Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 25 355

Количество 25 355

msrc логотип

CVE-2021-37701

2 дня назад

Arbitrary File Creation/Overwrite via insufficient symlink protection due to directory cache poisoning using symbolic links

EPSS: Низкий
msrc логотип

CVE-2021-3764

почти 4 года назад

A memory leak flaw was found in the Linux kernel's ccp_run_aes_gcm_cmd() function that allows an attacker to cause a denial of service. The vulnerability is similar to the older CVE-2019-18808. The highest threat from this vulnerability is to system availability.

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2021-37623

больше 4 лет назад

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2021-37622

больше 4 лет назад

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2021-37621

больше 4 лет назад

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2021-37620

больше 4 лет назад

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2021-37619

больше 4 лет назад

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2021-37618

больше 4 лет назад

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2021-37616

больше 4 лет назад

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2021-37615

больше 4 лет назад

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2021-37600

почти 5 лет назад

An integer overflow in util-linux through 2.37.1 can potentially cause a buffer overflow if an attacker were able to use system resources in a way that leads to a large number in the /proc/sysvipc/sem file. NOTE: this is unexploitable in GNU C Library environments and possibly in all realistic environments.

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2021-37576

около 5 лет назад

arch/powerpc/kvm/book3s_rtas.c in the Linux kernel through 5.13.5 on the powerpc platform allows KVM guest OS users to cause host OS memory corruption via rtas_args.nargs aka CID-f62f3c20647e.

CVSS3: 7.8
EPSS: Низкий
msrc логотип

CVE-2021-3753

больше 4 лет назад

A race problem was seen in the vt_k_ioctl in drivers/tty/vt/vt_ioctl.c in the Linux kernel which may cause an out of bounds read in vt as the write access to vc_mode is not protected by lock-in vt_ioctl (KDSETMDE). The highest threat from this vulnerability is to data confidentiality.

CVSS3: 4.7
EPSS: Низкий
msrc логотип

CVE-2021-3752

больше 4 лет назад

A use-after-free flaw was found in the Linux kernel’s Bluetooth subsystem in the way user calls connect to the socket and disconnect simultaneously due to a race condition. This flaw allows a user to crash the system or escalate their privileges. The highest threat from this vulnerability is to confidentiality integrity as well as system availability.

CVSS3: 7.1
EPSS: Низкий
msrc логотип

CVE-2021-3750

около 4 лет назад

CVSS3: 8.2
EPSS: Низкий
msrc логотип

CVE-2021-37501

больше 3 лет назад

Buffer Overflow vulnerability in HDFGroup hdf5-h5dump 1.12.0 through 1.13.0 allows attackers to cause a denial of service via h5tools_str_sprint in /hdf5/tools/lib/h5tools_str.c.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2021-3748

больше 3 лет назад

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2021-3744

больше 4 лет назад

A memory leak flaw was found in the Linux kernel in the ccp_run_aes_gcm_cmd() function in drivers/crypto/ccp/ccp-ops.c which allows attackers to cause a denial of service (memory consumption). This vulnerability is similar with the older CVE-2019-18808.

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2021-3743

больше 4 лет назад

An out-of-bounds (OOB) memory read flaw was found in the Qualcomm IPC router protocol in the Linux kernel. A missing sanity check allows a local attacker to gain access to out-of-bounds memory leading to a system crash or a leak of internal kernel information. The highest threat from this vulnerability is to system availability.

CVSS3: 7.1
EPSS: Низкий
msrc логотип

CVE-2021-3739

больше 4 лет назад

A NULL pointer dereference flaw was found in the btrfs_rm_device function in fs/btrfs/volumes.c in the Linux Kernel where triggering the bug requires ‘CAP_SYS_ADMIN’. This flaw allows a local attacker to crash the system or leak kernel internal information. The highest threat from this vulnerability is to system availability.

CVSS3: 7.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
msrc логотип
CVE-2021-37701

Arbitrary File Creation/Overwrite via insufficient symlink protection due to directory cache poisoning using symbolic links

3%
Низкий
2 дня назад
msrc логотип
CVE-2021-3764

A memory leak flaw was found in the Linux kernel's ccp_run_aes_gcm_cmd() function that allows an attacker to cause a denial of service. The vulnerability is similar to the older CVE-2019-18808. The highest threat from this vulnerability is to system availability.

