Логотип exploitDog
bind:"CVE-2017-9605" OR bind:"CVE-2020-16166"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2017-9605" OR bind:"CVE-2020-16166"

Количество 32

Количество 32

oracle-oval логотип

ELSA-2020-5962

больше 4 лет назад

ELSA-2020-5962: Unbreakable Enterprise kernel security update (IMPORTANT)

EPSS: Низкий
ubuntu логотип

CVE-2017-9605

около 8 лет назад

The vmw_gb_surface_define_ioctl function (accessible via DRM_IOCTL_VMW_GB_SURFACE_CREATE) in drivers/gpu/drm/vmwgfx/vmwgfx_surface.c in the Linux kernel through 4.11.4 defines a backup_handle variable but does not give it an initial value. If one attempts to create a GB surface, with a previously allocated DMA buffer to be used as a backup buffer, the backup_handle variable does not get written to and is then later returned to user space, allowing local users to obtain sensitive information from uninitialized kernel memory via a crafted ioctl call.

CVSS3: 5.5
EPSS: Низкий
redhat логотип

CVE-2017-9605

около 8 лет назад

The vmw_gb_surface_define_ioctl function (accessible via DRM_IOCTL_VMW_GB_SURFACE_CREATE) in drivers/gpu/drm/vmwgfx/vmwgfx_surface.c in the Linux kernel through 4.11.4 defines a backup_handle variable but does not give it an initial value. If one attempts to create a GB surface, with a previously allocated DMA buffer to be used as a backup buffer, the backup_handle variable does not get written to and is then later returned to user space, allowing local users to obtain sensitive information from uninitialized kernel memory via a crafted ioctl call.

CVSS3: 3.3
EPSS: Низкий
nvd логотип

CVE-2017-9605

около 8 лет назад

The vmw_gb_surface_define_ioctl function (accessible via DRM_IOCTL_VMW_GB_SURFACE_CREATE) in drivers/gpu/drm/vmwgfx/vmwgfx_surface.c in the Linux kernel through 4.11.4 defines a backup_handle variable but does not give it an initial value. If one attempts to create a GB surface, with a previously allocated DMA buffer to be used as a backup buffer, the backup_handle variable does not get written to and is then later returned to user space, allowing local users to obtain sensitive information from uninitialized kernel memory via a crafted ioctl call.

CVSS3: 5.5
EPSS: Низкий
debian логотип

CVE-2017-9605

около 8 лет назад

The vmw_gb_surface_define_ioctl function (accessible via DRM_IOCTL_VMW ...

CVSS3: 5.5
EPSS: Низкий
ubuntu логотип

CVE-2020-16166

почти 5 лет назад

The Linux kernel through 5.7.11 allows remote attackers to make observations that help to obtain sensitive information about the internal state of the network RNG, aka CID-f227e3ec3b5c. This is related to drivers/char/random.c and kernel/time/timer.c.

CVSS3: 3.7
EPSS: Низкий
redhat логотип

CVE-2020-16166

почти 5 лет назад

The Linux kernel through 5.7.11 allows remote attackers to make observations that help to obtain sensitive information about the internal state of the network RNG, aka CID-f227e3ec3b5c. This is related to drivers/char/random.c and kernel/time/timer.c.

CVSS3: 3.7
EPSS: Низкий
nvd логотип

CVE-2020-16166

почти 5 лет назад

The Linux kernel through 5.7.11 allows remote attackers to make observations that help to obtain sensitive information about the internal state of the network RNG, aka CID-f227e3ec3b5c. This is related to drivers/char/random.c and kernel/time/timer.c.

CVSS3: 3.7
EPSS: Низкий
msrc логотип

CVE-2020-16166

почти 5 лет назад

CVSS3: 3.7
EPSS: Низкий
debian логотип

CVE-2020-16166

почти 5 лет назад

The Linux kernel through 5.7.11 allows remote attackers to make observ ...

