CVE-2021-29657 |
AVG-1767 |
Medium |
No |
Privilege escalation |
A security issue has been found in the Linux kernel before version 5.11.12. There is a race condition between check and use of the nested VMCB controls in KVM. |
CVE-2021-29650 |
AVG-1750 |
Low |
Yes |
Denial of service |
An issue was discovered in the Linux kernel before 5.11.11. The netfilter subsystem allows attackers to cause a denial of service (panic) because... |
CVE-2021-29649 |
AVG-1750 |
Medium |
No |
Information disclosure |
An issue was discovered in the Linux kernel before 5.11.11. The user mode driver (UMD) has a copy_process() memory leak, related to a lack of cleanup steps... |
CVE-2021-29647 |
AVG-1750 |
Medium |
Yes |
Information disclosure |
An issue was discovered in the Linux kernel before 5.11.11. qrtr_recvmsg in net/qrtr/qrtr.c allows attackers to obtain sensitive information from kernel... |
CVE-2021-29646 |
AVG-1750 |
Medium |
Yes |
Insufficient validation |
An issue was discovered in the Linux kernel before 5.11.11. tipc_nl_retrieve_key in net/tipc/node.c does not properly validate certain data sizes, aka... |
CVE-2021-29266 |
AVG-1719 |
Medium |
No |
Denial of service |
An issue was discovered in the Linux kernel before 5.11.9. drivers/vhost/vdpa.c has a use-after-free because v->config_ctx has an invalid value upon... |
CVE-2021-29265 |
AVG-1688 |
Low |
No |
Denial of service |
An issue was discovered in the Linux kernel before 5.11.7. usbip_sockfd_store in drivers/usb/usbip/stub_dev.c allows attackers to cause a denial of service... |
CVE-2021-29264 |
AVG-1750 |
Medium |
Yes |
Denial of service |
An issue was discovered in the Linux kernel through 5.11.10. drivers/net/ethernet/freescale/gianfar.c in the Freescale Gianfar Ethernet driver allows... |
CVE-2021-29154 |
AVG-1799 |
Medium |
No |
Privilege escalation |
An issue has been discovered in the Linux kernel up to version 5.11.12 that can be abused by unprivileged local users to escalate privileges. The issue is... |
CVE-2021-28972 |
AVG-1719 |
Medium |
No |
Arbitrary code execution |
In drivers/pci/hotplug/rpadlpar_sysfs.c in the Linux kernel through 5.11.8, the RPA PCI Hotplug driver has a user-tolerable buffer overflow when writing a... |
CVE-2021-28971 |
AVG-1719 |
Low |
No |
Denial of service |
In intel_pmu_drain_pebs_nhm in arch/x86/events/intel/ds.c in the Linux kernel through 5.11.8 on some Haswell CPUs, userspace applications (such as... |
CVE-2021-28964 |
AVG-1719 |
Low |
No |
Denial of service |
A race condition was discovered in get_old_root in fs/btrfs/ctree.c in the Linux kernel through 5.11.8. It allows attackers to cause a denial of service... |
CVE-2021-28952 |
AVG-1719 |
Medium |
No |
Arbitrary code execution |
An issue was discovered in the Linux kernel through 5.11.8. The sound/soc/qcom/sdm845.c soundwire device driver has a buffer overflow when an unexpected... |
CVE-2021-28951 |
AVG-1719 |
Low |
No |
Denial of service |
An issue was discovered in fs/io_uring.c in the Linux kernel through 5.11.8. It allows attackers to cause a denial of service (deadlock) because exit may be... |
CVE-2021-28950 |
AVG-1714 |
Low |
No |
Denial of service |
An issue was discovered in fs/fuse/fuse_i.h in the Linux kernel before 5.11.8. A "stall on CPU" can occur because a retry loop continually finds the same... |
CVE-2021-28688 |
AVG-1750 |
Low |
No |
Denial of service |
A security issue was found in the Linux kernel before version 5.11.11, as used by Xen. The fix for CVE-2021-26930, a.k.a. XSA-365, includes initialization... |
CVE-2021-28660 |
AVG-1688 |
High |
Yes |
Arbitrary code execution |