CVSS3: 5.5
0%
Низкий
почти 4 года назад
msrc логотип
CVSS3: 5.5
1%
Низкий
больше 4 лет назад
msrc логотип
CVSS3: 5.5
1%
Низкий
больше 4 лет назад
msrc логотип
CVSS3: 5.5
1%
Низкий
больше 4 лет назад
msrc логотип
CVSS3: 5.5
1%
Низкий
больше 4 лет назад
msrc логотип
CVSS3: 5.5
1%
Низкий
больше 4 лет назад
msrc логотип
CVSS3: 5.5
1%
Низкий
больше 4 лет назад
msrc логотип
CVSS3: 5.5
1%
Низкий
больше 4 лет назад
msrc логотип
CVSS3: 5.5
1%
Низкий
больше 4 лет назад
msrc логотип
CVE-2021-37600

An integer overflow in util-linux through 2.37.1 can potentially cause a buffer overflow if an attacker were able to use system resources in a way that leads to a large number in the /proc/sysvipc/sem file. NOTE: this is unexploitable in GNU C Library environments and possibly in all realistic environments.

CVSS3: 5.5
1%
Низкий
почти 5 лет назад
msrc логотип
CVE-2021-37576

arch/powerpc/kvm/book3s_rtas.c in the Linux kernel through 5.13.5 on the powerpc platform allows KVM guest OS users to cause host OS memory corruption via rtas_args.nargs aka CID-f62f3c20647e.

CVSS3: 7.8
1%
Низкий
около 5 лет назад
msrc логотип
CVE-2021-3753

A race problem was seen in the vt_k_ioctl in drivers/tty/vt/vt_ioctl.c in the Linux kernel which may cause an out of bounds read in vt as the write access to vc_mode is not protected by lock-in vt_ioctl (KDSETMDE). The highest threat from this vulnerability is to data confidentiality.

CVSS3: 4.7
0%
Низкий
больше 4 лет назад
msrc логотип
CVE-2021-3752

A use-after-free flaw was found in the Linux kernel’s Bluetooth subsystem in the way user calls connect to the socket and disconnect simultaneously due to a race condition. This flaw allows a user to crash the system or escalate their privileges. The highest threat from this vulnerability is to confidentiality integrity as well as system availability.

CVSS3: 7.1
2%
Низкий
больше 4 лет назад
msrc логотип
CVSS3: 8.2
1%
Низкий
около 4 лет назад
msrc логотип
CVE-2021-37501

Buffer Overflow vulnerability in HDFGroup hdf5-h5dump 1.12.0 through 1.13.0 allows attackers to cause a denial of service via h5tools_str_sprint in /hdf5/tools/lib/h5tools_str.c.

CVSS3: 7.5
2%
Низкий
больше 3 лет назад
msrc логотип
CVSS3: 7.5
1%
Низкий
больше 3 лет назад
msrc логотип
CVE-2021-3744

A memory leak flaw was found in the Linux kernel in the ccp_run_aes_gcm_cmd() function in drivers/crypto/ccp/ccp-ops.c which allows attackers to cause a denial of service (memory consumption). This vulnerability is similar with the older CVE-2019-18808.

CVSS3: 5.5
1%
Низкий
больше 4 лет назад
msrc логотип
CVE-2021-3743

An out-of-bounds (OOB) memory read flaw was found in the Qualcomm IPC router protocol in the Linux kernel. A missing sanity check allows a local attacker to gain access to out-of-bounds memory leading to a system crash or a leak of internal kernel information. The highest threat from this vulnerability is to system availability.

CVSS3: 7.1
1%
Низкий
больше 4 лет назад
msrc логотип
CVE-2021-3739

A NULL pointer dereference flaw was found in the btrfs_rm_device function in fs/btrfs/volumes.c in the Linux Kernel where triggering the bug requires ‘CAP_SYS_ADMIN’. This flaw allows a local attacker to crash the system or leak kernel internal information. The highest threat from this vulnerability is to system availability.

CVSS3: 7.1
1%
Низкий
больше 4 лет назад

Уязвимостей на страницу