Vulnerability index

Browse CVEs

99 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Permissions, Privileges & Access ControlsCWE-264 × clear
HIGH 7.8 CVE-2014-9888 arch/arm/mm/dma-mapping.c in the Linux kernel before 3.13 on ARM platforms, as used in Android before 2016-08-05 on Nexus 5 and 7 (2013) devices, doe… Linux Kernel after 3.12.9 Fix from $1,9502016-08-06 HIGH 7.8 CVE-2014-9870 The Linux kernel before 3.11 on ARM platforms, as used in Android before 2016-08-05 on Nexus 5 and 7 (2013) devices, does not properly consider user-… Linux Kernel after 6.0.1 Fix from $1,9502016-08-06 HIGH 7.8 CVE-2016-4997EPSS 6% The compat IPT_SO_SET_REPLACE and IP6T_SO_SET_REPLACE setsockopt implementations in the netfilter subsystem in the Linux kernel before 4.6.3 allow lo… Linux Kernel 3.2.80 / 3.10.103+ Fix from $1,9502016-07-03 HIGH 7.8 CVE-2016-4440 arch/x86/kvm/vmx.c in the Linux kernel through 4.6.3 mishandles the APICv on/off state, which allows guest OS users to obtain direct APIC MSR access … Linux Kernel 4.7+ Fix from $1,9502016-06-27 HIGH 7.8 CVE-2016-4565 The InfiniBand (aka IB) stack in the Linux kernel before 4.5.3 incorrectly relies on the write system call, which allows local users to cause a denia… Linux Kernel 3.2.81 / 3.10.103+ Fix from $1,9502016-05-23 HIGH 7.8 CVE-2015-2686 net/socket.c in the Linux kernel 3.19 before 3.19.3 does not validate certain range data for (1) sendto and (2) recvfrom system calls, which allows l… Linux Kernel Patch available Fix from $1,9502016-05-02 HIGH 7.0 CVE-2015-8709 kernel/ptrace.c in the Linux kernel through 4.4.1 mishandles uid and gid mappings, which allows local users to gain privileges by establishing a user… Linux Kernel after 4.4.1 Fix from $1,9502016-02-08 MEDIUM 6.7 CVE-2015-8660EPSS 22% The ovl_setattr function in fs/overlayfs/inode.c in the Linux kernel through 4.3.3 attempts to merge distinct setattr operations, which allows local … Linux Kernel 3.18.31 / 4.1.22+ Fix from $1,6002015-12-28 HIGH 7.2 CVE-2015-3290 arch/x86/entry/entry_64.S in the Linux kernel before 4.1.6 on the x86_64 platform improperly relies on espfix64 during nested NMI processing, which a… Linux Kernel 3.12.47 / 3.14.54+ Fix from $1,9502015-08-31 MEDIUM 5.0 CVE-2015-1593 The stack randomization feature in the Linux kernel before 3.19.1 on 64-bit platforms uses incorrect data types for the results of bitwise left-shift… Linux Kernel after 3.18.9 Fix from $1,6002015-03-16 MEDIUM 6.9 CVE-2014-8159 The InfiniBand (IB) implementation in the Linux kernel package before 2.6.32-504.12.2 on Red Hat Enterprise Linux (RHEL) 6 does not properly restrict… Linux Kernel 3.2.69 / 3.4.108+ Fix from $1,6002015-03-16 HIGH 7.2 CVE-2014-7822 The implementation of certain splice_write file operations in the Linux kernel before 3.16 does not enforce a restriction on the maximum size of a si… Linux Kernel after 3.15.8 Fix from $1,9502015-03-16 MEDIUM 6.2 CVE-2014-4014 The capabilities implementation in the Linux kernel before 3.14.8 does not properly consider that namespaces are inapplicable to inodes, which allows… Linux Kernel 3.14.8+ Fix from $1,6002014-06-23 MEDIUM 6.9 CVE-2013-6383 The aac_compat_ioctl function in drivers/scsi/aacraid/linit.c in the Linux kernel before 3.11.8 does not require the CAP_SYS_RAWIO capability, which … Linux Kernel 3.2.53 / 3.4.69+ Fix from $1,6002013-11-27 MEDIUM 6.9 CVE-2013-4470 The Linux kernel before 3.12, when UDP Fragmentation Offload (UFO) is enabled, does not properly initialize certain