Vulnerability index

Browse CVEs

602 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Linux Kernel HIGH 7.8
CVE-2019-19378

In the Linux kernel 5.0.21, mounting a crafted btrfs filesystem image can lead to slab-out-of-bounds write access in index_rbio_pages in fs/btrfs/rai…

No fix yet
Fix from $1,950 2019-11-29
Linux Kernel CRITICAL 9.8
CVE-2019-14901EPSS 17%

A heap overflow flaw was found in the Linux kernel, all versions 3.x.x and 4.x.x before 4.18.0, in Marvell WiFi chip driver. The vulnerability allows…

Fix: 3.16.83 / 4.4.217+
Fix from $2,300 2019-11-29
Linux Kernel CRITICAL 9.8
CVE-2019-14897

A stack-based buffer overflow was found in the Linux kernel, version kernel-2.6.32, in Marvell WiFi chip driver. An attacker is able to cause a denia…

Fix: 3.16.83 / 4.4.212+
Fix from $2,300 2019-11-29
Linux Kernel CRITICAL 9.8
CVE-2019-14895EPSS 8%

A heap-based buffer overflow was discovered in the Linux kernel, all versions 3.x.x and 4.x.x before 4.18.0, in Marvell WiFi chip driver. The flaw co…

Fix: 3.16.81 / 4.4.210+
Fix from $2,300 2019-11-29
Linux Kernel MEDIUM 6.5
CVE-2019-19319

In the Linux kernel before 5.2, a setxattr operation, after a mount of a crafted ext4 image, can cause a slab-out-of-bounds write access because of a…

Patch available
Fix from $1,600 2019-11-27
Linux Kernel CRITICAL 9.8
CVE-2019-14896EPSS 9%

A heap-based buffer overflow vulnerability was found in the Linux kernel, version kernel-2.6.32, in Marvell WiFi chip driver. A remote attacker could…

Fix: 3.16.83 / 4.4.212+
Fix from $2,300 2019-11-27
Linux Kernel HIGH 7.8
CVE-2019-14815

A vulnerability was found in Linux Kernel, where a Heap Overflow was found in mwifiex_set_wmm_params() function of Marvell Wifi Driver.

Fix: 4.14.146 / 4.19.75+
Fix from $1,950 2019-11-25
Linux Kernel HIGH 7.8
CVE-2019-14814

There is heap-based buffer overflow in Linux kernel, all versions up to, excluding 5.3, in the marvell wifi chip driver in Linux kernel, that allows …

Fix: 3.16.74 / 4.4.194+
Fix from $1,950 2019-09-20
Linux Kernel HIGH 7.8
CVE-2019-14816

There is heap-based buffer overflow in kernel, all versions up to, excluding 5.3, in the marvell wifi chip driver in Linux kernel, that allows local …

Fix: 3.16.74 / 4.4.194+
Fix from $1,950 2019-09-20
Linux Kernel HIGH 8.8
CVE-2019-14821

An out-of-bounds access issue was found in the Linux kernel, all versions through 5.3, in the way Linux kernel's KVM hypervisor implements the Coales…

Fix: 3.16.74 / 4.4.194+
Fix from $1,950 2019-09-19
Linux Kernel HIGH 7.8
CVE-2017-18552

An issue was discovered in net/rds/af_rds.c in the Linux kernel before 4.11. There is an out of bounds write and read in the function rds_recv_track_…

Fix: 4.11+
Fix from $1,950 2019-08-19
Linux Kernel MEDIUM 6.7
CVE-2017-18551

An issue was discovered in drivers/i2c/i2c-core-smbus.c in the Linux kernel before 4.14.15. There is an out of bounds write in the function i2c_smbus…

Fix: 4.14.15+
Fix from $1,600 2019-08-19
Linux Kernel HIGH 7.8
CVE-2016-10907

An issue was discovered in drivers/iio/dac/ad5755.c in the Linux kernel before 4.8.6. There is an out of bounds write in the function ad5755_parse_dt.

