Show filters
113 Total Results
Displaying 41-50 of 113
Sort by:
Attacker Value
Unknown
CVE-2019-12881
Disclosure Date: June 18, 2019 (last updated November 27, 2024)
i915_gem_userptr_get_pages in drivers/gpu/drm/i915/i915_gem_userptr.c in the Linux kernel 4.15.0 on Ubuntu 18.04.2 allows local users to cause a denial of service (NULL pointer dereference and BUG) or possibly have unspecified other impact via crafted ioctl calls to /dev/dri/card0.
0
Attacker Value
Unknown
CVE-2018-20510
Disclosure Date: April 30, 2019 (last updated November 27, 2024)
The print_binder_transaction_ilocked function in drivers/android/binder.c in the Linux kernel 4.14.90 allows local users to obtain sensitive address information by reading "*from *code *flags" lines in a debugfs file.
0
Attacker Value
Unknown
CVE-2018-20509
Disclosure Date: April 30, 2019 (last updated November 08, 2023)
The print_binder_ref_olocked function in drivers/android/binder.c in the Linux kernel 4.14.90 allows local users to obtain sensitive address information by reading " ref *desc *node" lines in a debugfs file.
0
Attacker Value
Unknown
CVE-2019-3882
Disclosure Date: April 24, 2019 (last updated November 27, 2024)
A flaw was found in the Linux kernel's vfio interface implementation that permits violation of the user's locked memory limit. If a device is bound to a vfio driver, such as vfio-pci, and the local attacker is administratively granted ownership of the device, it may cause a system memory exhaustion and thus a denial of service (DoS). Versions 3.10, 4.14 and 4.18 are vulnerable.
0
Attacker Value
Unknown
CVE-2018-20449
Disclosure Date: April 04, 2019 (last updated November 08, 2023)
The hidma_chan_stats function in drivers/dma/qcom/hidma_dbg.c in the Linux kernel 4.14.90 allows local users to obtain sensitive address information by reading "callback=" lines in a debugfs file.
0
Attacker Value
Unknown
CVE-2018-14646
Disclosure Date: November 26, 2018 (last updated November 27, 2024)
The Linux kernel before 4.15-rc8 was found to be vulnerable to a NULL pointer dereference bug in the __netlink_ns_capable() function in the net/netlink/af_netlink.c file. A local attacker could exploit this when a net namespace with a netnsid is assigned to cause a kernel panic and a denial of service.
0
Attacker Value
Unknown
CVE-2018-14656
Disclosure Date: October 08, 2018 (last updated November 27, 2024)
A missing address check in the callers of the show_opcodes() in the Linux kernel allows an attacker to dump the kernel memory at an arbitrary kernel address into the dmesg log.
0
Attacker Value
Unknown
CVE-2018-17977
Disclosure Date: October 08, 2018 (last updated November 27, 2024)
The Linux kernel 4.14.67 mishandles certain interaction among XFRM Netlink messages, IPPROTO_AH packets, and IPPROTO_IP packets, which allows local users to cause a denial of service (memory consumption and system hang) by leveraging root access to execute crafted applications, as demonstrated on CentOS 7.
0
Attacker Value
Unknown
CVE-2018-14641
Disclosure Date: September 18, 2018 (last updated November 27, 2024)
A security flaw was found in the ip_frag_reasm() function in net/ipv4/ip_fragment.c in the Linux kernel from 4.19-rc1 to 4.19-rc3 inclusive, which can cause a later system crash in ip_do_fragment(). With certain non-default, but non-rare, configuration of a victim host, an attacker can trigger this crash remotely, thus leading to a remote denial-of-service.
0
Attacker Value
Unknown
CVE-2018-14619
Disclosure Date: August 30, 2018 (last updated November 27, 2024)
A flaw was found in the crypto subsystem of the Linux kernel before version kernel-4.15-rc4. The "null skcipher" was being dropped when each af_alg_ctx was freed instead of when the aead_tfm was freed. This can cause the null skcipher to be freed while it is still in use leading to a local user being able to crash the system or possibly escalate privileges.
0