Skip to main content

Vendor archive

linux CVEs

Beta · best-effort

18,718 CVEs tagged to vendor linux1,022 Critical, 6,153 High, 10,969 Medium, 574 Low, 0 Unrated.

CVE-2013-0313

Published Feb 22, 2013

The evm_update_evmxattr function in security/integrity/evm/evm_crypto.c in the Linux kernel before 3.7.5, when the Extended Verification Module (EVM) is enabled, allows local user…

CVSS 6.2 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-0311

Published Feb 22, 2013

The translate_desc function in drivers/vhost/vhost.c in the Linux kernel before 3.7 does not properly handle cross-region descriptors, which allows guest OS users to obtain host O…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-0310

Published Feb 22, 2013

The cipso_v4_validate function in net/ipv4/cipso_ipv4.c in the Linux kernel before 3.4.8 allows local users to cause a denial of service (NULL pointer dereference and system crash…

CVSS 6.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-0309

Published Feb 22, 2013

arch/x86/include/asm/pgtable.h in the Linux kernel before 3.6.2, when transparent huge pages are used, does not properly support PROT_NONE memory regions, which allows local users…

CVSS 4.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-0290

Published Feb 19, 2013

The __skb_recv_datagram function in net/core/datagram.c in the Linux kernel before 3.8 does not properly handle the MSG_PEEK flag with zero-length data, which allows local users t…

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-5375

Published Feb 18, 2013

The CRC32C feature in the Btrfs implementation in the Linux kernel before 3.8-rc1 allows local users to cause a denial of service (prevention of file creation) by leveraging the a…

CVSS 4.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-5374

Published Feb 18, 2013

The CRC32C feature in the Btrfs implementation in the Linux kernel before 3.8-rc1 allows local users to cause a denial of service (extended runtime of kernel code) by creating man…

CVSS 4.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-0871

Published Feb 18, 2013

Race condition in the ptrace functionality in the Linux kernel before 3.7.5 allows local users to gain privileges via a PTRACE_SETREGS ptrace system call in a crafted application,…

CVSS 6.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-0268

Published Feb 18, 2013

The msr_open function in arch/x86/kernel/msr.c in the Linux kernel before 3.7.6 allows local users to bypass intended capability restrictions by executing a crafted application as…

CVSS 6.2 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-0217

Published Feb 18, 2013

Memory leak in drivers/net/xen-netback/netback.c in the Xen netback functionality in the Linux kernel before 3.7.8 allows guest OS users to cause a denial of service (memory consu…

CVSS 5.2 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-0216

Published Feb 18, 2013

The Xen netback functionality in the Linux kernel before 3.7.8 allows guest OS users to cause a denial of service (loop) by triggering ring pointer corruption.

CVSS 5.2 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-0160

Published Feb 18, 2013

The Linux kernel through 3.7.9 allows local users to obtain sensitive information about keystroke timing by using the inotify API on the /dev/ptmx device.

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2012-4530

Published Feb 18, 2013

The load_script function in fs/binfmt_script.c in the Linux kernel before 3.7.2 does not properly handle recursion, which allows local users to obtain sensitive information from k…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2012-4398

Published Feb 18, 2013

The __request_module function in kernel/kmod.c in the Linux kernel before 3.4 does not set a certain killable attribute, which allows local users to cause a denial of service (mem…

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-0641

Published Feb 14, 2013

Buffer overflow in Adobe Reader and Acrobat 9.x before 9.5.4, 10.x before 10.1.6, and 11.x before 11.0.02 allows remote attackers to execute arbitrary code via a crafted PDF docum…

CVSS 7.8 · High
evidence mentions
7
Buzz score
55.3
KEV listed

CVE-2013-0640

Published Feb 14, 2013

Adobe Reader and Acrobat 9.x before 9.5.4, 10.x before 10.1.6, and 11.x before 11.0.02 allow remote attackers to execute arbitrary code or cause a denial of service (memory corrup…

CVSS 7.8 · High
evidence mentions
10
Buzz score
60.0
KEV listed

CVE-2013-0231

Published Feb 13, 2013

The pciback_enable_msi function in the PCI backend driver (drivers/xen/pciback/conf_space_capability_msi.c) in Xen for the Linux kernel 2.6.18 and 3.8 allows guest OS users with P…

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-0190

Published Feb 13, 2013

The xen_failsafe_callback function in Xen for the Linux kernel 2.6.23 and other versions, when running a 32-bit PVOPS guest, allows local users to cause a denial of service (guest…

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort
Showing 17,401-17,425 of 18,718 CVEsPage 697 of 749