rtw_wx_set_scan in drivers/staging/rtl8188eu/os_dep/ioctl_linux.c in the Linux kernel through 5.11.6 allows writing beyond the end of the ->ssid[] array.... |
CVE-2021-28375 |
AVG-1688 |
Medium |
No |
Insufficient validation |
An issue was discovered in the Linux kernel through 5.11.6. fastrpc_internal_invoke in drivers/misc/fastrpc.c does not prevent user applications from... |
CVE-2021-28038 |
AVG-1655 |
Low |
No |
Denial of service |
An issue was discovered in the Linux kernel through 5.11.3, as used with Xen PV. A certain part of the netback driver lacks necessary treatment of errors... |
CVE-2021-27365 |
AVG-1655 |
Medium |
No |
Information disclosure |
An issue was discovered in the Linux kernel through 5.11.3. Certain iSCSI data structures do not have appropriate length constraints or checks, and can... |
CVE-2021-27364 |
AVG-1655 |
Medium |
No |
Insufficient validation |
An issue was discovered in the Linux kernel through 5.11.3. drivers/scsi/scsi_transport_iscsi.c is adversely affected by the ability of an unprivileged user... |
CVE-2021-27363 |
AVG-1655 |
Medium |
No |
Information disclosure |
An issue was discovered in the Linux kernel through 5.11.3. A kernel pointer leak can be used to determine the address of the iscsi_transport structure.... |
CVE-2021-26932 |
AVG-1615 |
Low |
No |
Denial of service |
An issue was discovered in the Linux kernel 3.2 up to 5.10.17, as used by Xen. Grant mapping operations often occur in batch hypercalls, where a number of... |
CVE-2021-26931 |
AVG-1615 |
Low |
No |
Denial of service |
An issue was discovered in the Linux kernel 2.6.39 up to 5.10.17, as used in Xen. Block, net, and SCSI backends consider certain errors a plain bug,... |
CVE-2021-26930 |
AVG-1615 |
Medium |
No |
Privilege escalation |
An issue was discovered in the Linux kernel 3.11 up to 5.10.17, as used by Xen. To service requests to the PV backend, the driver maps grant references... |
CVE-2021-20292 |
AVG-1727 |
Medium |
No |
Privilege escalation |
A security issue was found in the Linux kernel before version 5.9. The specific flaw exists within DRM memory management. The issue results from the lack of... |
CVE-2021-20194 |
AVG-1561 |
Medium |
No |
Privilege escalation |
There is a vulnerability in the Linux kernel versions higher than 5.2 and before version 5.11 (if the kernel is compiled with config params... |
CVE-2021-20177 |
AVG-1429 |
Low |
No |
Denial of service |
A flaw was found in the Linux kernels implementation of string matching within a packet. A privileged user ( with root or CAP_NET_ADMIN ) when inserting... |
CVE-2021-3483 |
AVG-1767 |
Medium |
No |
Arbitrary code execution |
A security issue has been found in the Linux kernel before version 5.11.12 in Linux/drivers/firewire/nosy.c. Nosy is an IEEE 1394 packet sniffer which is... |
CVE-2021-3428 |
AVG-1696 |
Medium |
No |
Denial of service |
A security issue was found in the Linux kernel before version 5.9. A denial of service problem is identified if an extent tree is corrupted in a crafted... |
CVE-2021-3348 |
AVG-1515 |
Medium |
No |
Arbitrary code execution |
nbd_add_socket in drivers/block/nbd.c in the Linux kernel through 5.10.12 has an ndb_queue_rq use-after-free that could be triggered by local attackers... |
CVE-2021-3347 |
AVG-1509 |
Medium |
No |
Arbitrary code execution |
An issue was discovered in the Linux kernel through 5.10.11. PI futexes have a kernel stack use-after-free during fault handling, allowing local users to... |
CVE-2021-3178 |
AVG-1469 |
Low |
Yes |
Directory traversal |
fs/nfsd/nfs3xdr.c in the Linux kernel before version 5.10.10 and 5.4.92, when there is an NFS export of a subdirectory of a filesystem, allows remote... |
