Skip to main content

Vendor archive

linux CVEs

Beta · best-effort

18,763 CVEs tagged to vendor linux1,098 Critical, 6,543 High, 10,549 Medium, 573 Low, 0 Unrated.

CVE-2013-4247

Published Aug 25, 2013

Off-by-one error in the build_unc_path_to_root function in fs/cifs/connect.c in the Linux kernel before 3.9.6 allows remote attackers to cause a denial of service (memory corrupti…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2013-4220

Published Aug 25, 2013

The bad_mode function in arch/arm64/kernel/traps.c in the Linux kernel before 3.9.5 on the ARM64 platform allows local users to cause a denial of service (system crash) via vector…

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-4205

Published Aug 25, 2013

Memory leak in the unshare_userns function in kernel/user_namespace.c in the Linux kernel before 3.10.6 allows local users to cause a denial of service (memory consumption) via an…

CVSS 4.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-4163

Published Jul 29, 2013

The ip6_append_data_mtu function in net/ipv6/ip6_output.c in the IPv6 implementation in the Linux kernel through 3.10.3 does not properly maintain information about whether the IP…

CVSS 4.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-4162

Published Jul 29, 2013

The udp_v6_push_pending_frames function in net/ipv6/udp.c in the IPv6 implementation in the Linux kernel through 3.10.3 makes an incorrect function call for pending data, which al…

CVSS 4.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-4129

Published Jul 29, 2013

The bridge multicast implementation in the Linux kernel through 3.10.3 does not check whether a certain timer is armed before modifying the timeout value of that timer, which allo…

CVSS 4.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-4127

Published Jul 29, 2013

Use-after-free vulnerability in the vhost_net_set_backend function in drivers/vhost/net.c in the Linux kernel through 3.10.3 allows local users to cause a denial of service (OOPS…

CVSS 4.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-4125

Published Jul 15, 2013

The fib6_add_rt2node function in net/ipv6/ip6_fib.c in the IPv6 stack in the Linux kernel through 3.10.1 does not properly handle Router Advertisement (RA) messages in certain cir…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-1059

Published Jul 8, 2013

net/ceph/auth_none.c in the Linux kernel through 3.10 allows remote attackers to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2013-2237

Published Jul 4, 2013

The key_notify_policy_flush function in net/key/af_key.c in the Linux kernel before 3.9 does not initialize a certain structure member, which allows local users to obtain sensitiv…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2013-2234

Published Jul 4, 2013

The (1) key_notify_sa_flush and (2) key_notify_policy_flush functions in net/key/af_key.c in the Linux kernel before 3.10 do not initialize certain structure members, which allows…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2013-2232

Published Jul 4, 2013

The ip6_sk_dst_check function in net/ipv6/ip6_output.c in the Linux kernel before 3.10 allows local users to cause a denial of service (system crash) by using an AF_INET6 socket f…

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-2206

Published Jul 4, 2013

The sctp_sf_do_5_2_4_dupcook function in net/sctp/sm_statefuns.c in the SCTP implementation in the Linux kernel before 3.8.5 does not properly handle associations during the proce…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2011-4348

Published Jun 8, 2013

Race condition in the sctp_rcv function in net/sctp/input.c in the Linux kernel before 2.6.29 allows remote attackers to cause a denial of service (system hang) via SCTP packets.…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2011-4347

Published Jun 8, 2013

The kvm_vm_ioctl_assign_device function in virt/kvm/assigned-dev.c in the KVM subsystem in the Linux kernel before 3.1.10 does not verify permission to access PCI configuration sp…

CVSS 4.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2011-4098

Published Jun 8, 2013

The fallocate implementation in the GFS2 filesystem in the Linux kernel before 3.2 relies on the page cache, which might allow local users to cause a denial of service by prealloc…

CVSS 1.9 · Low
Vendor/product tagsBeta · best-effort
Showing 17,276-17,300 of 18,763 CVEsPage 692 of 751