Search CVE reports
41 – 50 of 721 results
Some fixes available 5 of 16
The ovl_setattr function in fs/overlayfs/inode.c in the Linux kernel through 4.3.3 attempts to merge distinct setattr operations, which allows local users to bypass intended access restrictions and modify the attributes of...
28 affected packages
linux, linux-armadaxp, linux-aws, linux-flo, linux-fsl-imx51...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
linux | — | — | — | — |
linux-armadaxp | — | — | — | — |
linux-aws | — | — | — | — |
linux-flo | — | — | — | — |
linux-fsl-imx51 | — | — | — | — |
linux-gke | — | — | — | — |
linux-goldfish | — | — | — | — |
linux-grouper | — | — | — | — |
linux-hwe | — | — | — | — |
linux-hwe-edge | — | — | — | — |
linux-linaro-omap | — | — | — | — |
linux-linaro-shared | — | — | — | — |
linux-linaro-vexpress | — | — | — | — |
linux-lts-quantal | — | — | — | — |
linux-lts-raring | — | — | — | — |
linux-lts-saucy | — | — | — | — |
linux-lts-trusty | — | — | — | — |
linux-lts-utopic | — | — | — | — |
linux-lts-vivid | — | — | — | — |
linux-lts-wily | — | — | — | — |
linux-lts-xenial | — | — | — | — |
linux-maguro | — | — | — | — |
linux-mako | — | — | — | — |
linux-manta | — | — | — | — |
linux-qcm-msm | — | — | — | — |
linux-raspi2 | — | — | — | — |
linux-snapdragon | — | — | — | — |
linux-ti-omap4 | — | — | — | — |
Some fixes available 11 of 30
fs/btrfs/inode.c in the Linux kernel before 4.3.3 mishandles compressed inline extents, which allows local users to obtain sensitive pre-truncation information from a file via a clone action.
30 affected packages
linux, linux-armadaxp, linux-aws, linux-ec2, linux-flo...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
linux | — | — | — | — |
linux-armadaxp | — | — | — | — |
linux-aws | — | — | — | — |
linux-ec2 | — | — | — | — |
linux-flo | — | — | — | — |
linux-fsl-imx51 | — | — | — | — |
linux-gke | — | — | — | — |
linux-goldfish | — | — | — | — |
linux-grouper | — | — | — | — |
linux-hwe | — | — | — | — |
linux-hwe-edge | — | — | — | — |
linux-linaro-omap | — | — | — | — |
linux-linaro-shared | — | — | — | — |
linux-linaro-vexpress | — | — | — | — |
linux-lts-quantal | — | — | — | — |
linux-lts-raring | — | — | — | — |
linux-lts-saucy | — | — | — | — |
linux-lts-trusty | — | — | — | — |
linux-lts-utopic | — | — | — | — |
linux-lts-vivid | — | — | — | — |
linux-lts-wily | — | — | — | — |
linux-lts-xenial | — | — | — | — |
linux-maguro | — | — | — | — |
linux-mako | — | — | — | — |
linux-manta | — | — | — | — |
linux-mvl-dove | — | — | — | — |
linux-qcm-msm | — | — | — | — |
linux-raspi2 | — | — | — | — |
linux-snapdragon | — | — | — | — |
linux-ti-omap4 | — | — | — | — |
Some fixes available 11 of 18
Race condition in the rds_sendmsg function in net/rds/sendmsg.c in the Linux kernel before 4.3.3 allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact...
