Логотип exploitDog
bind:"CVE-2014-1739" OR bind:"CVE-2014-4014" OR bind:"CVE-2014-3184" OR bind:"CVE-2014-4171"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2014-1739" OR bind:"CVE-2014-4014" OR bind:"CVE-2014-3184" OR bind:"CVE-2014-4171"

Количество 192

Количество 192

github логотип

GHSA-73cf-9h72-w34c

больше 3 лет назад

The capabilities implementation in the Linux kernel before 3.14.8 does not properly consider that namespaces are inapplicable to inodes, which allows local users to bypass intended chmod restrictions by first creating a user namespace, as demonstrated by setting the setgid bit on a file with group ownership of root.

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:0481-1

больше 11 лет назад

Security update for Linux kernel

EPSS: Низкий
github логотип

GHSA-8p53-rhxf-cgxv

больше 3 лет назад

The report_fixup functions in the HID subsystem in the Linux kernel before 3.16.2 might allow physically proximate attackers to cause a denial of service (out-of-bounds write) via a crafted device that provides a small report descriptor, related to (1) drivers/hid/hid-cherry.c, (2) drivers/hid/hid-kye.c, (3) drivers/hid/hid-lg.c, (4) drivers/hid/hid-monterey.c, (5) drivers/hid/hid-petalynx.c, and (6) drivers/hid/hid-sunplus.c.

EPSS: Низкий
ubuntu логотип

CVE-2014-4171

больше 11 лет назад

mm/shmem.c in the Linux kernel through 3.15.1 does not properly implement the interaction between range notification and hole punching, which allows local users to cause a denial of service (i_mutex hold) by using the mmap system call to access a hole, as demonstrated by interfering with intended shmem activity by blocking completion of (1) an MADV_REMOVE madvise call or (2) an FALLOC_FL_PUNCH_HOLE fallocate call.

CVSS2: 4.7
EPSS: Низкий
redhat логотип

CVE-2014-4171

больше 11 лет назад

mm/shmem.c in the Linux kernel through 3.15.1 does not properly implement the interaction between range notification and hole punching, which allows local users to cause a denial of service (i_mutex hold) by using the mmap system call to access a hole, as demonstrated by interfering with intended shmem activity by blocking completion of (1) an MADV_REMOVE madvise call or (2) an FALLOC_FL_PUNCH_HOLE fallocate call.

CVSS2: 4
EPSS: Низкий
nvd логотип

CVE-2014-4171

больше 11 лет назад

mm/shmem.c in the Linux kernel through 3.15.1 does not properly implement the interaction between range notification and hole punching, which allows local users to cause a denial of service (i_mutex hold) by using the mmap system call to access a hole, as demonstrated by interfering with intended shmem activity by blocking completion of (1) an MADV_REMOVE madvise call or (2) an FALLOC_FL_PUNCH_HOLE fallocate call.

CVSS2: 4.7
EPSS: Низкий
debian логотип

CVE-2014-4171

больше 11 лет назад

mm/shmem.c in the Linux kernel through 3.15.1 does not properly implem ...

CVSS2: 4.7
EPSS: Низкий
github логотип

GHSA-p5vf-58qw-qq73

больше 3 лет назад

mm/shmem.c in the Linux kernel through 3.15.1 does not properly implement the interaction between range notification and hole punching, which allows local users to cause a denial of service (i_mutex hold) by using the mmap system call to access a hole, as demonstrated by interfering with intended shmem activity by blocking completion of (1) an MADV_REMOVE madvise call or (2) an FALLOC_FL_PUNCH_HOLE fallocate call.

EPSS: Низкий
oracle-oval логотип

ELSA-2014-3105

почти 11 лет назад

ELSA-2014-3105: Unbreakable Enterprise kernel security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2015-1272

около 10 лет назад

ELSA-2015-1272: kernel security, bug fix, and enhancement update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2015-0102

больше 10 лет назад

ELSA-2015-0102: kernel security and bug fix update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:0652-1

больше 13 лет назад

Security update for Kernel

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-73cf-9h72-w34c

The capabilities implementation in the Linux kernel before 3.14.8 does not properly consider that namespaces are inapplicable to inodes, which allows local users to bypass intended chmod restrictions by first creating a user namespace, as demonstrated by setting the setgid bit on a file with group ownership of root.

