Linux kernel before 3.11.8 does not require the CAP_SYS_RAWIO capability, which …

Fix: 3.2.53 / 3.4.69+
Fix from $1,600 2013-11-27
Linux Kernel MEDIUM 6.9
CVE-2013-4470

The Linux kernel before 3.12, when UDP Fragmentation Offload (UFO) is enabled, does not properly initialize certain data structures, which allows loc…

Fix: after 3.11.7
Fix from $1,600 2013-11-04
Linux Kernel MEDIUM 6.0
CVE-2013-4299

Interpretation conflict in drivers/md/dm-snap-persistent.c in the Linux kernel through 3.11.6 allows remote authenticated users to obtain sensitive i…

Fix: after 3.11.6
Fix from $1,600 2013-10-24
Linux Kernel HIGH 7.2
CVE-2013-4300

The scm_check_creds function in net/core/scm.c in the Linux kernel before 3.11 performs a capability check in an incorrect namespace, which allows lo…

Fix: 3.9+
Fix from $1,950 2013-09-25
Linux Kernel MEDIUM 6.9
CVE-2013-1979

The scm_set_cred function in include/net/scm.h in the Linux kernel before 3.8.11 uses incorrect uid and gid values during credentials passing, which …

Fix: after 3.8.10
Fix from $1,600 2013-05-03
Linux Kernel HIGH 7.2
CVE-2013-1858

The clone system-call implementation in the Linux kernel before 3.8.3 does not properly handle a combination of the CLONE_NEWUSER and CLONE_FS flags,…

Fix: after 3.8.2
Fix from $1,950 2013-04-05
Linux Kernel MEDIUM 6.2
CVE-2013-0268

The msr_open function in arch/x86/kernel/msr.c in the Linux kernel before 3.7.6 allows local users to bypass intended capability restrictions by exec…

Fix: after 3.7.5
Fix from $1,600 2013-02-18
Linux Kernel HIGH 7.2
CVE-2011-1477

Multiple array index errors in sound/oss/opl3.c in the Linux kernel before 2.6.39 allow local users to cause a denial of service (heap memory corrupt…

Fix: after 2.6.38.8
Fix from $1,950 2012-06-21
Linux Kernel HIGH 7.2
CVE-2012-0028

The robust futex implementation in the Linux kernel before 2.6.28 does not properly handle processes that make exec system calls, which allows local …

Fix: after 2.6.27.62
Fix from $1,950 2012-06-21
Linux Kernel HIGH 7.2
CVE-2011-2211

The osf_wait4 function in arch/alpha/kernel/osf_sys.c in the Linux kernel before 2.6.39.4 on the Alpha platform uses an incorrect pointer, which allo…

Fix: after 2.6.39.3
Fix from $1,950 2012-06-13
Linux Kernel HIGH 7.2
CVE-2012-2123

The cap_bprm_set_creds function in security/commoncap.c in the Linux kernel before 3.3.3 does not properly handle the use of file system capabilities…

Fix: 3.0.29 / 3.2.16+
Fix from $1,950 2012-05-17
Linux Kernel HIGH 7.2
CVE-2012-2319

Multiple buffer overflows in the hfsplus filesystem implementation in the Linux kernel before 3.3.5 allow local users to gain privileges via a crafte…

Fix: after 3.3.3
Fix from $1,950 2012-05-17
Linux Kernel MEDIUM 5.2
CVE-2012-1179

The Linux kernel before 3.3.1, when KVM is used, allows guest OS users to cause a denial of service (host OS crash) by leveraging administrative acce…

Fix: after 3.3
Fix from $1,600 2012-05-17
Linux Kernel MEDIUM 6.9
CVE-2012-0056EPSS 11%

The mem_write function in the Linux kernel before 3.2.2, when ASLR is disabled, does not properly check permissions when writing to /proc/<pid>/mem, …

Fix: 3.0.18 / 3.2.2+
Fix from $1,600 2012-01-27
Linux Kernel MEDIUM 6.9
CVE-2010-1146

The Linux kernel 2.6.33.2 and earlier, when a ReiserFS filesystem exists, does not restrict read or write access to the .reiserfs_priv directory, whi…

Fix: after 2.6.33.2
Fix from $1,600 2010-04-12
Linux Kernel MEDIUM 6.5
CVE-2010-0298

The x86 emulator in KVM 83 does not use the Current Privilege Level (CPL) and I/O Privilege Level (IOPL) in determining the memory access available t…

Fix: after 2.6.33
Fix from $1,600 2010-02-12
Linux Kernel HIGH 7.2
CVE-2009-4131

The EXT4_IOC_MOVE_EXT (aka move extents) ioctl implementation in the ext4 filesystem in the Linux kernel before 2.6.32-git6 allows local users to ove…

Fix: after 2.6.32
Fix from $1,950 2009-12-13