Show filters
53 Total Results
Displaying 21-30 of 53
Sort by:
Attacker Value
Unknown

CVE-2016-2185

Disclosure Date: May 02, 2016 (last updated November 25, 2024)
The ati_remote2_probe function in drivers/input/misc/ati_remote2.c in the Linux kernel before 4.5.1 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and system crash) via a crafted endpoints value in a USB device descriptor.
0
Attacker Value
Unknown

CVE-2016-3672

Disclosure Date: April 27, 2016 (last updated November 25, 2024)
The arch_pick_mmap_layout function in arch/x86/mm/mmap.c in the Linux kernel through 4.5.2 does not properly randomize the legacy base address, which makes it easier for local users to defeat the intended restrictions on the ADDR_NO_RANDOMIZE flag, and bypass the ASLR protection mechanism for a setuid or setgid program, by disabling stack-consumption resource limits.
0
Attacker Value
Unknown

CVE-2016-3156

Disclosure Date: April 27, 2016 (last updated November 25, 2024)
The IPv4 implementation in the Linux kernel before 4.5.2 mishandles destruction of device objects, which allows guest OS users to cause a denial of service (host OS networking outage) by arranging for a large number of IP addresses.
0
Attacker Value
Unknown

CVE-2016-2384

Disclosure Date: April 27, 2016 (last updated November 25, 2024)
Double free vulnerability in the snd_usbmidi_create function in sound/usb/midi.c in the Linux kernel before 4.5 allows physically proximate attackers to cause a denial of service (panic) or possibly have unspecified other impact via vectors involving an invalid USB descriptor.
0
Attacker Value
Unknown

CVE-2015-8812

Disclosure Date: April 27, 2016 (last updated November 25, 2024)
drivers/infiniband/hw/cxgb3/iwch_cm.c in the Linux kernel before 4.5 does not properly identify error conditions, which allows remote attackers to execute arbitrary code or cause a denial of service (use-after-free) via crafted packets.
Attacker Value
Unknown

CVE-2015-8845

Disclosure Date: April 27, 2016 (last updated November 25, 2024)
The tm_reclaim_thread function in arch/powerpc/kernel/process.c in the Linux kernel before 4.4.1 on powerpc platforms does not ensure that TM suspend mode exists before proceeding with a tm_reclaim call, which allows local users to cause a denial of service (TM Bad Thing exception and panic) via a crafted application.
0
Attacker Value
Unknown

CVE-2016-2184

Disclosure Date: April 27, 2016 (last updated November 25, 2024)
The create_fixed_stream_quirk function in sound/usb/quirks.c in the snd-usb-audio driver in the Linux kernel before 4.5.1 allows physically proximate attackers to cause a denial of service (NULL pointer dereference or double free, and system crash) via a crafted endpoints value in a USB device descriptor.
0
Attacker Value
Unknown

CVE-2015-8816

Disclosure Date: April 27, 2016 (last updated November 02, 2023)
The hub_activate function in drivers/usb/core/hub.c in the Linux kernel before 4.3.5 does not properly maintain a hub-interface data structure, which allows physically proximate attackers to cause a denial of service (invalid memory access and system crash) or possibly have unspecified other impact by unplugging a USB hub device.
Attacker Value
Unknown

CVE-2016-3139

Disclosure Date: April 27, 2016 (last updated November 08, 2023)
The wacom_probe function in drivers/input/tablet/wacom_sys.c in the Linux kernel before 3.17 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and system crash) via a crafted endpoints value in a USB device descriptor.
0
Attacker Value
Unknown

CVE-2016-3134

Disclosure Date: April 27, 2016 (last updated November 08, 2023)
The netfilter subsystem in the Linux kernel through 4.5.2 does not validate certain offset fields, which allows local users to gain privileges or cause a denial of service (heap memory corruption) via an IPT_SO_SET_REPLACE setsockopt call.
0