Search CVE reports


Toggle filters

31 – 40 of 1060 results


CVE-2017-17853

Medium priority
Ignored

kernel/bpf/verifier.c in the Linux kernel through 4.14.8 allows local users to cause a denial of service (memory corruption) or possibly have unspecified other impact by leveraging incorrect BPF_RSH signed bounds calculations.

32 affected packages

linux, linux-armadaxp, linux-aws, linux-azure, linux-euclid...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux
linux-armadaxp
linux-aws
linux-azure
linux-euclid
linux-flo
linux-gcp
linux-gke
linux-goldfish
linux-grouper
linux-hwe
linux-hwe-edge
linux-kvm
linux-linaro-omap
linux-linaro-shared
linux-linaro-vexpress
linux-lts-quantal
linux-lts-raring
linux-lts-saucy
linux-lts-trusty
linux-lts-utopic
linux-lts-vivid
linux-lts-wily
linux-lts-xenial
linux-maguro
linux-mako
linux-manta
linux-oem
linux-qcm-msm
linux-raspi2
linux-snapdragon
linux-ti-omap4
Show all 32 packages Show less packages

CVE-2017-17852

Medium priority
Ignored

kernel/bpf/verifier.c in the Linux kernel through 4.14.8 allows local users to cause a denial of service (memory corruption) or possibly have unspecified other impact by leveraging mishandling of 32-bit ALU ops.

32 affected packages

linux-aws, linux-azure, linux-euclid, linux-gcp, linux-gke...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux-aws
linux-azure
linux-euclid
linux-gcp
linux-gke
linux-hwe
linux-hwe-edge
linux-kvm
linux-oem
linux
linux-armadaxp
linux-flo
linux-goldfish
linux-grouper
linux-linaro-omap
linux-linaro-shared
linux-linaro-vexpress
linux-lts-quantal
linux-lts-raring
linux-lts-saucy
linux-lts-trusty
linux-lts-utopic
linux-lts-vivid
linux-lts-wily
linux-lts-xenial
linux-maguro
linux-mako
linux-manta
linux-qcm-msm
linux-raspi2
linux-snapdragon
linux-ti-omap4
Show all 32 packages Show less packages

CVE-2017-16996

High priority
Ignored

kernel/bpf/verifier.c in the Linux kernel through 4.14.8 allows local users to cause a denial of service (memory corruption) or possibly have unspecified other impact by leveraging register truncation mishandling.

32 affected packages

linux-armadaxp, linux-aws, linux-azure, linux-euclid, linux-flo...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux-armadaxp
linux-aws
linux-azure
linux-euclid
linux-flo
linux-gcp
linux-gke
linux-goldfish
linux-grouper
linux-hwe
linux-hwe-edge
linux-kvm
linux-lts-quantal
linux-lts-raring
linux-lts-saucy
linux-lts-trusty
linux-lts-utopic
linux-lts-vivid
linux-lts-wily
linux-lts-xenial
linux-maguro
linux-mako
linux-manta
linux-oem
linux-qcm-msm
linux-raspi2
linux-snapdragon
linux
linux-linaro-omap
linux-linaro-shared
linux-linaro-vexpress
linux-ti-omap4
Show all 32 packages Show less packages

CVE-2017-17864

Low priority
Not affected

kernel/bpf/verifier.c in the Linux kernel through 4.14.8 mishandles states_equal comparisons between the pointer data type and the UNKNOWN_VALUE data type, which allows local users to obtain potentially sensitive address...

32 affected packages

linux, linux-armadaxp, linux-aws, linux-flo, linux-gke...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux
linux-armadaxp
linux-aws
linux-flo
linux-gke
linux-goldfish
linux-grouper
linux-hwe
linux-hwe-edge
linux-linaro-omap
linux-linaro-shared
linux-linaro-vexpress
linux-lts-quantal
linux-azure
linux-euclid
linux-gcp
linux-kvm
linux-oem
linux-lts-wily
linux-lts-raring
linux-lts-saucy
linux-lts-trusty
linux-lts-utopic
linux-lts-vivid
linux-lts-xenial
linux-maguro
linux-mako
linux-manta
linux-qcm-msm
linux-raspi2
linux-snapdragon
linux-ti-omap4
Show all 32 packages Show less packages

CVE-2017-17863

High priority
Not affected

kernel/bpf/verifier.c in the Linux kernel 4.9.x through 4.9.71 does not check the relationship between pointer values and the BPF stack, which allows local users to cause a denial of service (integer overflow or invalid memory...

32 affected packages

linux-azure, linux-euclid, linux-gcp, linux-gke, linux-hwe-edge...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux-azure
linux-euclid
linux-gcp
linux-gke
linux-hwe-edge
linux-kvm
linux-oem
linux-goldfish
linux-aws
linux
linux-armadaxp
linux-flo
linux-grouper
linux-hwe
linux-linaro-omap
linux-linaro-shared
linux-linaro-vexpress
linux-lts-quantal
linux-lts-raring
linux-lts-saucy
linux-lts-trusty
linux-lts-utopic
linux-lts-vivid
linux-lts-wily
linux-lts-xenial
linux-maguro
linux-mako
linux-manta
linux-qcm-msm
linux-raspi2
linux-snapdragon
linux-ti-omap4
Show all 32 packages Show less packages

CVE-2017-15121

Medium priority

Some fixes available 1 of 2

A non-privileged user is able to mount a fuse filesystem on RHEL 6 or 7 and crash a system if an application punches a hole in a file that does not end aligned to a page boundary.