CVSS3: 3.7
EPSS: Низкий
github логотип

GHSA-547f-j6j7-jjcm

около 3 лет назад

The vmw_gb_surface_define_ioctl function (accessible via DRM_IOCTL_VMW_GB_SURFACE_CREATE) in drivers/gpu/drm/vmwgfx/vmwgfx_surface.c in the Linux kernel through 4.11.4 defines a backup_handle variable but does not give it an initial value. If one attempts to create a GB surface, with a previously allocated DMA buffer to be used as a backup buffer, the backup_handle variable does not get written to and is then later returned to user space, allowing local users to obtain sensitive information from uninitialized kernel memory via a crafted ioctl call.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-6c68-84gq-j9gr

около 3 лет назад

The Linux kernel through 5.7.11 allows remote attackers to make observations that help to obtain sensitive information about the internal state of the network RNG, aka CID-f227e3ec3b5c. This is related to drivers/char/random.c and kernel/time/timer.c.

CVSS3: 3.7
EPSS: Низкий
oracle-oval логотип

ELSA-2020-5473

больше 4 лет назад

ELSA-2020-5473: kernel security and bug fix update (MODERATE)

EPSS: Низкий
fstec логотип

BDU:2021-02305

почти 5 лет назад

Уязвимость функции в drivers/char/random.c and kernel/time/timer.c ядра операционной системы Linux, позволяющая нарушителю получить конфиденциальную информацию

CVSS3: 3.7
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:2485-1

почти 5 лет назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:2486-1

почти 5 лет назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:2582-1

почти 5 лет назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:2576-1

почти 5 лет назад

Security update for the Linux Kernel

EPSS: Низкий
oracle-oval логотип

ELSA-2020-5848

почти 5 лет назад

ELSA-2020-5848: Unbreakable Enterprise kernel security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2020:1236-1

почти 5 лет назад

Security update for the Linux Kernel

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
oracle-oval логотип
ELSA-2020-5962

ELSA-2020-5962: Unbreakable Enterprise kernel security update (IMPORTANT)

больше 4 лет назад
ubuntu логотип
CVE-2017-9605

The vmw_gb_surface_define_ioctl function (accessible via DRM_IOCTL_VMW_GB_SURFACE_CREATE) in drivers/gpu/drm/vmwgfx/vmwgfx_surface.c in the Linux kernel through 4.11.4 defines a backup_handle variable but does not give it an initial value. If one attempts to create a GB surface, with a previously allocated DMA buffer to be used as a backup buffer, the backup_handle variable does not get written to and is then later returned to user space, allowing local users to obtain sensitive information from uninitialized kernel memory via a crafted ioctl call.

CVSS3: 5.5
0%
Низкий
около 8 лет назад
redhat логотип
CVE-2017-9605

The vmw_gb_surface_define_ioctl function (accessible via DRM_IOCTL_VMW_GB_SURFACE_CREATE) in drivers/gpu/drm/vmwgfx/vmwgfx_surface.c in the Linux kernel through 4.11.4 defines a backup_handle variable but does not give it an initial value. If one attempts to create a GB surface, with a previously allocated DMA buffer to be used as a backup buffer, the backup_handle variable does not get written to and is then later returned to user space, allowing local users to obtain sensitive information from uninitialized kernel memory via a crafted ioctl call.

CVSS3: 3.3
0%
Низкий
около 8 лет назад
nvd логотип
CVE-2017-9605

The vmw_gb_surface_define_ioctl function (accessible via DRM_IOCTL_VMW_GB_SURFACE_CREATE) in drivers/gpu/drm/vmwgfx/vmwgfx_surface.c in the Linux kernel through 4.11.4 defines a backup_handle variable but does not give it an initial value. If one attempts to create a GB surface, with a previously allocated DMA buffer to be used as a backup buffer, the backup_handle variable does not get written to and is then later returned to user space, allowing local users to obtain sensitive information from uninitialized kernel memory via a crafted ioctl call.

