Vulnerability index

Browse CVEs

244 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Race ConditionCWE-362 × clear
Linux Kernel HIGH 7.8
CVE-2018-7566

The Linux kernel 4.15 has a Buffer Overflow via an SNDRV_SEQ_IOCTL_SET_CLIENT_POOL ioctl write operation to /dev/snd/seq by a local user.

Patch available
Fix from $1,950 2018-03-30
Linux Kernel HIGH 7.0
CVE-2017-18249

The add_free_nid function in fs/f2fs/node.c in the Linux kernel before 4.12 does not properly track an allocated nid, which allows local users to cau…

Fix: 4.12+
Fix from $1,950 2018-03-26
Linux Kernel MEDIUM 5.9
CVE-2018-1000004

In the Linux kernel 4.12, 3.10, 2.6 and possibly earlier versions a race condition vulnerability exists in the sound system, this can lead to a deadl…

Fix: after 2.6.0
Fix from $1,600 2018-01-16
Linux Kernel HIGH 7.8
CVE-2018-5344

In the Linux kernel through 4.14.13, drivers/block/loop.c mishandles lo_release serialization, which allows attackers to cause a denial of service (_…

Fix: after 4.14.13
Fix from $1,950 2018-01-12
Linux Kernel HIGH 7.0
CVE-2017-17712

The raw_sendmsg() function in net/ipv4/raw.c in the Linux kernel through 4.14.6 has a race condition in inet->hdrincl that leads to uninitialized sta…

Fix: 4.1.52 / 4.4.109+
Fix from $1,950 2017-12-16
Linux Kernel HIGH 7.0
CVE-2017-1000405

The Linux Kernel versions 2.6.38 through 4.14 have a problematic use of pmd_mkdirty() in the touch_pmd() function inside the THP implementation. touc…

Fix: 3.3 / 3.11+
Fix from $1,950 2017-11-30
Linux Kernel HIGH 7.8
CVE-2017-15649

net/packet/af_packet.c in the Linux kernel before 4.13.6 allows local users to gain privileges via crafted system calls that trigger mishandling of p…

Fix: after 4.13.5
Fix from $1,950 2017-10-19
Linux Kernel HIGH 7.0
CVE-2017-15265

Race condition in the ALSA subsystem in the Linux kernel before 4.13.8 allows local users to cause a denial of service (use-after-free) or possibly h…

Fix: 3.2.95 / 3.10.108+
Fix from $1,950 2017-10-16
Linux Kernel HIGH 7.0
CVE-2017-1000112EPSS 21%

Linux kernel: Exploitable memory corruption due to UFO to non-UFO path switch. When building a UFO packet with MSG_MORE __ip_append_data() calls ip_u…

Fix: 3.10.108 / 3.16.47+
Fix from $1,950 2017-10-05
Linux Kernel HIGH 7.0
CVE-2017-12146

The driver_override implementation in drivers/base/platform.c in the Linux kernel before 4.12.1 allows local users to gain privileges by leveraging a…

Fix: 3.18.61 / 4.1.43+
Fix from $1,950 2017-09-08
Linux Kernel HIGH 7.0
CVE-2017-7533

Race condition in the fsnotify implementation in the Linux kernel through 4.12.4 allows local users to gain privileges or cause a denial of service (…

Fix: 3.16.47 / 3.18.64+
Fix from $1,950 2017-08-05
Linux Kernel HIGH 7.0
CVE-2017-0462

An elevation of privilege vulnerability in the Qualcomm Seemp driver could enable a local malicious application to execute arbitrary code within the …

Mitigation only
Fix from $1,950 2017-04-07
Linux Kernel HIGH 7.0
CVE-2017-6874

Race condition in kernel/ucount.c in the Linux kernel through 4.10.2 allows local users to cause a denial of service (use-after-free and system crash…

Fix: 4.9.16 / 4.10.4+
Fix from $1,950 2017-03-14
Linux Kernel HIGH 7.0
CVE-2017-2636

Race condition in drivers/tty/n_hdlc.c in the Linux kernel through 4.10.1 allows local users to gain privileges or cause a denial of service (double …

Fix: 3.2.87 / 3.10.106+
Fix from $1,950 2017-03-07
Linux Kernel HIGH 7.0
CVE-2016-10200

Race condition in the L2TPv3 IP Encapsulation feature in the Linux kernel before 4.8.14 allows local users to gain privileges or cause a denial of se…

