Search CVE reports
31 – 40 of 258 results
The scm_check_creds function in net/core/scm.c in the Linux kernel before 3.8.6 does not properly enforce capability requirements for controlling the PID value associated with a UNIX domain socket, which allows local users...
13 affected packages
linux-armadaxp, linux, linux-ec2, linux-fsl-imx51, linux-linaro-omap...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
linux-armadaxp | — | — | — | — |
linux | — | — | — | — |
linux-ec2 | — | — | — | — |
linux-fsl-imx51 | — | — | — | — |
linux-linaro-omap | — | — | — | — |
linux-linaro-shared | — | — | — | — |
linux-linaro-vexpress | — | — | — | — |
linux-lts-backport-maverick | — | — | — | — |
linux-lts-backport-oneiric | — | — | — | — |
linux-lts-quantal | — | — | — | — |
linux-mvl-dove | — | — | — | — |
linux-qcm-msm | — | — | — | — |
linux-ti-omap4 | — | — | — | — |
The clone_mnt function in fs/namespace.c in the Linux kernel before 3.8.6 does not properly restrict changes to the MNT_READONLY flag, which allows local users to bypass an intended read-only property of a filesystem by leveraging...
13 affected packages
linux, linux-armadaxp, linux-ec2, linux-fsl-imx51, linux-linaro-omap...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
linux | — | — | — | — |
linux-armadaxp | — | — | — | — |
linux-ec2 | — | — | — | — |
linux-fsl-imx51 | — | — | — | — |
linux-linaro-omap | — | — | — | — |
linux-linaro-shared | — | — | — | — |
linux-linaro-vexpress | — | — | — | — |
linux-lts-backport-maverick | — | — | — | — |
linux-lts-backport-oneiric | — | — | — | — |
linux-lts-quantal | — | — | — | — |
linux-mvl-dove | — | — | — | — |
linux-qcm-msm | — | — | — | — |
linux-ti-omap4 | — | — | — | — |
The create_user_ns function in kernel/user_namespace.c in the Linux kernel before 3.8.6 does not check whether a chroot directory exists that differs from the namespace root directory, which allows local users to bypass intended...
31 affected packages
linux-gke, linux, linux-ec2, linux-lts-backport-maverick, linux-mvl-dove...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
linux-gke | — | — | — | — |
linux | — | — | — | — |
linux-ec2 | — | — | — | — |
linux-lts-backport-maverick | — | — | — | — |
linux-mvl-dove | — | — | — | — |
linux-armadaxp | — | — | — | — |
linux-aws | — | — | — | — |
linux-flo | — | — | — | — |
linux-fsl-imx51 | — | — | — | — |
linux-goldfish | — | — | — | — |
linux-grouper | — | — | — | — |
linux-hwe | — | — | — | — |
linux-hwe-edge | — | — | — | — |
linux-linaro-omap | — | — | — | — |
linux-linaro-shared | — | — | — | — |
linux-linaro-vexpress | — | — | — | — |
linux-lts-backport-oneiric | — | — | — | — |
linux-lts-quantal | — | — | — | — |
linux-lts-raring | — | — | — | — |
linux-lts-trusty | — | — | — | — |
linux-lts-utopic | — | — | — | — |
linux-lts-vivid | — | — | — | — |
linux-lts-wily | — | — | — | — |
linux-lts-xenial | — | — | — | — |
linux-maguro | — | — | — | — |
linux-mako | — | — | — | — |
linux-manta | — | — | — | — |
linux-qcm-msm | — | — | — | — |
linux-raspi2 | — | — | — | — |
linux-snapdragon | — | — | — | — |
linux-ti-omap4 | — | — | — | — |
Some fixes available 8 of 41
Heap-based buffer overflow in the tg3_read_vpd function in drivers/net/ethernet/broadcom/tg3.c in the Linux kernel before 3.8.6 allows physically proximate attackers to cause a denial of service (system crash) or possibly execute...
