Vulnerabilities in Linux kernel
25 resultsVexday analysis
O Linux kernel apresenta 6 vulnerabilidades conhecidas na base do Vexday, nenhuma delas sob ataque ativo no momento. A fraqueza dominante identificada é CWE-266 (privilégios impróprios), indicando problemas de controle de acesso. Não há registro de CVEs críticas ou publicações recentes nos últimos 90 dias, sugerindo um panorama de risco estável e sem pressão imediata.
CVE-2020-8835HIGHLinux kernel bpf verifier vulnerabilityEPSS 6.0%CVE-2021-22600MEDIUMDouble Free in net/packet/af_packet.c leading to priviledge escalationEPSS 5.9%KEVCVE-2020-14386MEDIUMA flaw was found in the Linux kernel before 5.9-rc4. Memory corruption can be exploited to gain root privileges from unprivileged processes.EPSS 1.3%CVE-2012-0055—OverlayFS in the Linux kernel before 3.0.0-16.28, as used in Ubuntu 10.0.4 LTS and 11.10, is missing inode security checks which could allowEPSS 1.2%CVE-2020-1749HIGHA flaw was found in the Linux kernel's implementation of some networking protocols in IPsec, such as VXLAN and GENEVE tunnels over IPv6. WheEPSS 1.2%CVE-2021-22543HIGHImproper memory handling in Linux KVMEPSS 0.7%CVE-2019-14835HIGHA buffer overflow flaw was found, in versions from 2.6.34 to 5.2.x, in the way Linux kernel's vhost functionality that translates virtqueue EPSS 0.6%CVE-2020-10732LOWA flaw was found in the Linux kernel's implementation of Userspace core dumps. This flaw allows an attacker with a local account to crash a EPSS 0.6%CVE-2018-6554—Memory leak in the irda_bind function in net/irda/af_irda.c and later in drivers/staging/irda/net/af_irda.c in the Linux kernel before 4.17 EPSS 0.5%CVE-2018-6555—The irda_setsockopt function in net/irda/af_irda.c and later in drivers/staging/irda/net/af_irda.c in the Linux kernel before 4.17 allows loEPSS 0.5%CVE-2021-23133MEDIUMLinux Kernel sctp_destroy_sock race conditionEPSS 0.5%CVE-2020-10766MEDIUMA logic bug flaw was found in Linux kernel before 5.8-rc1 in the implementation of SSBD. A bug in the logic handling allows an attacker withEPSS 0.5%CVE-2019-14898HIGHThe fix for CVE-2019-11599, affecting the Linux kernel before 5.0.10 was not complete. A local user could use this flaw to obtain sensitive EPSS 0.4%CVE-2020-14385MEDIUMA flaw was found in the Linux kernel before 5.9-rc4. A failure of the file system metadata validator in XFS can cause an inode with a valid,EPSS 0.4%CVE-2020-10768MEDIUMA flaw was found in the Linux Kernel before 5.8-rc1 in the prctl() function, where it can be used to enable indirect branch speculation afteEPSS 0.4%CVE-2020-16120MEDIUMUnprivileged overlay + shiftfs read accessEPSS 0.4%CVE-2021-23134HIGHLinux kernel llcp_sock_bind/connect use-after-freeEPSS 0.4%CVE-2020-10767MEDIUMA flaw was found in the Linux kernel before 5.8-rc1 in the implementation of the Enhanced IBPB (Indirect Branch Prediction Barrier). The IBPEPSS 0.4%CVE-2020-14304MEDIUMA memory disclosure flaw was found in the Linux kernel's ethernet drivers, in the way it read data from the EEPROM of the device. This flaw EPSS 0.4%CVE-2022-2503MEDIUMLinux Kernel LoadPin bypass via dm-verity table reloadEPSS 0.4%