Fix: 3.2 / 3.2.88+
Fix from $1,950 2017-03-07
Linux Kernel HIGH 7.0
CVE-2017-6346

Race condition in net/packet/af_packet.c in the Linux kernel before 4.9.13 allows local users to cause a denial of service (use-after-free) or possib…

Fix: 3.2.87 / 3.10.106+
Fix from $1,950 2017-03-01
Linux Kernel HIGH 7.0
CVE-2017-6001

Race condition in kernel/events/core.c in the Linux kernel before 4.9.7 allows local users to gain privileges via a crafted application that makes co…

Fix: 3.18.92 / 4.4.65+
Fix from $1,950 2017-02-18
Linux Kernel MEDIUM 5.5
CVE-2017-5986

Race condition in the sctp_wait_for_sndbuf function in net/sctp/socket.c in the Linux kernel before 4.9.11 allows local users to cause a denial of se…

Fix: after 4.9.11
Fix from $1,600 2017-02-18
Linux Kernel HIGH 7.8
CVE-2014-9914

Race condition in the ip4_datagram_release_cb function in net/ipv4/datagram.c in the Linux kernel before 3.15.2 allows local users to gain privileges…

Fix: 3.10.45 / 3.12.23+
Fix from $1,950 2017-02-07
Linux Kernel HIGH 7.8
CVE-2016-9794

Race condition in the snd_pcm_period_elapsed function in sound/core/pcm_lib.c in the ALSA subsystem in the Linux kernel before 4.7 allows local users…

Fix: 3.2.85 / 3.10.105+
Fix from $1,950 2016-12-28
Linux Kernel HIGH 7.8
CVE-2016-9806

Race condition in the netlink_dump function in net/netlink/af_netlink.c in the Linux kernel before 4.6.3 allows local users to cause a denial of serv…

Fix: 3.12.62 / 3.14.73+
Fix from $1,950 2016-12-28
Linux Kernel HIGH 7.8
CVE-2016-8655EPSS 11%

Race condition in net/packet/af_packet.c in the Linux kernel through 4.8.12 allows local users to gain privileges or cause a denial of service (use-a…

Fix: 3.2.85 / 3.10.106+
Fix from $1,950 2016-12-08
Linux Kernel MEDIUM 5.5
CVE-2016-7916

Race condition in the environ_read function in fs/proc/base.c in the Linux kernel before 4.5.4 allows local users to obtain sensitive information fro…

Fix: after 4.5.3
Fix from $1,600 2016-11-16
Linux Kernel HIGH 7.8
CVE-2016-7911

Race condition in the get_task_ioprio function in block/ioprio.c in the Linux kernel before 4.6.6 allows local users to gain privileges or cause a de…

Fix: 3.2.85 / 3.10.107+
Fix from $1,950 2016-11-16
Linux Kernel HIGH 7.0
CVE-2015-8963

Race condition in kernel/events/core.c in the Linux kernel before 4.4 allows local users to gain privileges or cause a denial of service (use-after-f…

Fix: 3.2.85 / 3.16.40+
Fix from $1,950 2016-11-16
Linux Kernel HIGH 7.0
CVE-2015-0572

Multiple race conditions in drivers/char/adsprpc.c and drivers/char/adsprpc_compat.c in the ADSPRPC driver for the Linux kernel 3.x, as used in Qualc…

Fix: after 3.19.8
Fix from $1,950 2016-10-10
Linux Kernel HIGH 7.4
CVE-2016-6516

Race condition in the ioctl_file_dedupe_range function in fs/ioctl.c in the Linux kernel through 4.7 allows local users to cause a denial of service …

Fix: after 4.7
Fix from $1,950 2016-08-06
Linux Kernel MEDIUM 5.1
CVE-2016-6480

Race condition in the ioctl_send_fib function in drivers/scsi/aacraid/commctrl.c in the Linux kernel through 4.7 allows local users to cause a denial…

Fix: after 4.7
Fix from $1,600 2016-08-06
Linux Kernel MEDIUM 5.1
CVE-2016-6156

Race condition in the ec_device_ioctl_xcmd function in drivers/platform/chrome/cros_ec_dev.c in the Linux kernel before 4.7 allows local users to cau…

Fix: after 4.6.6
Fix from $1,600 2016-08-06
Linux Kernel MEDIUM 5.1
CVE-2015-8839

Multiple race conditions in the ext4 filesystem implementation in the Linux kernel before 4.5 allow local users to cause a denial of service (disk co…

Fix: after 4.4.221
Fix from $1,600 2016-05-02