Search CVE reports


Toggle filters

11 – 20 of 1315 results


CVE-2014-8181

Low priority
Ignored

The kernel in Red Hat Enterprise Linux 7 and MRG-2 does not clear garbage data for SG_IO buffer, which may leaking sensitive information to userspace.

27 affected packages

linux, linux-armadaxp, linux-aws, linux-flo, linux-gke...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux
linux-armadaxp
linux-aws
linux-flo
linux-gke
linux-goldfish
linux-grouper
linux-hwe
linux-hwe-edge
linux-linaro-omap
linux-linaro-shared
linux-linaro-vexpress
linux-lts-quantal
linux-lts-raring
linux-lts-saucy
linux-lts-trusty
linux-lts-utopic
linux-lts-vivid
linux-lts-wily
linux-lts-xenial
linux-maguro
linux-mako
linux-manta
linux-qcm-msm
linux-raspi2
linux-snapdragon
linux-ti-omap4
Show all 27 packages Show less packages

CVE-2017-2634

Medium priority
Ignored

It was found that the Linux kernel's Datagram Congestion Control Protocol (DCCP) implementation before 2.6.22.17 used the IPv4-only inet_sk_rebuild_header() function for both IPv4 and IPv6 DCCP connections, which could result in...

27 affected packages

linux, linux-armadaxp, linux-aws, linux-flo, linux-gke...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux
linux-armadaxp
linux-aws
linux-flo
linux-gke
linux-goldfish
linux-grouper
linux-hwe
linux-hwe-edge
linux-linaro-omap
linux-linaro-shared
linux-linaro-vexpress
linux-lts-quantal
linux-lts-raring
linux-lts-saucy
linux-lts-trusty
linux-lts-utopic
linux-lts-vivid
linux-lts-wily
linux-lts-xenial
linux-maguro
linux-mako
linux-manta
linux-qcm-msm
linux-raspi2
linux-snapdragon
linux-ti-omap4
Show all 27 packages Show less packages

CVE-2015-9016

Medium priority
Fixed

In blk_mq_tag_to_rq in blk-mq.c in the upstream kernel, there is a possible use after free due to a race condition when a request has been previously freed by blk_mq_complete_request. This could lead to local escalation...

32 affected packages

linux, linux-armadaxp, linux-aws, linux-azure, linux-euclid...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux Not affected
linux-armadaxp Not in release
linux-aws Not affected
linux-azure Not affected
linux-euclid Not in release
linux-flo Not in release
linux-gcp Not affected
linux-gke Not in release
linux-goldfish Not in release
linux-grouper Not in release
linux-hwe Not affected
linux-hwe-edge Fixed
linux-kvm Not affected
linux-linaro-omap Not in release
linux-linaro-shared Not in release
linux-linaro-vexpress Not in release
linux-lts-quantal Not in release
linux-lts-raring Not in release
linux-lts-saucy Not in release
linux-lts-trusty Not in release
linux-lts-utopic Not in release
linux-lts-vivid Not in release
linux-lts-wily Not in release
linux-lts-xenial Not in release
linux-maguro Not in release
linux-mako Not in release
linux-manta Not in release
linux-oem Not affected
linux-qcm-msm Not in release
linux-raspi2 Not affected
linux-snapdragon Not affected
linux-ti-omap4 Not in release
Show all 32 packages Show less packages

CVE-2017-18224

Medium priority

Some fixes available 4 of 6

In the Linux kernel before 4.15, fs/ocfs2/aops.c omits use of a semaphore and consequently has a race condition for access to the extent tree during read operations in DIRECT mode, which allows local users to cause a denial of...

33 affected packages

linux, linux-armadaxp, linux-goldfish, linux-grouper, linux-linaro-omap...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux Not affected
linux-armadaxp Not in release
linux-goldfish Not in release
linux-grouper Not in release
linux-linaro-omap Not in release
linux-linaro-shared Not in release
linux-aws Not affected
linux-azure Not affected
linux-azure-edge Not affected
linux-euclid Not in release
linux-flo Not in release
linux-gcp Not affected
linux-gke Not in release
linux-hwe Not affected
linux-hwe-edge Not affected
linux-kvm Not affected
linux-lts-utopic Not in release
linux-lts-vivid Not in release
linux-lts-wily Not in release
linux-lts-xenial Not in release
linux-manta Not in release
linux-oem Not affected
linux-raspi2 Not affected
linux-snapdragon Not affected
linux-linaro-vexpress Not in release
linux-lts-quantal Not in release
linux-lts-raring Not in release
linux-lts-saucy Not in release
linux-lts-trusty Not in release
linux-maguro Not in release
linux-mako Not in release
linux-qcm-msm Not in release
linux-ti-omap4 Not in release
Show all 33 packages Show less packages

CVE-2017-6280

Medium priority
Fixed

NVIDIA driver contains a possible out-of-bounds read vulnerability due to a leak which may lead to information disclosure. This issue is rated as moderate. Android: A-63851980.