32 affected packages

linux, linux-armadaxp, linux-aws, linux-azure, linux-euclid...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux Not affected
linux-armadaxp Not in release
linux-aws Not affected
linux-azure Not affected
linux-euclid Not in release
linux-flo Not in release
linux-gcp Not affected
linux-gke Not in release
linux-goldfish Not in release
linux-grouper Not in release
linux-hwe Not affected
linux-hwe-edge Fixed
linux-kvm Not affected
linux-linaro-omap Not in release
linux-linaro-shared Not in release
linux-linaro-vexpress Not in release
linux-lts-quantal Not in release
linux-lts-raring Not in release
linux-lts-saucy Not in release
linux-lts-trusty Not in release
linux-lts-utopic Not in release
linux-lts-vivid Not in release
linux-lts-wily Not in release
linux-lts-xenial Not in release
linux-maguro Not in release
linux-mako Not in release
linux-manta Not in release
linux-oem Not affected
linux-qcm-msm Not in release
linux-raspi2 Not affected
linux-snapdragon Not affected
linux-ti-omap4 Not in release
Show all 32 packages Show less packages

CVE-2017-13174

Low priority
Ignored

An elevation of privilege vulnerability in the kernel edl. Product: Android. Versions: Android kernel. Android ID A-63100473.

32 affected packages

linux, linux-armadaxp, linux-aws, linux-euclid, linux-flo...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux
linux-armadaxp
linux-aws
linux-euclid
linux-flo
linux-gke
linux-goldfish
linux-grouper
linux-hwe
linux-hwe-edge
linux-linaro-omap
linux-linaro-shared
linux-linaro-vexpress
linux-lts-quantal
linux-lts-raring
linux-lts-saucy
linux-lts-trusty
linux-lts-utopic
linux-lts-vivid
linux-lts-wily
linux-lts-xenial
linux-maguro
linux-mako
linux-manta
linux-oem
linux-qcm-msm
linux-raspi2
linux-snapdragon
linux-ti-omap4
linux-azure
linux-gcp
linux-kvm
Show all 32 packages Show less packages

CVE-2017-13169

Medium priority
Not affected

An information disclosure vulnerability in the kernel camera server. Product: Android. Versions: Android kernel. Android ID A-37512375.

32 affected packages

linux-goldfish, linux-grouper, linux-lts-quantal, linux-lts-raring, linux-lts-saucy...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux-goldfish
linux-grouper
linux-lts-quantal
linux-lts-raring
linux-lts-saucy
linux-lts-trusty
linux-maguro
linux-mako
linux-manta
linux-aws
linux-azure
linux-flo
linux-gke
linux-hwe
linux-hwe-edge
linux-lts-utopic
linux-lts-wily
linux
linux-armadaxp
linux-euclid
linux-gcp
linux-kvm
linux-linaro-omap
linux-linaro-shared
linux-linaro-vexpress
linux-lts-vivid
linux-lts-xenial
linux-oem
linux-qcm-msm
linux-raspi2
linux-snapdragon
linux-ti-omap4
Show all 32 packages Show less packages

CVE-2017-13164

Medium priority
Not affected

An information disclosure vulnerability in the kernel binder driver. Product: Android. Versions: Android kernel. Android ID A-36007193.

32 affected packages

linux, linux-armadaxp, linux-euclid, linux-flo, linux-gcp...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux
linux-armadaxp
linux-euclid
linux-flo
linux-gcp
linux-goldfish
linux-grouper
linux-kvm
linux-linaro-omap
linux-linaro-shared
linux-linaro-vexpress
linux-lts-quantal
linux-lts-raring
linux-lts-saucy
linux-lts-trusty
linux-lts-utopic
linux-lts-wily
linux-lts-xenial
linux-maguro
linux-mako
linux-manta
linux-oem
linux-qcm-msm
linux-raspi2
linux-snapdragon
linux-ti-omap4
linux-aws
linux-azure
linux-gke
linux-hwe
linux-hwe-edge
linux-lts-vivid
Show all 32 packages Show less packages

CVE-2017-13163

Medium priority
Not affected

An elevation of privilege vulnerability in the kernel mtp usb driver. Product: Android. Versions: Android kernel. Android ID A-37429972.

32 affected packages

linux-aws, linux-azure, linux-euclid, linux-flo, linux-gcp...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux-aws
linux-azure
linux-euclid
linux-flo
linux-gcp
linux-gke
linux-goldfish
linux-grouper
linux-hwe
linux-hwe-edge
linux-kvm
linux-lts-saucy
linux-lts-trusty
linux-lts-utopic
linux-lts-vivid
linux-lts-wily
linux-lts-xenial
linux-maguro
linux-mako
linux-manta
linux-oem
linux-raspi2
linux-snapdragon
linux
linux-linaro-omap
linux-linaro-shared
linux-linaro-vexpress
linux-qcm-msm
linux-ti-omap4
linux-armadaxp
linux-lts-quantal
linux-lts-raring
Show all 32 packages Show less packages