31 affected packages
linux, linux-armadaxp, linux-aws, linux-ec2, linux-flo...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
linux | — | — | — | — |
linux-armadaxp | — | — | — | — |
linux-aws | — | — | — | — |
linux-ec2 | — | — | — | — |
linux-flo | — | — | — | — |
linux-fsl-imx51 | — | — | — | — |
linux-gke | — | — | — | — |
linux-goldfish | — | — | — | — |
linux-grouper | — | — | — | — |
linux-hwe | — | — | — | — |
linux-hwe-edge | — | — | — | — |
linux-linaro-omap | — | — | — | — |
linux-linaro-shared | — | — | — | — |
linux-linaro-vexpress | — | — | — | — |
linux-lts-backport-maverick | — | — | — | — |
linux-lts-backport-oneiric | — | — | — | — |
linux-lts-quantal | — | — | — | — |
linux-lts-raring | — | — | — | — |
linux-lts-trusty | — | — | — | — |
linux-lts-utopic | — | — | — | — |
linux-lts-vivid | — | — | — | — |
linux-lts-wily | — | — | — | — |
linux-lts-xenial | — | — | — | — |
linux-maguro | — | — | — | — |
linux-mako | — | — | — | — |
linux-manta | — | — | — | — |
linux-mvl-dove | — | — | — | — |
linux-qcm-msm | — | — | — | — |
linux-raspi2 | — | — | — | — |
linux-snapdragon | — | — | — | — |
linux-ti-omap4 | — | — | — | — |
Some fixes available 12 of 43
The do_video_set_spu_palette function in fs/compat_ioctl.c in the Linux kernel before 3.6.5 on unspecified architectures lacks a certain error check, which might allow local users to obtain sensitive information from kernel stack...
31 affected packages
linux, linux-ec2, linux-armadaxp, linux-aws, linux-flo...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
linux | — | — | — | — |
linux-ec2 | — | — | — | — |
linux-armadaxp | — | — | — | — |
linux-aws | — | — | — | — |
linux-flo | — | — | — | — |
linux-fsl-imx51 | — | — | — | — |
linux-gke | — | — | — | — |
linux-goldfish | — | — | — | — |
linux-grouper | — | — | — | — |
linux-hwe | — | — | — | — |
linux-hwe-edge | — | — | — | — |
linux-linaro-omap | — | — | — | — |
linux-linaro-shared | — | — | — | — |
linux-linaro-vexpress | — | — | — | — |
linux-lts-backport-maverick | — | — | — | — |
linux-lts-backport-oneiric | — | — | — | — |
linux-lts-quantal | — | — | — | — |
linux-lts-raring | — | — | — | — |
linux-lts-trusty | — | — | — | — |
linux-lts-utopic | — | — | — | — |
linux-lts-vivid | — | — | — | — |
linux-lts-wily | — | — | — | — |
linux-lts-xenial | — | — | — | — |
linux-maguro | — | — | — | — |
linux-mako | — | — | — | — |
linux-manta | — | — | — | — |
linux-mvl-dove | — | — | — | — |
linux-qcm-msm | — | — | — | — |
linux-raspi2 | — | — | — | — |
linux-snapdragon | — | — | — | — |
linux-ti-omap4 | — | — | — | — |
Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2013-2634, CVE-2013-2635, CVE-2013-2636. Reason: This candidate is a duplicate of CVE-2013-2634, CVE-2013-2635, and CVE-2013-2636. Notes: All CVE users should...
13 affected packages
linux, linux-armadaxp, linux-ec2, linux-fsl-imx51, linux-linaro-omap...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
linux | — | — | — | — |
linux-armadaxp | — | — | — | — |
linux-ec2 | — | — | — | — |
linux-fsl-imx51 | — | — | — | — |
linux-linaro-omap | — | — | — | — |
linux-linaro-shared | — | — | — | — |
linux-linaro-vexpress | — | — | — | — |
linux-lts-backport-maverick | — | — | — | — |
linux-lts-backport-oneiric | — | — | — | — |
linux-lts-quantal | — | — | — | — |
linux-mvl-dove | — | — | — | — |
linux-qcm-msm | — | — | — | — |
linux-ti-omap4 | — | — | — | — |
Some fixes available 9 of 43
Heap-based buffer overflow in the wdm_in_callback function in drivers/usb/class/cdc-wdm.c in the Linux kernel before 3.8.4 allows physically proximate attackers to cause a denial of service (system crash) or possibly execute...
