Логотип exploitDog
bind:"CVE-2014-1739" OR bind:"CVE-2014-4014" OR bind:"CVE-2014-3184" OR bind:"CVE-2014-4171"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2014-1739" OR bind:"CVE-2014-4014" OR bind:"CVE-2014-3184" OR bind:"CVE-2014-4171"

Количество 192

Количество 192

github логотип

GHSA-73cf-9h72-w34c

около 3 лет назад

The capabilities implementation in the Linux kernel before 3.14.8 does not properly consider that namespaces are inapplicable to inodes, which allows local users to bypass intended chmod restrictions by first creating a user namespace, as demonstrated by setting the setgid bit on a file with group ownership of root.

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:0481-1

больше 11 лет назад

Security update for Linux kernel

EPSS: Низкий
github логотип

GHSA-8p53-rhxf-cgxv

около 3 лет назад

The report_fixup functions in the HID subsystem in the Linux kernel before 3.16.2 might allow physically proximate attackers to cause a denial of service (out-of-bounds write) via a crafted device that provides a small report descriptor, related to (1) drivers/hid/hid-cherry.c, (2) drivers/hid/hid-kye.c, (3) drivers/hid/hid-lg.c, (4) drivers/hid/hid-monterey.c, (5) drivers/hid/hid-petalynx.c, and (6) drivers/hid/hid-sunplus.c.

EPSS: Низкий
ubuntu логотип

CVE-2014-4171

почти 11 лет назад

mm/shmem.c in the Linux kernel through 3.15.1 does not properly implement the interaction between range notification and hole punching, which allows local users to cause a denial of service (i_mutex hold) by using the mmap system call to access a hole, as demonstrated by interfering with intended shmem activity by blocking completion of (1) an MADV_REMOVE madvise call or (2) an FALLOC_FL_PUNCH_HOLE fallocate call.

CVSS2: 4.7
EPSS: Низкий
redhat логотип

CVE-2014-4171

около 11 лет назад

mm/shmem.c in the Linux kernel through 3.15.1 does not properly implement the interaction between range notification and hole punching, which allows local users to cause a denial of service (i_mutex hold) by using the mmap system call to access a hole, as demonstrated by interfering with intended shmem activity by blocking completion of (1) an MADV_REMOVE madvise call or (2) an FALLOC_FL_PUNCH_HOLE fallocate call.

CVSS2: 4
EPSS: Низкий
nvd логотип

CVE-2014-4171

почти 11 лет назад

mm/shmem.c in the Linux kernel through 3.15.1 does not properly implement the interaction between range notification and hole punching, which allows local users to cause a denial of service (i_mutex hold) by using the mmap system call to access a hole, as demonstrated by interfering with intended shmem activity by blocking completion of (1) an MADV_REMOVE madvise call or (2) an FALLOC_FL_PUNCH_HOLE fallocate call.

CVSS2: 4.7
EPSS: Низкий
debian логотип

CVE-2014-4171

почти 11 лет назад

mm/shmem.c in the Linux kernel through 3.15.1 does not properly implem ...

CVSS2: 4.7
EPSS: Низкий
github логотип

GHSA-p5vf-58qw-qq73

около 3 лет назад

mm/shmem.c in the Linux kernel through 3.15.1 does not properly implement the interaction between range notification and hole punching, which allows local users to cause a denial of service (i_mutex hold) by using the mmap system call to access a hole, as demonstrated by interfering with intended shmem activity by blocking completion of (1) an MADV_REMOVE madvise call or (2) an FALLOC_FL_PUNCH_HOLE fallocate call.

EPSS: Низкий
oracle-oval логотип

ELSA-2014-3105

больше 10 лет назад

ELSA-2014-3105: Unbreakable Enterprise kernel security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2015-1272

почти 10 лет назад

ELSA-2015-1272: kernel security, bug fix, and enhancement update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2015-0102

больше 10 лет назад

ELSA-2015-0102: kernel security and bug fix update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:0652-1

около 13 лет назад

Security update for Kernel

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-73cf-9h72-w34c

The capabilities implementation in the Linux kernel before 3.14.8 does not properly consider that namespaces are inapplicable to inodes, which allows local users to bypass intended chmod restrictions by first creating a user namespace, as demonstrated by setting the setgid bit on a file with group ownership of root.