CVE-2020-36158 |
AVG-1411 |
High |
Yes |
Arbitrary code execution |
mwifiex_cmd_802_11_ad_hoc_start in drivers/net/wireless/marvell/mwifiex/join.c in the Linux kernel might allow remote attackers to execute arbitrary code... |
CVE-2020-28374 |
AVG-1445 |
Medium |
No |
Directory traversal |
In drivers/target/target_core_xcopy.c in the Linux kernel before 5.10.7, insufficient identifier checking in the LIO SCSI target code can be used by remote... |
CVE-2020-27171 |
AVG-1714 |
Medium |
No |
Information disclosure |
A numeric error in the Linux kernel mechanism to mitigate speculatively out-of-bounds loads (Spectre mitigation) has been identified. Unprivileged BPF... |
CVE-2020-27170 |
AVG-1714 |
Medium |
No |
Information disclosure |
A gap in the Linux kernel mechanism to mitigate speculatively out-of- bounds loads (Spectre mitigation) has been identified. Unprivileged BPF programs... |
CVE-2020-25704 |
AVG-1271 |
Medium |
No |
Denial of service |
A memory leak has been found in the perf_event_parse_addr_filter function of Linux before 5.9.7, leading to a denial of service. |
CVE-2020-25639 |
AVG-1647 |
Low |
No |
Denial of service |
A NULL pointer dereference flaw was found in the Linux kernel's GPU Nouveau driver functionality in versions prior to versions 5.11.3 and 5.10.20 in the way... |
CVE-2020-24490 |
AVG-1250 |
Medium |
Yes |
Denial of service |
A heap buffer overflow flaw was found in the way the Linux kernel’s Bluetooth implementation processed extended advertising report events. This flaw allows... |
CVE-2020-16119 |
AVG-1247 |
High |
Yes |
Arbitrary code execution |
Hadar Manor reported that by reusing a DCCP socket with an attached dccps_hc_tx_ccid as a listener, in Linux <= 5.9, it will be used after being released,... |
CVE-2020-14386 |
AVG-1223 |
High |
No |
Privilege escalation |
A memory corruption flaw was found in the Linux kernel before 5.9-rc4 in net/packet/af_packet.c. A local attacker with CAP_NET_RAW privileges can exploit... |
CVE-2020-12352 |
AVG-1250 |
High |
Yes |
Information disclosure |
An information leak flaw was found in the way the Linux kernel's Bluetooth stack implementation handled initialization of stack memory when handling certain... |
CVE-2020-12351 |
AVG-1250 |
High |
Yes |
Privilege escalation |
A flaw was found in the way the Linux kernel Bluetooth implementation handled L2CAP packets with A2MP CID. A remote attacker in adjacent range could use... |
CVE-2020-8835 |
AVG-1121 |
High |
No |
Privilege escalation |
An out-of-bounds access flaw was found in the Linux kernel’s implementation of the eBPF code verifier, where an incorrect register bounds calculation while... |
CVE-2020-8694 |
AVG-1275 |
Medium |
No |
Information disclosure |
An information disclosure flaw was found in the Linux kernel's Intel Running Average Power Limit (RAPL) implementation. A local non- privileged attacker... |
CVE-2019-17666 |
AVG-1065 |
Critical |
Yes |
Arbitrary code execution |
rtl_p2p_noa_ie in drivers/net/wireless/realtek/rtlwifi/ps.c in the Linux kernel before 5.3.9, 4.19.82, 4.14.152, 4.9.199, 4.4.199 lacks a certain... |
CVE-2019-11479 |
AVG-984 |
Medium |
Yes |
Denial of service |
An excessive resource consumption flaw was found in the way the Linux kernel's networking subsystem processed TCP segments. If the Maximum Segment Size... |
CVE-2019-11478 |
AVG-984 |
High |
Yes |
Denial of service |
An excessive resource consumption flaw was found in the way the Linux kernel's networking subsystem processed TCP Selective Acknowledgment (SACK) segments.... |
CVE-2019-11477 |
AVG-984 |
High |
Yes |