30 affected packages
linux, linux-armadaxp, linux-aws, linux-ec2, linux-flo...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
linux | — | — | — | — |
linux-armadaxp | — | — | — | — |
linux-aws | — | — | — | — |
linux-ec2 | — | — | — | — |
linux-flo | — | — | — | — |
linux-fsl-imx51 | — | — | — | — |
linux-gke | — | — | — | — |
linux-goldfish | — | — | — | — |
linux-grouper | — | — | — | — |
linux-hwe | — | — | — | — |
linux-hwe-edge | — | — | — | — |
linux-linaro-omap | — | — | — | — |
linux-linaro-shared | — | — | — | — |
linux-linaro-vexpress | — | — | — | — |
linux-lts-quantal | — | — | — | — |
linux-lts-raring | — | — | — | — |
linux-lts-saucy | — | — | — | — |
linux-lts-trusty | — | — | — | — |
linux-lts-utopic | — | — | — | — |
linux-lts-vivid | — | — | — | — |
linux-lts-wily | — | — | — | — |
linux-lts-xenial | — | — | — | — |
linux-maguro | — | — | — | — |
linux-mako | — | — | — | — |
linux-manta | — | — | — | — |
linux-mvl-dove | — | — | — | — |
linux-qcm-msm | — | — | — | — |
linux-raspi2 | — | — | — | — |
linux-snapdragon | — | — | — | — |
linux-ti-omap4 | — | — | — | — |
Some fixes available 11 of 30
Use-after-free vulnerability in net/unix/af_unix.c in the Linux kernel before 4.3.3 allows local users to bypass intended AF_UNIX socket permissions or cause a denial of service (panic) via crafted epoll_ctl calls.
30 affected packages
linux, linux-ec2, linux-fsl-imx51, linux-linaro-omap, linux-linaro-shared...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
linux | — | — | — | — |
linux-ec2 | — | — | — | — |
linux-fsl-imx51 | — | — | — | — |
linux-linaro-omap | — | — | — | — |
linux-linaro-shared | — | — | — | — |
linux-armadaxp | — | — | — | — |
linux-aws | — | — | — | — |
linux-flo | — | — | — | — |
linux-gke | — | — | — | — |
linux-goldfish | — | — | — | — |
linux-grouper | — | — | — | — |
linux-hwe | — | — | — | — |
linux-hwe-edge | — | — | — | — |
linux-linaro-vexpress | — | — | — | — |
linux-lts-quantal | — | — | — | — |
linux-lts-raring | — | — | — | — |
linux-lts-saucy | — | — | — | — |
linux-lts-trusty | — | — | — | — |
linux-lts-utopic | — | — | — | — |
linux-lts-vivid | — | — | — | — |
linux-lts-wily | — | — | — | — |
linux-lts-xenial | — | — | — | — |
linux-maguro | — | — | — | — |
linux-mako | — | — | — | — |
linux-manta | — | — | — | — |
linux-mvl-dove | — | — | — | — |
linux-qcm-msm | — | — | — | — |
linux-raspi2 | — | — | — | — |
linux-snapdragon | — | — | — | — |
linux-ti-omap4 | — | — | — | — |
Some fixes available 18 of 30
The KVM subsystem in the Linux kernel through 4.2.6, and Xen 4.3.x through 4.6.x, allows guest OS users to cause a denial of service (host OS panic or hang) by triggering many #AC (aka Alignment Check) exceptions, related to svm.c...
32 affected packages
linux-armadaxp, linux-aws, linux-ec2, linux-flo, linux-fsl-imx51...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
linux-armadaxp | — | — | — | — |
linux-aws | — | — | — | — |
linux-ec2 | — | — | — | — |
linux-flo | — | — | — | — |
linux-fsl-imx51 | — | — | — | — |
linux-gke | — | — | — | — |
linux-goldfish | — | — | — | — |
linux-grouper | — | — | — | — |
linux-hwe | — | — | — | — |
linux-hwe-edge | — | — | — | — |
linux-linaro-omap | — | — | — | — |
linux-linaro-shared | — | — | — | — |
linux-linaro-vexpress | — | — | — | — |
linux-lts-quantal | — | — | — | — |
linux-lts-raring | — | — | — | — |
linux-lts-saucy | — | — | — | — |
linux-lts-trusty | — | — | — | — |
linux-lts-utopic | — | — | — | — |
linux-lts-vivid | — | — | — | — |
linux-lts-wily | — | — | — | — |
linux-lts-xenial | — | — | — | — |
linux-maguro | — | — | — | — |
linux-mako | — | — | — | — |
linux-manta | — | — | — | — |
linux-mvl-dove | — | — | — | — |
linux-qcm-msm | — | — | — | — |
linux-raspi2 | — | — | — | — |
linux-snapdragon | — | — | — | — |
linux-ti-omap4 | — | — | — | — |
virtualbox | — | — | — | — |
xen | — | — | — | — |
linux | — | — | — | — |
Some fixes available 8 of 19
The dgnc_mgmt_ioctl function in drivers/staging/dgnc/dgnc_mgmt.c in the Linux kernel through 4.3.3 does not initialize a certain structure member, which allows local users to obtain sensitive information from kernel memory via a...