data structures, which allows loc… Linux Kernel after 3.11.7 Fix from $1,6002013-11-04 MEDIUM 6.0 CVE-2013-4299 Interpretation conflict in drivers/md/dm-snap-persistent.c in the Linux kernel through 3.11.6 allows remote authenticated users to obtain sensitive i… Linux Kernel after 3.11.6 Fix from $1,6002013-10-24 HIGH 7.2 CVE-2013-4300 The scm_check_creds function in net/core/scm.c in the Linux kernel before 3.11 performs a capability check in an incorrect namespace, which allows lo… Linux Kernel 3.9+ Fix from $1,9502013-09-25 MEDIUM 6.9 CVE-2013-1979 The scm_set_cred function in include/net/scm.h in the Linux kernel before 3.8.11 uses incorrect uid and gid values during credentials passing, which … Linux Kernel after 3.8.10 Fix from $1,6002013-05-03 HIGH 7.2 CVE-2013-1858 The clone system-call implementation in the Linux kernel before 3.8.3 does not properly handle a combination of the CLONE_NEWUSER and CLONE_FS flags,… Linux Kernel after 3.8.2 Fix from $1,9502013-04-05 MEDIUM 6.2 CVE-2013-0268 The msr_open function in arch/x86/kernel/msr.c in the Linux kernel before 3.7.6 allows local users to bypass intended capability restrictions by exec… Linux Kernel after 3.7.5 Fix from $1,6002013-02-18 HIGH 7.2 CVE-2011-1477 Multiple array index errors in sound/oss/opl3.c in the Linux kernel before 2.6.39 allow local users to cause a denial of service (heap memory corrupt… Linux Kernel after 2.6.38.8 Fix from $1,9502012-06-21 HIGH 7.2 CVE-2012-0028 The robust futex implementation in the Linux kernel before 2.6.28 does not properly handle processes that make exec system calls, which allows local … Linux Kernel after 2.6.27.62 Fix from $1,9502012-06-21 HIGH 7.2 CVE-2011-2211 The osf_wait4 function in arch/alpha/kernel/osf_sys.c in the Linux kernel before 2.6.39.4 on the Alpha platform uses an incorrect pointer, which allo… Linux Kernel after 2.6.39.3 Fix from $1,9502012-06-13 HIGH 7.2 CVE-2012-2123 The cap_bprm_set_creds function in security/commoncap.c in the Linux kernel before 3.3.3 does not properly handle the use of file system capabilities… Linux Kernel 3.0.29 / 3.2.16+ Fix from $1,9502012-05-17 HIGH 7.2 CVE-2012-2319 Multiple buffer overflows in the hfsplus filesystem implementation in the Linux kernel before 3.3.5 allow local users to gain privileges via a crafte… Linux Kernel after 3.3.3 Fix from $1,9502012-05-17 MEDIUM 5.2 CVE-2012-1179 The Linux kernel before 3.3.1, when KVM is used, allows guest OS users to cause a denial of service (host OS crash) by leveraging administrative acce… Linux Kernel after 3.3 Fix from $1,6002012-05-17 MEDIUM 6.9 CVE-2012-0056EPSS 11% The mem_write function in the Linux kernel before 3.2.2, when ASLR is disabled, does not properly check permissions when writing to /proc/<pid>/mem, … Linux Kernel 3.0.18 / 3.2.2+ Fix from $1,6002012-01-27 MEDIUM 6.9 CVE-2010-1146 The Linux kernel 2.6.33.2 and earlier, when a ReiserFS filesystem exists, does not restrict read or write access to the .reiserfs_priv directory, whi… Linux Kernel after 2.6.33.2 Fix from $1,6002010-04-12 MEDIUM 6.5 CVE-2010-0298 The x86 emulator in KVM 83 does not use the Current Privilege Level (CPL) and I/O Privilege Level (IOPL) in determining the memory access available t… Linux Kernel after 2.6.33 Fix from $1,6002010-02-12 HIGH 7.2 CVE-2009-4131 The EXT4_IOC_MOVE_EXT (aka move extents) ioctl implementation in the ext4 filesystem in the Linux kernel before 2.6.32-git6 allows local users to ove… Linux Kernel after 2.6.32 Fix from $1,9502009-12-13