32 affected packages

linux, linux-armadaxp, linux-linaro-omap, linux-linaro-shared, linux-linaro-vexpress...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux Not affected
linux-armadaxp Not in release
linux-linaro-omap Not in release
linux-linaro-shared Not in release
linux-linaro-vexpress Not in release
linux-lts-quantal Not in release
linux-lts-raring Not in release
linux-aws Not affected
linux-azure Not affected
linux-euclid Not in release
linux-flo Not in release
linux-gcp Not affected
linux-gke Not in release
linux-goldfish Not in release
linux-grouper Not in release
linux-hwe Not affected
linux-hwe-edge Fixed
linux-kvm Not affected
linux-lts-saucy Not in release
linux-lts-trusty Not in release
linux-lts-utopic Not in release
linux-lts-vivid Not in release
linux-lts-wily Not in release
linux-lts-xenial Not in release
linux-maguro Not in release
linux-mako Not in release
linux-manta Not in release
linux-oem Not affected
linux-qcm-msm Not in release
linux-raspi2 Not affected
linux-snapdragon Not affected
linux-ti-omap4 Not in release
Show all 32 packages Show less packages

CVE-2017-18218

Medium priority
Fixed

In drivers/net/ethernet/hisilicon/hns/hns_enet.c in the Linux kernel before 4.13, local users can cause a denial of service (use-after-free and BUG) or possibly have unspecified other impact by leveraging differences in...

32 affected packages

linux-azure, linux-euclid, linux-gcp, linux-gke, linux-kvm...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux-azure
linux-euclid
linux-gcp
linux-gke
linux-kvm
linux-oem
linux-flo
linux
linux-armadaxp
linux-aws
linux-goldfish
linux-grouper
linux-hwe
linux-hwe-edge
linux-linaro-omap
linux-linaro-shared
linux-linaro-vexpress
linux-lts-quantal
linux-lts-raring
linux-lts-saucy
linux-lts-trusty
linux-lts-utopic
linux-lts-vivid
linux-lts-wily
linux-lts-xenial
linux-maguro
linux-mako
linux-manta
linux-qcm-msm
linux-raspi2
linux-snapdragon
linux-ti-omap4
Show all 32 packages Show less packages

CVE-2017-18202

Medium priority

Some fixes available 4 of 6

The __oom_reap_task_mm function in mm/oom_kill.c in the Linux kernel before 4.14.4 mishandles gather operations, which allows attackers to cause a denial of service (TLB entry leak or use-after-free) or possibly have unspecified...

33 affected packages

linux, linux-armadaxp, linux-goldfish, linux-grouper, linux-aws...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux Not affected
linux-armadaxp Not in release
linux-goldfish Not in release
linux-grouper Not in release
linux-aws Not affected
linux-azure Not affected
linux-azure-edge Not affected
linux-euclid Not in release
linux-ti-omap4 Not in release
linux-linaro-omap Not in release
linux-linaro-shared Not in release
linux-linaro-vexpress Not in release
linux-qcm-msm Not in release
linux-lts-quantal Not in release
linux-lts-raring Not in release
linux-lts-saucy Not in release
linux-lts-trusty Not in release
linux-maguro Not in release
linux-mako Not in release
linux-manta Not in release
linux-flo Not in release
linux-raspi2 Not affected
linux-lts-utopic Not in release
linux-lts-vivid Not in release
linux-lts-wily Not in release
linux-lts-xenial Not in release
linux-snapdragon Not affected
linux-hwe Not affected
linux-hwe-edge Not affected
linux-gcp Not affected
linux-gke Not in release
linux-kvm Not affected
linux-oem Not affected
Show all 33 packages Show less packages

CVE-2017-18200

Medium priority
Not affected

The f2fs implementation in the Linux kernel before 4.14 mishandles reference counts associated with f2fs_wait_discard_bios calls, which allows local users to cause a denial of service (BUG), as demonstrated by fstrim.