30 affected packages
linux, linux-armadaxp, linux-aws, linux-ec2, linux-flo...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
linux | — | — | — | — |
linux-armadaxp | — | — | — | — |
linux-aws | — | — | — | — |
linux-ec2 | — | — | — | — |
linux-flo | — | — | — | — |
linux-fsl-imx51 | — | — | — | — |
linux-gke | — | — | — | — |
linux-goldfish | — | — | — | — |
linux-grouper | — | — | — | — |
linux-hwe | — | — | — | — |
linux-hwe-edge | — | — | — | — |
linux-linaro-omap | — | — | — | — |
linux-linaro-shared | — | — | — | — |
linux-linaro-vexpress | — | — | — | — |
linux-lts-quantal | — | — | — | — |
linux-lts-raring | — | — | — | — |
linux-lts-saucy | — | — | — | — |
linux-lts-trusty | — | — | — | — |
linux-lts-utopic | — | — | — | — |
linux-lts-vivid | — | — | — | — |
linux-lts-wily | — | — | — | — |
linux-lts-xenial | — | — | — | — |
linux-maguro | — | — | — | — |
linux-mako | — | — | — | — |
linux-manta | — | — | — | — |
linux-mvl-dove | — | — | — | — |
linux-qcm-msm | — | — | — | — |
linux-raspi2 | — | — | — | — |
linux-snapdragon | — | — | — | — |
linux-ti-omap4 | — | — | — | — |
Some fixes available 5 of 12
The vivid_fb_ioctl function in drivers/media/platform/vivid/vivid-osd.c in the Linux kernel through 4.3.3 does not initialize a certain structure member, which allows local users to obtain sensitive information from kernel memory...
30 affected packages
linux-aws, linux-flo, linux-gke, linux-goldfish, linux-grouper...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
linux-aws | — | — | — | — |
linux-flo | — | — | — | — |
linux-gke | — | — | — | — |
linux-goldfish | — | — | — | — |
linux-grouper | — | — | — | — |
linux-hwe | — | — | — | — |
linux-hwe-edge | — | — | — | — |
linux-lts-quantal | — | — | — | — |
linux-lts-raring | — | — | — | — |
linux-lts-saucy | — | — | — | — |
linux-lts-trusty | — | — | — | — |
linux-lts-utopic | — | — | — | — |
linux-lts-vivid | — | — | — | — |
linux-lts-wily | — | — | — | — |
linux-lts-xenial | — | — | — | — |
linux-maguro | — | — | — | — |
linux-mako | — | — | — | — |
linux-manta | — | — | — | — |
linux-raspi2 | — | — | — | — |
linux-snapdragon | — | — | — | — |
linux | — | — | — | — |
linux-armadaxp | — | — | — | — |
linux-ec2 | — | — | — | — |
linux-fsl-imx51 | — | — | — | — |
linux-linaro-omap | — | — | — | — |
linux-linaro-shared | — | — | — | — |
linux-linaro-vexpress | — | — | — | — |
linux-mvl-dove | — | — | — | — |
linux-qcm-msm | — | — | — | — |
linux-ti-omap4 | — | — | — | — |
Some fixes available 11 of 30
The slhc_init function in drivers/net/slip/slhc.c in the Linux kernel through 4.2.3 does not ensure that certain slot numbers are valid, which allows local users to cause a denial of service (NULL pointer dereference and system...