Denial of service |
An integer overflow has been discovered in the Linux kernel when handling TCP Selective Acknowledgments (SACKs). A sequence of SACKs may be crafted such... |
CVE-2018-18445 |
AVG-801 |
Low |
No |
Denial of service |
In the Linux kernel 4.14.x before 4.14.75 and 4.18.x before 4.18.13, faulty computation of numeric bounds in the BPF verifier permits out- of-bounds memory... |
CVE-2018-8897 |
AVG-702 |
High |
No |
Denial of service |
A statement in the System Programming Guide of the Intel 64 and IA-32 Architectures Software Developer's Manual (SDM) was mishandled in the development of... |
CVE-2018-5391 |
AVG-767 |
High |
Yes |
Denial of service |
A flaw named FragmentSmack was found in the way the Linux kernel handled reassembly of fragmented IPv4 and IPv6 packets. A remote attacker could use this... |
CVE-2018-5390 |
AVG-748 |
High |
Yes |
Denial of service |
A flaw named SegmentSmack was found in the way the Linux kernel handled specially crafted TCP packets. A remote attacker could use this flaw to trigger time... |
CVE-2018-3646 |
AVG-758 |
High |
No |
Information disclosure |
Systems with microprocessors utilising speculative execution and address translations may allow unauthorised disclosure of information residing in the L1... |
CVE-2018-3620 |
AVG-758 |
High |
No |
Information disclosure |
Systems with microprocessors utilising speculative execution and address translations may allow unauthorised disclosure of information residing in the L1... |
CVE-2018-3615 |
AVG-758 |
High |
No |
Information disclosure |
Systems with microprocessors utilizing speculative execution and Intel software guard extensions (Intel SGX) may allow unauthorized disclosure of... |
CVE-2018-1121 |
AVG-702 |
Low |
No |
Content spoofing |
A security issue has been found in Linux <= 4.16.9, where an unprivileged attacker can hide a process from procps-ng's utilities by exploiting either a... |
CVE-2018-1120 |
AVG-702 |
Medium |
No |
Denial of service |
A denial of service has been found in Linux <= 4.16.9. An attacker can block any read() access to /proc/PID/cmdline by mmap()ing a FUSE file (Filesystem in... |
CVE-2017-1000407 |
AVG-565 |
Medium |
Yes |
Denial of service |
Linux kernel Virtualization Module (CONFIG_KVM) for the Intel processor family (CONFIG_KVM_INTEL) before 4.14.6, 4.9.69, 4.4.106, 3.18.88, 3.16.52 and... |
CVE-2017-1000379 |
AVG-991 |
Medium |
No |
Access restriction bypass |
The Linux Kernel running on AMD64 systems will sometimes map the contents of PIE executable, the heap or ld.so to where the stack is mapped allowing... |
CVE-2017-1000371 |
AVG-312 |
Medium |
No |
Access restriction bypass |
The offset2lib patch as used by the Linux Kernel contains a vulnerability, if RLIMIT_STACK is set to RLIM_INFINITY and 1 Gigabyte of memory is allocated... |
CVE-2017-1000370 |
AVG-312 |
Medium |
No |
Access restriction bypass |
The offset2lib patch as used in the Linux Kernel contains a vulnerability that allows a PIE binary to be execve()'ed with 1GB of arguments or environmental... |
CVE-2017-1000365 |
AVG-990 |
Medium |
No |
Insufficient validation |
The Linux Kernel imposes a size restriction on the arguments and environmental strings passed through RLIMIT_STACK/RLIM_INFINITY (1/4 of the size), but does... |
CVE-2017-1000364 |
AVG-325 |
High |
No |
Privilege escalation |
A flaw was found in the way memory was being allocated on the stack for user space binaries. If heap (or different memory region) and stack memory regions... |
CVE-2017-1000251 |
AVG-393 |
High |
Yes |
Arbitrary code execution |