32 affected packages

linux-gcp, linux-gke, linux-goldfish, linux-grouper, linux-hwe...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux-gcp
linux-gke
linux-goldfish
linux-grouper
linux-hwe
linux-hwe-edge
linux-kvm
linux-linaro-omap
linux-linaro-shared
linux-linaro-vexpress
linux-lts-quantal
linux-lts-raring
linux-lts-saucy
linux-flo
linux-armadaxp
linux-aws
linux-azure
linux-euclid
linux-lts-trusty
linux-lts-utopic
linux-lts-vivid
linux-lts-wily
linux-lts-xenial
linux-maguro
linux-mako
linux-manta
linux-oem
linux-qcm-msm
linux-raspi2
linux-snapdragon
linux-ti-omap4
linux
Show all 32 packages Show less packages

CVE-2018-7273

Negligible priority

Some fixes available 5 of 14

In the Linux kernel through 4.15.4, the floppy driver reveals the addresses of kernel functions and global variables using printk calls within the function show_floppy in drivers/block/floppy.c. An attacker can read...

64 affected packages

linux-ti-omap4, linux-armadaxp, linux, linux-riscv, linux-raspi...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux-ti-omap4 Not in release Not in release
linux-armadaxp Not in release Not in release
linux Not affected Not affected
linux-riscv Not affected Not in release
linux-raspi Not affected Not in release
linux-gke-5.4 Not in release Not affected
linux-hwe-5.8 Not affected Not in release
linux-gkeop-5.4 Not in release Not affected
linux-azure Not affected Not affected
linux-aws Not affected Not affected
linux-dell300x Not in release Not affected
linux-gkeop Not affected Not in release
linux-oem-5.10 Not affected Not in release
linux-hwe-5.4 Not in release Not affected
linux-raspi-5.4 Not in release Not affected
linux-linaro-omap Not in release Not in release
linux-linaro-shared Not in release Not in release
linux-flo Not in release Not in release
linux-aws-5.4 Not in release Not affected
linux-aws-5.0 Not in release Not affected
linux-aws-5.3 Not in release Not affected
linux-aws-hwe Not in release Not in release
linux-azure-4.15 Not in release Not affected
linux-azure-5.3 Not in release Not affected
linux-azure-5.4 Not in release Not affected
linux-azure-edge Not in release Not affected
linux-euclid Not in release Not in release
linux-gcp Not affected Not affected
linux-gcp-4.15 Not in release Not affected
linux-gcp-5.3 Not in release Not affected
linux-gcp-5.4 Not in release Not affected
linux-gcp-edge Not in release Not affected
linux-gke Not affected Not in release
linux-gke-4.15 Not in release Not affected
linux-gke-5.0 Not in release Not affected
linux-gke-5.3 Not in release Not affected
linux-goldfish Not in release Not in release
linux-grouper Not in release Not in release
linux-hwe Not in release Not affected
linux-hwe-edge Not in release Not affected
linux-kvm Not affected Not affected
linux-linaro-vexpress Not in release Not in release
linux-lts-quantal Not in release Not in release
linux-lts-raring Not in release Not in release
linux-lts-saucy Not in release Not in release
linux-lts-trusty Not in release Not in release
linux-lts-utopic Not in release Not in release
linux-lts-vivid Not in release Not in release
linux-lts-wily Not in release Not in release
linux-lts-xenial Not in release Not in release
linux-maguro Not in release Not in release
linux-mako Not in release Not in release
linux-manta Not in release Not in release
linux-oem Not in release Not affected
linux-oem-5.6 Not affected Not in release
linux-oem-osp1 Not in release Not affected
linux-oracle Not affected Not affected
linux-oracle-5.0 Not in release Not affected
linux-oracle-5.3 Not in release Not affected
linux-oracle-5.4 Not in release Not affected
linux-qcm-msm Not in release Not in release
linux-raspi2 Ignored Not affected
linux-raspi2-5.3 Not in release Not affected
linux-snapdragon Not in release Fixed
Show all 64 packages Show less packages

CVE-2018-1000028

Medium priority
Not affected

Linux kernel version after commit bdcf0a423ea1 - 4.15-rc4+, 4.14.8+, 4.9.76+, 4.4.111+ contains a Incorrect Access Control vulnerability in NFS server (nfsd) that can result in remote users reading or writing files they should not...

32 affected packages

linux, linux-armadaxp, linux-aws, linux-azure, linux-euclid...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux
linux-armadaxp
linux-aws
linux-azure
linux-euclid
linux-flo
linux-gcp
linux-gke
linux-goldfish
linux-grouper
linux-hwe
linux-hwe-edge
linux-kvm
linux-linaro-omap
linux-linaro-shared
linux-linaro-vexpress
linux-lts-quantal
linux-lts-raring
linux-lts-saucy
linux-lts-trusty
linux-lts-utopic
linux-lts-vivid
linux-lts-wily
linux-lts-xenial
linux-maguro
linux-mako
linux-manta
linux-oem
linux-qcm-msm
linux-raspi2
linux-snapdragon
linux-ti-omap4
Show all 32 packages Show less packages