30 affected packages
linux, linux-armadaxp, linux-aws, linux-ec2, linux-flo...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
linux | — | — | — | — |
linux-armadaxp | — | — | — | — |
linux-aws | — | — | — | — |
linux-ec2 | — | — | — | — |
linux-flo | — | — | — | — |
linux-fsl-imx51 | — | — | — | — |
linux-gke | — | — | — | — |
linux-goldfish | — | — | — | — |
linux-grouper | — | — | — | — |
linux-hwe | — | — | — | — |
linux-hwe-edge | — | — | — | — |
linux-linaro-omap | — | — | — | — |
linux-linaro-shared | — | — | — | — |
linux-linaro-vexpress | — | — | — | — |
linux-lts-quantal | — | — | — | — |
linux-lts-raring | — | — | — | — |
linux-lts-saucy | — | — | — | — |
linux-lts-trusty | — | — | — | — |
linux-lts-utopic | — | — | — | — |
linux-lts-vivid | — | — | — | — |
linux-lts-wily | — | — | — | — |
linux-lts-xenial | — | — | — | — |
linux-maguro | — | — | — | — |
linux-mako | — | — | — | — |
linux-manta | — | — | — | — |
linux-mvl-dove | — | — | — | — |
linux-qcm-msm | — | — | — | — |
linux-raspi2 | — | — | — | — |
linux-snapdragon | — | — | — | — |
linux-ti-omap4 | — | — | — | — |
Some fixes available 5 of 12
The sctp_init function in net/sctp/protocol.c in the Linux kernel before 4.2.3 has an incorrect sequence of protocol-initialization steps, which allows local users to cause a denial of service (panic or memory corruption) by...
31 affected packages
linux, linux-2.6, linux-armadaxp, linux-aws, linux-ec2...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
linux | — | — | — | — |
linux-2.6 | — | — | — | — |
linux-armadaxp | — | — | — | — |
linux-aws | — | — | — | — |
linux-ec2 | — | — | — | — |
linux-flo | — | — | — | — |
linux-fsl-imx51 | — | — | — | — |
linux-gke | — | — | — | — |
linux-goldfish | — | — | — | — |
linux-grouper | — | — | — | — |
linux-hwe | — | — | — | — |
linux-hwe-edge | — | — | — | — |
linux-linaro-omap | — | — | — | — |
linux-linaro-shared | — | — | — | — |
linux-linaro-vexpress | — | — | — | — |
linux-lts-quantal | — | — | — | — |
linux-lts-raring | — | — | — | — |
linux-lts-saucy | — | — | — | — |
linux-lts-trusty | — | — | — | — |
linux-lts-utopic | — | — | — | — |
linux-lts-vivid | — | — | — | — |
linux-lts-wily | — | — | — | — |
linux-lts-xenial | — | — | — | — |
linux-maguro | — | — | — | — |
linux-mako | — | — | — | — |
linux-manta | — | — | — | — |
linux-mvl-dove | — | — | — | — |
linux-qcm-msm | — | — | — | — |
linux-raspi2 | — | — | — | — |
linux-snapdragon | — | — | — | — |
linux-ti-omap4 | — | — | — | — |
Some fixes available 8 of 27
Race condition in the IPC object implementation in the Linux kernel through 4.2.3 allows local users to gain privileges by triggering an ipc_addid call that leads to uid and gid comparisons against uninitialized data, related to...
30 affected packages
linux, linux-armadaxp, linux-aws, linux-ec2, linux-flo...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
linux | — | — | — | — |
linux-armadaxp | — | — | — | — |
linux-aws | — | — | — | — |
linux-ec2 | — | — | — | — |
linux-flo | — | — | — | — |
linux-fsl-imx51 | — | — | — | — |
linux-gke | — | — | — | — |
linux-goldfish | — | — | — | — |
linux-grouper | — | — | — | — |
linux-hwe | — | — | — | — |
linux-hwe-edge | — | — | — | — |
linux-linaro-omap | — | — | — | — |
linux-linaro-shared | — | — | — | — |
linux-linaro-vexpress | — | — | — | — |
linux-lts-quantal | — | — | — | — |
linux-lts-raring | — | — | — | — |
linux-lts-saucy | — | — | — | — |
linux-lts-trusty | — | — | — | — |
linux-lts-utopic | — | — | — | — |
linux-lts-vivid | — | — | — | — |
linux-lts-wily | — | — | — | — |
linux-lts-xenial | — | — | — | — |
linux-maguro | — | — | — | — |
linux-mako | — | — | — | — |
linux-manta | — | — | — | — |
linux-mvl-dove | — | — | — | — |
linux-qcm-msm | — | — | — | — |
linux-raspi2 | — | — | — | — |
linux-snapdragon | — | — | — | — |
linux-ti-omap4 | — | — | — | — |