Vulnerability index

Browse CVEs

26 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Privilege ManagementCWE-269 × clear
Linux Kernel HIGH 7.1
CVE-2026-46333

In the Linux kernel, the following vulnerability has been resolved: ptrace: slightly saner 'get_dumpable()' logic The 'dumpability' of a task is fu…

Fix: 3.17 / 4.5+
Fix from $1,950 2026-05-15
Linux Kernel HIGH 7.8
CVE-2022-25636

net/netfilter/nf_dup_netdev.c in the Linux kernel 5.4 through 5.6.10 allows local users to gain privileges because of a heap out-of-bounds write. Thi…

Fix: 5.4.182 / 5.10.103+
Fix from $1,950 2022-02-24
Tizen HIGH 8.8
CVE-2018-16262

The pkgmgr system service in Tizen allows an unprivileged process to perform package management actions, due to improper D-Bus security policy config…

Mitigation only
Fix from $1,950 2020-01-22
Tizen HIGH 8.8
CVE-2018-16263

The PulseAudio system service in Tizen allows an unprivileged process to control its A2DP MediaEndpoint, due to improper D-Bus security policy config…

Mitigation only
Fix from $1,950 2020-01-22
Tizen HIGH 8.1
CVE-2018-16266

The Enlightenment system service in Tizen allows an unprivileged process to fully control or capture windows, due to improper D-Bus security policy c…

Mitigation only
Fix from $1,950 2020-01-22
Tizen HIGH 8.1
CVE-2018-16267

The system-popup system service in Tizen allows an unprivileged process to perform popup-related system actions, due to improper D-Bus security polic…

Mitigation only
Fix from $1,950 2020-01-22
Tizen MEDIUM 6.5
CVE-2018-16265

The bt/bt_core system service in Tizen allows an unprivileged process to create a system user interface and control the Bluetooth pairing process, du…

Mitigation only
Fix from $1,600 2020-01-22
Linux Kernel HIGH 7.8
CVE-2018-13405

The inode_init_owner function in fs/inode.c in the Linux kernel through 3.16 allows local users to create files with an unintended group ownership, i…

Fix: after 3.16
Fix from $1,950 2018-07-06
Linux Kernel HIGH 7.4
CVE-2018-1000028

Linux kernel version after commit bdcf0a423ea1 - 4.15-rc4+, 4.14.8+, 4.9.76+, 4.4.111+ contains a Incorrect Access Control vulnerability in NFS serve…

Fix: after 4.15.7
Fix from $1,950 2018-02-09
Linux Kernel HIGH 7.8
CVE-2016-2067

drivers/gpu/msm/kgsl.c in the MSM graphics driver (aka GPU driver) for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android con…

Fix: after 6.0.1
Fix from $1,950 2016-07-11
Linux Kernel HIGH 7.8
CVE-2016-2066

Integer signedness error in the MSM QDSP6 audio driver for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions f…

Fix: after 3.19.8
Fix from $1,950 2016-06-13
Linux Kernel HIGH 7.8
CVE-2016-2061

Integer signedness error in the MSM V4L2 video driver for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions fo…

Fix: after 3.19.8
Fix from $1,950 2016-06-13
Linux Kernel HIGH 7.0
CVE-2016-2059

The msm_ipc_router_bind_control_port function in net/ipc_router/ipc_router_core.c in the IPC router kernel module for the Linux kernel 3.x, as used i…

Fix: after 7.0
Fix from $1,950 2016-05-05
Linux Kernel HIGH 7.8
CVE-2016-2854

The aufs module for the Linux kernel 3.x and 4.x does not properly maintain POSIX ACL xattr data, which allows local users to gain privileges by leve…

Fix: after 4.20.15
Fix from $1,950 2016-05-02
Linux Kernel HIGH 7.8
CVE-2016-2853

The aufs module for the Linux kernel 3.x and 4.x does not properly restrict the mount namespace, which allows local users to gain privileges by mount…

Fix: after 4.20.15
Fix from $1,950 2016-05-02
Linux Kernel HIGH 7.8
CVE-2016-1575

The overlayfs implementation in the Linux kernel through 4.5.2 does not properly maintain POSIX ACL xattr data, which allows local users to gain priv…

Fix: after 4.5.2
Fix from $1,950 2016-05-02
Linux Kernel HIGH 7.8
CVE-2014-9322

arch/x86/kernel/entry_64.S in the Linux kernel before 3.17.5 does not properly handle faults associated with the Stack Segment (SS) segment register,…

Fix: 3.2.65 / 3.4.106+
Fix from $1,950 2014-12-17
Linux Kernel HIGH 7.2
CVE-2014-5206

The do_remount function in fs/namespace.c in the Linux kernel through 3.16.1 does not maintain the MNT_LOCK_READONLY bit across a remount of a bind m…

Fix: 3.10.55 / 3.12.27+
Fix from $1,950 2014-08-18
Linux Kernel MEDIUM 6.2
CVE-2014-5207

fs/namespace.c in the Linux kernel through 3.16.1 does not properly restrict clearing MNT_NODEV, MNT_NOSUID, and MNT_NOEXEC and changing MNT_ATIME_MA…

Fix: after 3.16.1
Fix from $1,600 2014-08-18
Linux Kernel HIGH 7.2
CVE-2014-3534

arch/s390/kernel/ptrace.c in the Linux kernel before 3.15.8 on the s390 platform does not properly restrict address-space control operations in PTRAC…

Fix: 3.2.62 / 3.4.101+
Fix from $1,950 2014-08-01
Linux Kernel MEDIUM 6.9
CVE-2014-4943

The PPPoL2TP feature in net/l2tp/l2tp_ppp.c in the Linux kernel through 3.15.6 allows local users to gain privileges by leveraging data-structure dif…

Fix: 3.2.62 / 3.4.102+
Fix from $1,600 2014-07-19
Linux Kernel MEDIUM 6.2
CVE-2010-4258

The do_exit function in kernel/exit.c in the Linux kernel before 2.6.36.2 does not properly handle a KERNEL_DS get_fs value, which allows local users…

Fix: 2.6.36.2+
Fix from $1,600 2010-12-30
Linux Kernel MEDIUM 6.9
CVE-2010-4347

The ACPI subsystem in the Linux kernel before 2.6.36.2 uses 0222 permissions for the debugfs custom_method file, which allows local users to gain pri…

Fix: 2.6.36.2+
Fix from $1,600 2010-12-22
Linux Kernel HIGH 7.2
CVE-2010-3301

The IA32 system call emulation functionality in arch/x86/ia32/ia32entry.S in the Linux kernel before 2.6.36-rc4-git2 on the x86_64 platform does not …

Fix: 2.6.36+
Fix from $1,950 2010-09-22
Linux Kernel MEDIUM 5.9
CVE-2009-2848

The execve function in the Linux kernel, possibly 2.6.30-rc6 and earlier, does not properly clear the current->clear_child_tid pointer, which allows …

Fix: after 2.6.29.5
Fix from $1,600 2009-08-18
Linux Kernel HIGH 7.8
CVE-2008-2931

The do_change_type function in fs/namespace.c in the Linux kernel before 2.6.22 does not verify that the caller has the CAP_SYS_ADMIN capability, whi…

Fix: 2.6.22+
Fix from $1,950 2008-07-09