31 affected packages
linux, linux-armadaxp, linux-aws, linux-ec2, linux-flo...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
linux | — | — | — | — |
linux-armadaxp | — | — | — | — |
linux-aws | — | — | — | — |
linux-ec2 | — | — | — | — |
linux-flo | — | — | — | — |
linux-fsl-imx51 | — | — | — | — |
linux-gke | — | — | — | — |
linux-goldfish | — | — | — | — |
linux-grouper | — | — | — | — |
linux-hwe | — | — | — | — |
linux-hwe-edge | — | — | — | — |
linux-linaro-omap | — | — | — | — |
linux-linaro-shared | — | — | — | — |
linux-linaro-vexpress | — | — | — | — |
linux-lts-backport-maverick | — | — | — | — |
linux-lts-backport-oneiric | — | — | — | — |
linux-lts-quantal | — | — | — | — |
linux-lts-raring | — | — | — | — |
linux-lts-trusty | — | — | — | — |
linux-lts-utopic | — | — | — | — |
linux-lts-vivid | — | — | — | — |
linux-lts-wily | — | — | — | — |
linux-mvl-dove | — | — | — | — |
linux-lts-xenial | — | — | — | — |
linux-maguro | — | — | — | — |
linux-mako | — | — | — | — |
linux-manta | — | — | — | — |
linux-qcm-msm | — | — | — | — |
linux-raspi2 | — | — | — | — |
linux-snapdragon | — | — | — | — |
linux-ti-omap4 | — | — | — | — |
The clone system-call implementation in the Linux kernel before 3.8.3 does not properly handle a combination of the CLONE_NEWUSER and CLONE_FS flags, which allows local users to gain privileges by calling chroot and leveraging the...
13 affected packages
linux, linux-armadaxp, linux-ec2, linux-fsl-imx51, linux-linaro-omap...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
linux | — | — | — | — |
linux-armadaxp | — | — | — | — |
linux-ec2 | — | — | — | — |
linux-fsl-imx51 | — | — | — | — |
linux-linaro-omap | — | — | — | — |
linux-linaro-shared | — | — | — | — |
linux-linaro-vexpress | — | — | — | — |
linux-lts-backport-maverick | — | — | — | — |
linux-lts-backport-oneiric | — | — | — | — |
linux-lts-quantal | — | — | — | — |
linux-mvl-dove | — | — | — | — |
linux-qcm-msm | — | — | — | — |
linux-ti-omap4 | — | — | — | — |
Some fixes available 7 of 40
fs/ext3/super.c in the Linux kernel before 3.8.4 uses incorrect arguments to functions in certain circumstances related to printk input, which allows local users to conduct format-string attacks and possibly gain privileges via a...
31 affected packages
linux, linux-ec2, linux-mvl-dove, linux-armadaxp, linux-aws...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
linux | — | — | — | — |
linux-ec2 | — | — | — | — |
linux-mvl-dove | — | — | — | — |
linux-armadaxp | — | — | — | — |
linux-aws | — | — | — | — |
linux-flo | — | — | — | — |
linux-fsl-imx51 | — | — | — | — |
linux-gke | — | — | — | — |
linux-goldfish | — | — | — | — |
linux-grouper | — | — | — | — |
linux-hwe | — | — | — | — |
linux-hwe-edge | — | — | — | — |
linux-linaro-omap | — | — | — | — |
linux-linaro-shared | — | — | — | — |
linux-linaro-vexpress | — | — | — | — |
linux-lts-backport-maverick | — | — | — | — |
linux-lts-backport-oneiric | — | — | — | — |
linux-lts-quantal | — | — | — | — |
linux-lts-raring | — | — | — | — |
linux-lts-trusty | — | — | — | — |
linux-lts-utopic | — | — | — | — |
linux-lts-vivid | — | — | — | — |
linux-lts-wily | — | — | — | — |
linux-lts-xenial | — | — | — | — |
linux-maguro | — | — | — | — |
linux-mako | — | — | — | — |
linux-manta | — | — | — | — |
linux-qcm-msm | — | — | — | — |
linux-raspi2 | — | — | — | — |
linux-snapdragon | — | — | — | — |
linux-ti-omap4 | — | — | — | — |
The sctp_getsockopt_assoc_stats function in net/sctp/socket.c in the Linux kernel before 3.8.4 does not validate a size value before proceeding to a copy_from_user operation, which allows local users to gain privileges via...
13 affected packages
linux, linux-armadaxp, linux-ec2, linux-fsl-imx51, linux-linaro-omap...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
linux | — | — | — | — |
linux-armadaxp | — | — | — | — |
linux-ec2 | — | — | — | — |
linux-fsl-imx51 | — | — | — | — |
linux-linaro-omap | — | — | — | — |
linux-linaro-shared | — | — | — | — |
linux-linaro-vexpress | — | — | — | — |
linux-lts-backport-maverick | — | — | — | — |
linux-lts-backport-oneiric | — | — | — | — |
linux-lts-quantal | — | — | — | — |
linux-mvl-dove | — | — | — | — |
linux-qcm-msm | — | — | — | — |
linux-ti-omap4 | — | — | — | — |