A stack buffer overflow flaw was found in the way the Bluetooth subsystem of the Linux kernel processed pending L2CAP configuration responses from a client.... |
CVE-2017-17864 |
AVG-561 |
Medium |
No |
Information disclosure |
It has been discovered that kernel/bpf/verifier.c in the Linux kernel before 4.14.9 and 4.9.73 mishandles states_equal comparisons between the pointer data... |
CVE-2017-17863 |
AVG-561 |
Medium |
No |
Denial of service |
It has been discovered that kernel/bpf/verifier.c in the Linux kernel before 4.14.9 and 4.9.72 does not check the relationship between pointer values and... |
CVE-2017-17862 |
AVG-561 |
Medium |
No |
Denial of service |
It has been discovered that kernel/bpf/verifier.c in the Linux kernel before 4.14.9 and 4.9.72 ignore unreachable code, even though it would still be... |
CVE-2017-17857 |
AVG-560 |
Medium |
No |
Denial of service |
The check_stack_boundary function in kernel/bpf/verifier.c in the Linux kernel before 4.14.9 allows local users to cause a denial of service (memory... |
CVE-2017-17856 |
AVG-560 |
Medium |
No |
Denial of service |
It has been discovered that kernel/bpf/verifier.c in the Linux kernel before 4.14.9 allows local users to cause a denial of service (memory corruption) or... |
CVE-2017-17855 |
AVG-560 |
Medium |
No |
Denial of service |
It has been discovered that kernel/bpf/verifier.c in the Linux kernel before 4.14.9 allows local users to cause a denial of service (memory corruption) or... |
CVE-2017-17854 |
AVG-560 |
Medium |
No |
Denial of service |
It has been discovered that kernel/bpf/verifier.c in the Linux kernel before 4.14.9 allows local users to cause a denial of service (integer overflow and... |
CVE-2017-17853 |
AVG-560 |
Medium |
No |
Denial of service |
It has been discovered kernel/bpf/verifier.c in the Linux kernel before 4.14.9 allows local users to cause a denial of service (memory corruption) or... |
CVE-2017-17852 |
AVG-560 |
Medium |
No |
Denial of service |
It has been discovered that kernel/bpf/verifier.c in the Linux kernel before 4.14.9 allows local users to cause a denial of service (memory corruption) or... |
CVE-2017-17807 |
AVG-565 |
Low |
No |
Access restriction bypass |
The KEYS subsystem in the Linux kernel before 4.14.6, 4.9.69, 4.4.107, 3.18.88, 3.16.52 and 3.2.97 omitted an access-control check when adding a key to the... |
CVE-2017-17806 |
AVG-561 |
Medium |
No |
Denial of service |
The HMAC implementation (crypto/hmac.c) in the Linux kernel before 4.14.8, 4.9.71, 4.4.107, 3.18.89, 3.16.52 and 3.2.97 does not validate that the... |
CVE-2017-17805 |
AVG-561 |
Medium |
No |
Denial of service |
The Salsa20 encryption algorithm in the Linux kernel before 4.14.8, 4.9.71, 4.4.107, 3.18.89, 3.16.52 and 3.2.97 does not correctly handle zero-length... |
CVE-2017-17741 |
AVG-992 |
Medium |
No |
Information disclosure |
The KVM implementation in the Linux kernel through 4.14.7 allows attackers to obtain potentially sensitive information from kernel memory, aka a write_mmio... |
CVE-2017-17712 |
AVG-561 |
High |
No |
Privilege escalation |
A flaw was found in the Linux kernel's implementation of raw_sendmsg before 4.14.11, 4.4.109 and 4.9.74 allowing a local attacker to panic the kernel or... |
CVE-2017-17558 |
AVG-561 |
High |
No |
Denial of service |
The usb_destroy_configuration function in drivers/usb/core/config.c in the USB core subsystem in the Linux kernel before 4.14.8, 4.9.71, 4.4.107, 3.18.89,... |
CVE-2017-17450 |
AVG-993 |
High |
No |
Access restriction bypass |
It has been discovered that net/netfilter/xt_osf.c in the Linux kernel through 4.14.4 does not require the CAP_NET_ADMIN capability for add_callback and... |
CVE-2017-17449 |