2%
Низкий
около 3 лет назад
suse-cvrf логотип
SUSE-SU-2015:0481-1

Security update for Linux kernel

больше 11 лет назад
github логотип
GHSA-8p53-rhxf-cgxv

The report_fixup functions in the HID subsystem in the Linux kernel before 3.16.2 might allow physically proximate attackers to cause a denial of service (out-of-bounds write) via a crafted device that provides a small report descriptor, related to (1) drivers/hid/hid-cherry.c, (2) drivers/hid/hid-kye.c, (3) drivers/hid/hid-lg.c, (4) drivers/hid/hid-monterey.c, (5) drivers/hid/hid-petalynx.c, and (6) drivers/hid/hid-sunplus.c.

0%
Низкий
около 3 лет назад
ubuntu логотип
CVE-2014-4171

mm/shmem.c in the Linux kernel through 3.15.1 does not properly implement the interaction between range notification and hole punching, which allows local users to cause a denial of service (i_mutex hold) by using the mmap system call to access a hole, as demonstrated by interfering with intended shmem activity by blocking completion of (1) an MADV_REMOVE madvise call or (2) an FALLOC_FL_PUNCH_HOLE fallocate call.

CVSS2: 4.7
0%
Низкий
почти 11 лет назад
redhat логотип
CVE-2014-4171

mm/shmem.c in the Linux kernel through 3.15.1 does not properly implement the interaction between range notification and hole punching, which allows local users to cause a denial of service (i_mutex hold) by using the mmap system call to access a hole, as demonstrated by interfering with intended shmem activity by blocking completion of (1) an MADV_REMOVE madvise call or (2) an FALLOC_FL_PUNCH_HOLE fallocate call.

CVSS2: 4
0%
Низкий
около 11 лет назад
nvd логотип
CVE-2014-4171

mm/shmem.c in the Linux kernel through 3.15.1 does not properly implement the interaction between range notification and hole punching, which allows local users to cause a denial of service (i_mutex hold) by using the mmap system call to access a hole, as demonstrated by interfering with intended shmem activity by blocking completion of (1) an MADV_REMOVE madvise call or (2) an FALLOC_FL_PUNCH_HOLE fallocate call.

CVSS2: 4.7
0%
Низкий
почти 11 лет назад
debian логотип
CVE-2014-4171

mm/shmem.c in the Linux kernel through 3.15.1 does not properly implem ...

CVSS2: 4.7
0%
Низкий
почти 11 лет назад
github логотип
GHSA-p5vf-58qw-qq73

mm/shmem.c in the Linux kernel through 3.15.1 does not properly implement the interaction between range notification and hole punching, which allows local users to cause a denial of service (i_mutex hold) by using the mmap system call to access a hole, as demonstrated by interfering with intended shmem activity by blocking completion of (1) an MADV_REMOVE madvise call or (2) an FALLOC_FL_PUNCH_HOLE fallocate call.

0%
Низкий
около 3 лет назад
oracle-oval логотип
ELSA-2014-3105

ELSA-2014-3105: Unbreakable Enterprise kernel security update (IMPORTANT)

больше 10 лет назад
oracle-oval логотип
ELSA-2015-1272

ELSA-2015-1272: kernel security, bug fix, and enhancement update (MODERATE)

почти 10 лет назад
oracle-oval логотип
ELSA-2015-0102

ELSA-2015-0102: kernel security and bug fix update (IMPORTANT)

больше 10 лет назад
suse-cvrf логотип
SUSE-SU-2015:0652-1

Security update for Kernel

около 13 лет назад

Уязвимостей на страницу