Fix: 4.8.6+
Fix from $1,950 2019-08-19
Linux Kernel MEDIUM 6.8
CVE-2019-13631

In parse_hid_report_descriptor in drivers/input/tablet/gtco.c in the Linux kernel through 5.2.1, a malicious USB device can send an HID report that t…

Fix: after 5.2.1
Fix from $1,600 2019-07-17
Linux Kernel CRITICAL 9.8
CVE-2019-10126EPSS 7%

A flaw was found in the Linux kernel. A heap based buffer overflow in mwifiex_uap_parse_tail_ies function in drivers/net/wireless/marvell/mwifiex/ie.…

Fix: 4.4.186 / 4.9.186+
Fix from $2,300 2019-06-14
Linux Kernel HIGH 8.8
CVE-2019-3846EPSS 6%

A flaw that allowed an attacker to corrupt memory and possibly escalate privileges was found in the mwifiex kernel module while connecting to a malic…

Fix: 3.16.70 / 4.4.186+
Fix from $1,950 2019-06-03
Linux Kernel CRITICAL 9.8
CVE-2019-11683EPSS 7%

udp_gro_receive_segment in net/ipv4/udp_offload.c in the Linux kernel 5.x before 5.0.13 allows remote attackers to cause a denial of service (slab-ou…

Fix: 5.0.13+
Fix from $2,300 2019-05-02
Linux Kernel HIGH 7.8
CVE-2019-8956

In the Linux Kernel before versions 4.20.8 and 4.19.21 a use-after-free error in the "sctp_sendmsg()" function (net/sctp/socket.c) when handling SCTP…

Fix: 4.19.21 / 4.20.8+
Fix from $1,950 2019-04-01
Linux Kernel HIGH 7.8
CVE-2019-9162

In the Linux kernel before 4.20.12, net/ipv4/netfilter/nf_nat_snmp_basic_main.c in the SNMP NAT module has insufficient ASN.1 length checks (aka an a…

Fix: 4.19.25 / 4.20.12+
Fix from $1,950 2019-02-25
Linux Kernel HIGH 7.0
CVE-2018-16880

A flaw was found in the Linux kernel's handle_rx() function in the [vhost_net] driver. A malicious virtual guest, under specific conditions, can trig…

Fix: 4.19.20 / 4.20.7+
Fix from $1,950 2019-01-29
Linux Kernel HIGH 7.0
CVE-2018-14633EPSS 9%

A security flaw was found in the chap_server_compute_md5() function in the ISCSI target code in the Linux kernel in a way an authentication request f…

Fix: 3.16.59 / 3.18.124+
Fix from $1,950 2018-09-25
Linux Kernel HIGH 7.8
CVE-2018-16276

An issue was discovered in yurex_read in drivers/usb/misc/yurex.c in the Linux kernel before 4.17.7. Local attackers could use user access read/write…

Fix: 3.16.58 / 3.18.116+
Fix from $1,950 2018-08-31
Linux Kernel MEDIUM 5.5
CVE-2018-10882

A flaw was found in the Linux kernel's ext4 filesystem. A local user can cause an out-of-bound write in in fs/jbd2/transaction.c code, a denial of se…

Patch available
Fix from $1,600 2018-07-27
Linux Kernel MEDIUM 5.5
CVE-2018-14610

An issue was discovered in the Linux kernel through 4.17.10. There is out-of-bounds access in write_extent_buffer() when mounting and operating a cra…

Fix: after 4.17.10
Fix from $1,600 2018-07-27
Linux Kernel MEDIUM 6.6
CVE-2018-10840

Linux kernel is vulnerable to a heap-based buffer overflow in the fs/ext4/xattr.c:ext4_xattr_set_entry() function. An attacker could exploit this by …

Patch available
Fix from $1,600 2018-07-16
Linux Kernel MEDIUM 5.5
CVE-2018-13095

An issue was discovered in fs/xfs/libxfs/xfs_inode_buf.c in the Linux kernel through 4.17.3. A denial of service (memory corruption and BUG) can occu…

Fix: after 4.17.3
Fix from $1,600 2018-07-03
Linux Kernel MEDIUM 5.5
CVE-2018-13096

An issue was discovered in fs/f2fs/super.c in the Linux kernel through 4.14. A denial of service (out-of-bounds memory access and BUG) can occur upon…

Fix: after 4.14
Fix from $1,600 2018-07-03
Linux Kernel HIGH 7.8
CVE-2018-12930

ntfs_end_buffer_async_read in the ntfs.ko filesystem driver in the Linux kernel 4.15.0 allows attackers to trigger a stack-based out-of-bounds write …

Mitigation only
Fix from $1,950 2018-06-28
Linux Kernel CRITICAL 9.8
CVE-2018-12714EPSS 5%

An issue was discovered in the Linux kernel through 4.17.2. The filter parsing in kernel/trace/trace_events_filter.c could be called with no filter, …

Fix: 4.17.4+
Fix from $2,300 2018-06-24
Linux Kernel HIGH 7.8
CVE-2018-11506

The sr_do_ioctl function in drivers/scsi/sr_ioctl.c in the Linux kernel through 4.16.12 allows local users to cause a denial of service (stack-based …

Fix: 4.14.45 / 4.16.13+
Fix from $1,950 2018-05-28