CVSS3: 5.5
0%
Низкий
около 8 лет назад
debian логотип
CVE-2017-9605

The vmw_gb_surface_define_ioctl function (accessible via DRM_IOCTL_VMW ...

CVSS3: 5.5
0%
Низкий
около 8 лет назад
ubuntu логотип
CVE-2020-16166

The Linux kernel through 5.7.11 allows remote attackers to make observations that help to obtain sensitive information about the internal state of the network RNG, aka CID-f227e3ec3b5c. This is related to drivers/char/random.c and kernel/time/timer.c.

CVSS3: 3.7
2%
Низкий
почти 5 лет назад
redhat логотип
CVE-2020-16166

The Linux kernel through 5.7.11 allows remote attackers to make observations that help to obtain sensitive information about the internal state of the network RNG, aka CID-f227e3ec3b5c. This is related to drivers/char/random.c and kernel/time/timer.c.

CVSS3: 3.7
2%
Низкий
почти 5 лет назад
nvd логотип
CVE-2020-16166

The Linux kernel through 5.7.11 allows remote attackers to make observations that help to obtain sensitive information about the internal state of the network RNG, aka CID-f227e3ec3b5c. This is related to drivers/char/random.c and kernel/time/timer.c.

CVSS3: 3.7
2%
Низкий
почти 5 лет назад
msrc логотип
CVSS3: 3.7
2%
Низкий
почти 5 лет назад
debian логотип
CVE-2020-16166

The Linux kernel through 5.7.11 allows remote attackers to make observ ...

CVSS3: 3.7
2%
Низкий
почти 5 лет назад
github логотип
GHSA-547f-j6j7-jjcm

The vmw_gb_surface_define_ioctl function (accessible via DRM_IOCTL_VMW_GB_SURFACE_CREATE) in drivers/gpu/drm/vmwgfx/vmwgfx_surface.c in the Linux kernel through 4.11.4 defines a backup_handle variable but does not give it an initial value. If one attempts to create a GB surface, with a previously allocated DMA buffer to be used as a backup buffer, the backup_handle variable does not get written to and is then later returned to user space, allowing local users to obtain sensitive information from uninitialized kernel memory via a crafted ioctl call.

CVSS3: 5.5
0%
Низкий
около 3 лет назад
github логотип
GHSA-6c68-84gq-j9gr

The Linux kernel through 5.7.11 allows remote attackers to make observations that help to obtain sensitive information about the internal state of the network RNG, aka CID-f227e3ec3b5c. This is related to drivers/char/random.c and kernel/time/timer.c.

CVSS3: 3.7
2%
Низкий
около 3 лет назад
oracle-oval логотип
ELSA-2020-5473

ELSA-2020-5473: kernel security and bug fix update (MODERATE)

больше 4 лет назад
fstec логотип
BDU:2021-02305

Уязвимость функции в drivers/char/random.c and kernel/time/timer.c ядра операционной системы Linux, позволяющая нарушителю получить конфиденциальную информацию

CVSS3: 3.7
2%
Низкий
почти 5 лет назад
suse-cvrf логотип
SUSE-SU-2020:2485-1

Security update for the Linux Kernel

почти 5 лет назад
suse-cvrf логотип
SUSE-SU-2020:2486-1

Security update for the Linux Kernel

почти 5 лет назад
suse-cvrf логотип
SUSE-SU-2020:2582-1

Security update for the Linux Kernel

почти 5 лет назад
suse-cvrf логотип
SUSE-SU-2020:2576-1

Security update for the Linux Kernel

почти 5 лет назад
oracle-oval логотип
ELSA-2020-5848

ELSA-2020-5848: Unbreakable Enterprise kernel security update (IMPORTANT)

почти 5 лет назад
suse-cvrf логотип
openSUSE-SU-2020:1236-1

Security update for the Linux Kernel

почти 5 лет назад

Уязвимостей на страницу