2%
Низкий
больше 3 лет назад
suse-cvrf логотип
SUSE-SU-2015:0481-1

Security update for Linux kernel

больше 11 лет назад
github логотип
GHSA-8p53-rhxf-cgxv

The report_fixup functions in the HID subsystem in the Linux kernel before 3.16.2 might allow physically proximate attackers to cause a denial of service (out-of-bounds write) via a crafted device that provides a small report descriptor, related to (1) drivers/hid/hid-cherry.c, (2) drivers/hid/hid-kye.c, (3) drivers/hid/hid-lg.c, (4) drivers/hid/hid-monterey.c, (5) drivers/hid/hid-petalynx.c, and (6) drivers/hid/hid-sunplus.c.

0%
Низкий
больше 3 лет назад
ubuntu логотип
CVE-2014-4171

mm/shmem.c in the Linux kernel through 3.15.1 does not properly implement the interaction between range notification and hole punching, which allows local users to cause a denial of service (i_mutex hold) by using the mmap system call to access a hole, as demonstrated by interfering with intended shmem activity by blocking completion of (1) an MADV_REMOVE madvise call or (2) an FALLOC_FL_PUNCH_HOLE fallocate call.

CVSS2: 4.7
0%
Низкий
больше 11 лет назад
redhat логотип
CVE-2014-4171

mm/shmem.c in the Linux kernel through 3.15.1 does not properly implement the interaction between range notification and hole punching, which allows local users to cause a denial of service (i_mutex hold) by using the mmap system call to access a hole, as demonstrated by interfering with intended shmem activity by blocking completion of (1) an MADV_REMOVE madvise call or (2) an FALLOC_FL_PUNCH_HOLE fallocate call.

CVSS2: 4
0%
Низкий
больше 11 лет назад
nvd логотип
CVE-2014-4171

mm/shmem.c in the Linux kernel through 3.15.1 does not properly implement the interaction between range notification and hole punching, which allows local users to cause a denial of service (i_mutex hold) by using the mmap system call to access a hole, as demonstrated by interfering with intended shmem activity by blocking completion of (1) an MADV_REMOVE madvise call or (2) an FALLOC_FL_PUNCH_HOLE fallocate call.

CVSS2: 4.7
0%
Низкий
больше 11 лет назад
debian логотип
CVE-2014-4171

mm/shmem.c in the Linux kernel through 3.15.1 does not properly implem ...

CVSS2: 4.7
0%
Низкий
больше 11 лет назад
github логотип
GHSA-p5vf-58qw-qq73

mm/shmem.c in the Linux kernel through 3.15.1 does not properly implement the interaction between range notification and hole punching, which allows local users to cause a denial of service (i_mutex hold) by using the mmap system call to access a hole, as demonstrated by interfering with intended shmem activity by blocking completion of (1) an MADV_REMOVE madvise call or (2) an FALLOC_FL_PUNCH_HOLE fallocate call.

0%
Низкий
больше 3 лет назад
oracle-oval логотип
ELSA-2014-3105

ELSA-2014-3105: Unbreakable Enterprise kernel security update (IMPORTANT)

почти 11 лет назад
oracle-oval логотип
ELSA-2015-1272

ELSA-2015-1272: kernel security, bug fix, and enhancement update (MODERATE)

около 10 лет назад
oracle-oval логотип
ELSA-2015-0102

ELSA-2015-0102: kernel security and bug fix update (IMPORTANT)

больше 10 лет назад
suse-cvrf логотип
SUSE-SU-2015:0652-1

Security update for Kernel

больше 13 лет назад

Уязвимостей на страницу