AVG-561 |
Medium |
No |
Information disclosure |
The __netlink_deliver_tap_skb function in net/netlink/af_netlink.c in the Linux kernel before 4.14.11, 4.9.74, 4.4.109, 3.18.91 and 3.16.52 when... |
CVE-2017-17448 |
AVG-993 |
High |
No |
Access restriction bypass |
It has been discovered that net/netfilter/nfnetlink_cthelper.c in the Linux kernel through 4.14.4 does not require the CAP_NET_ADMIN capability for new,... |
CVE-2017-16996 |
AVG-560 |
High |
No |
Privilege escalation |
An arbitrary memory r/w access issue was found in the Linux kernel before 4.14.9 compiled with the eBPF bpf(2) system call (CONFIG_BPF_SYSCALL) support. The... |
CVE-2017-16995 |
AVG-561 |
High |
No |
Privilege escalation |
An arbitrary memory r/w access issue was found in the Linux kernel before 4.14.9, 4.9.72 compiled with the eBPF bpf(2) system call (CONFIG_BPF_SYSCALL)... |
CVE-2017-16650 |
AVG-570 |
Medium |
No |
Denial of service |
The qmi_wwan_bind function in drivers/net/usb/qmi_wwan.c in the Linux kernel through 4.13.11 allows local users to cause a denial of service (divide-by-zero... |
CVE-2017-16649 |
AVG-570 |
Medium |
No |
Denial of service |
The usbnet_generic_cdc_bind function in drivers/net/usb/cdc_ether.c in the Linux kernel through 4.13.11 allows local users to cause a denial of service... |
CVE-2017-16648 |
AVG-570 |
High |
No |
Privilege escalation |
The dvb_frontend_free function in drivers/media/dvb- core/dvb_frontend.c in the Linux kernel through 4.13.11 allows local users to cause a denial of service... |
CVE-2017-16647 |
AVG-570 |
Medium |
No |
Denial of service |
drivers/net/usb/asix_devices.c in the Linux kernel through 4.13.11 allows local users to cause a denial of service (NULL pointer dereference and system... |
CVE-2017-16646 |
AVG-570 |
Medium |
No |
Denial of service |
drivers/media/usb/dvb-usb/dib0700_devices.c in the Linux kernel through 4.13.11 allows local users to cause a denial of service (BUG and system crash) or... |
CVE-2017-16645 |
AVG-570 |
Medium |
No |
Denial of service |
The ims_pcu_get_cdc_union_desc function in drivers/input/misc/ims- pcu.c in the Linux kernel through 4.13.11 allows local users to cause a denial of service... |
CVE-2017-16644 |
AVG-566 |
Medium |
No |
Denial of service |
The hdpvr_probe function in drivers/media/usb/hdpvr/hdpvr-core.c in the Linux kernel through 4.13.11 allows local users to cause a denial of service... |
CVE-2017-16643 |
AVG-570 |
Medium |
No |
Denial of service |
The parse_hid_report_descriptor function in drivers/input/tablet/gtco.c in the Linux kernel before 4.13.11 allows local users to cause a denial of service... |
CVE-2017-15265 |
AVG-510 |
High |
No |
Privilege escalation |
Race condition in the ALSA subsystem in the Linux kernel before 4.13.8 allows local users to cause a denial of service (use-after-free) or possibly have... |
CVE-2017-14954 |
AVG-431 |
Medium |
No |
Information disclosure |
The waitid implementation in kernel/exit.c in the Linux kernel through 4.13.4 accesses rusage data structures in unintended cases, which allows local users... |
CVE-2017-9986 |
AVG-556 |
Medium |
No |
Denial of service |
The intr function in sound/oss/msnd_pinnacle.c in the Linux kernel before 4.13, 4.9.50, 4.4.99 and 4.1.45 allows local users to cause a denial of service... |
CVE-2017-9985 |
AVG-556 |
Medium |
No |
Denial of service |
The snd_msndmidi_input_read function in sound/isa/msnd/msnd_midi.c in the Linux kernel before 4.13, 4.9.50, 4.4.99 and 4.1.45 allows local users to cause a... |
CVE-2017-9984 |
AVG-556 |
Medium |
No |
Denial of service |
The snd_msnd_interrupt function in sound/isa/msnd/msnd_pinnacle.c in the Linux kernel before 4.13, 4.9.50, 4.4.99 and 4.1.45 allows local users to cause a... |
CVE-2017-8824 |
AVG-566 |
High |
No |
Privilege escalation |
A use-after-free vulnerability was found in DCCP socket code affecting the Linux kernel since 2.6.16. The dccp_disconnect function in net/dccp/proto.c... |
CVE-2017-7184 |
AVG-230 |
Medium |
No |
Privilege escalation |
A local privilege escalation vulnerability has been found in the Linux kernel. Chaitin Security Research Lab discovered that xfrm_replay_verify_len(), as... |
CVE-2017-6074 |
AVG-189 |
High |
No |
Privilege escalation |
A use-after-free vulnerability has been discovered in the DCCP implementation in the Linux kernel. The dccp_rcv_state_process function in net/dccp/input.c... |
CVE-2017-6001 |
AVG-188 |
High |
No |
Privilege escalation |
Race condition in kernel/events/core.c in the Linux kernel before 4.9.7 allows local users to gain privileges via a crafted application that makes... |
CVE-2017-5986 |
AVG-188 |
Medium |
No |
Denial of service |
It was reported that with Linux kernel, earlier than version v4.10-rc8, an application may trigger a BUG_ON in sctp_wait_for_sndbuf if the socket tx buffer... |
CVE-2017-5754 |
AVG-577 |
High |
No |
Access restriction bypass |
An industry-wide issue was found in the way many modern microprocessor designs have implemented speculative execution of instructions (a commonly used... |
CVE-2017-5753 |
AVG-559 |
High |
Yes |
Access restriction bypass |
An industry-wide issue was found in the way many modern microprocessor designs have implemented speculative execution of instructions (a commonly used... |
CVE-2017-5715 |
AVG-559 |
High |
No |
Access restriction bypass |
An industry-wide issue was found in the way many modern microprocessor designs have implemented speculative execution of instructions (a commonly used... |
CVE-2017-5123 |
AVG-455 |
High |
No |
Privilege escalation |
It was discovered that when the waitid() syscall in Linux kernel v4.13 was refactored, it accidentally stopped checking that the incoming argument was... |
CVE-2017-2636 |
AVG-200 |
High |
No |
Privilege escalation |
A race condition flaw was found in the N_HLDC Linux kernel driver when accessing the n_hdlc.tbuf list that can lead to double free. A local, unprivileged... |
CVE-2017-2583 |
AVG-150 |
Medium |
No |
Privilege escalation |
The Linux kernel > 3.6-rc1, when built with Kernel-based Virtual Machine (CONFIG_KVM) support, is vulnerable to an incorrect segment selector (SS) value... |
CVE-2016-10088 |
AVG-190 |
High |
No |
Privilege escalation |
The sg implementation in the Linux kernel through 4.9 does not properly restrict write operations in situations where the KERNEL_DS option is set, which... |
CVE-2016-9919 |
AVG-104 |
High |
Yes |
Denial of service |
The icmp6_send function in net/ipv6/icmp.c in the Linux kernel through 4.8.12 omits a certain check of the dst data structure, which allows remote attackers... |
CVE-2016-9588 |
AVG-190 |
Medium |
No |
Denial of service |
Linux kernel built with the KVM visualization support (CONFIG_KVM), with nested visualization(nVMX) feature enabled(nested=1), is vulnerable to an uncaught... |
CVE-2016-8655 |
AVG-96 |
High |
No |
Privilege escalation |
A race condition issue leading to a use-after-free flaw was found in the way the raw packet sockets implementation in the Linux kernel networking subsystem... |
CVE-2016-5195 |
AVG-50 |
High |
No |
Privilege escalation |
A race condition was found in the way the Linux kernel's memory subsystem handled the copy-on-write (COW) breakage of private read- only memory mappings. An... |