Логотип exploitDog
bind:"CVE-2018-17972" OR bind:"CVE-2019-1125" OR bind:"CVE-2019-5489" OR bind:"CVE-2017-17805"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2018-17972" OR bind:"CVE-2019-1125" OR bind:"CVE-2019-5489" OR bind:"CVE-2017-17805"

Количество 84

Количество 84

debian логотип

CVE-2019-1125

почти 6 лет назад

An information disclosure vulnerability exists when certain central pr ...

CVSS3: 5.6
EPSS: Средний
oracle-oval логотип

ELSA-2019-4577

больше 6 лет назад

ELSA-2019-4577: Unbreakable Enterprise kernel security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2019-4532

больше 6 лет назад

ELSA-2019-4532: Unbreakable Enterprise kernel security update (IMPORTANT)

EPSS: Низкий
github логотип

GHSA-r79p-pw9q-gxrc

около 3 лет назад

An information disclosure vulnerability exists when certain central processing units (CPU) speculatively access memory, aka 'Windows Kernel Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2019-1071, CVE-2019-1073.

CVSS3: 5.5
EPSS: Средний
oracle-oval логотип

ELSA-2019-4777

почти 6 лет назад

ELSA-2019-4777: Unbreakable Enterprise kernel security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2019-4775

почти 6 лет назад

ELSA-2019-4775: Unbreakable Enterprise kernel security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2019-4735

почти 6 лет назад

ELSA-2019-4735: Unbreakable Enterprise kernel security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2019-4733

почти 6 лет назад

ELSA-2019-4733: Unbreakable Enterprise kernel security update (IMPORTANT)

EPSS: Низкий
fstec логотип

BDU:2019-04636

почти 6 лет назад

Уязвимость операционных систем Windows и Linux, связанная с отсутствием защиты служебных данных, позволяющая нарушителю раскрыть защищаемую информацию

CVSS3: 5.5
EPSS: Средний
oracle-oval логотип

ELSA-2019-2600

почти 6 лет назад

ELSA-2019-2600: kernel security and bug fix update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2019-2411

почти 6 лет назад

ELSA-2019-2411: kernel security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2019:1407-1

около 6 лет назад

Security update for the Linux Kernel

EPSS: Низкий
ubuntu логотип

CVE-2017-17805

больше 7 лет назад

The Salsa20 encryption algorithm in the Linux kernel before 4.14.8 does not correctly handle zero-length inputs, allowing a local attacker able to use the AF_ALG-based skcipher interface (CONFIG_CRYPTO_USER_API_SKCIPHER) to cause a denial of service (uninitialized-memory free and kernel crash) or have unspecified other impact by executing a crafted sequence of system calls that use the blkcipher_walk API. Both the generic implementation (crypto/salsa20_generic.c) and x86 implementation (arch/x86/crypto/salsa20_glue.c) of Salsa20 were vulnerable.

CVSS3: 7.8
EPSS: Низкий
redhat логотип

CVE-2017-17805

больше 7 лет назад

The Salsa20 encryption algorithm in the Linux kernel before 4.14.8 does not correctly handle zero-length inputs, allowing a local attacker able to use the AF_ALG-based skcipher interface (CONFIG_CRYPTO_USER_API_SKCIPHER) to cause a denial of service (uninitialized-memory free and kernel crash) or have unspecified other impact by executing a crafted sequence of system calls that use the blkcipher_walk API. Both the generic implementation (crypto/salsa20_generic.c) and x86 implementation (arch/x86/crypto/salsa20_glue.c) of Salsa20 were vulnerable.

CVSS3: 5.5
EPSS: Низкий
nvd логотип

CVE-2017-17805

больше 7 лет назад

The Salsa20 encryption algorithm in the Linux kernel before 4.14.8 does not correctly handle zero-length inputs, allowing a local attacker able to use the AF_ALG-based skcipher interface (CONFIG_CRYPTO_USER_API_SKCIPHER) to cause a denial of service (uninitialized-memory free and kernel crash) or have unspecified other impact by executing a crafted sequence of system calls that use the blkcipher_walk API. Both the generic implementation (crypto/salsa20_generic.c) and x86 implementation (arch/x86/crypto/salsa20_glue.c) of Salsa20 were vulnerable.

CVSS3: 7.8
EPSS: Низкий
debian логотип

CVE-2017-17805

больше 7 лет назад

The Salsa20 encryption algorithm in the Linux kernel before 4.14.8 doe ...

CVSS3: 7.8
EPSS: Низкий
ubuntu логотип

CVE-2019-5489

больше 6 лет назад

The mincore() implementation in mm/mincore.c in the Linux kernel through 4.19.13 allowed local attackers to observe page cache access patterns of other processes on the same system, potentially allowing sniffing of secret information. (Fixing this affects the output of the fincore program.) Limited remote exploitation may be possible, as demonstrated by latency differences in accessing public files from an Apache HTTP Server.

CVSS3: 5.5
EPSS: Низкий
redhat логотип

CVE-2019-5489

больше 6 лет назад

The mincore() implementation in mm/mincore.c in the Linux kernel through 4.19.13 allowed local attackers to observe page cache access patterns of other processes on the same system, potentially allowing sniffing of secret information. (Fixing this affects the output of the fincore program.) Limited remote exploitation may be possible, as demonstrated by latency differences in accessing public files from an Apache HTTP Server.

CVSS3: 7.1
EPSS: Низкий
nvd логотип

CVE-2019-5489

больше 6 лет назад

The mincore() implementation in mm/mincore.c in the Linux kernel through 4.19.13 allowed local attackers to observe page cache access patterns of other processes on the same system, potentially allowing sniffing of secret information. (Fixing this affects the output of the fincore program.) Limited remote exploitation may be possible, as demonstrated by latency differences in accessing public files from an Apache HTTP Server.

CVSS3: 5.5
EPSS: Низкий
debian логотип

CVE-2019-5489

больше 6 лет назад

The mincore() implementation in mm/mincore.c in the Linux kernel throu ...

CVSS3: 5.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
debian логотип
CVE-2019-1125

An information disclosure vulnerability exists when certain central pr ...

CVSS3: 5.6
15%
Средний
почти 6 лет назад
oracle-oval логотип
ELSA-2019-4577

ELSA-2019-4577: Unbreakable Enterprise kernel security update (IMPORTANT)

больше 6 лет назад
oracle-oval логотип
ELSA-2019-4532

ELSA-2019-4532: Unbreakable Enterprise kernel security update (IMPORTANT)

больше 6 лет назад
github логотип
GHSA-r79p-pw9q-gxrc

An information disclosure vulnerability exists when certain central processing units (CPU) speculatively access memory, aka 'Windows Kernel Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2019-1071, CVE-2019-1073.

CVSS3: 5.5
15%
Средний
около 3 лет назад
oracle-oval логотип
ELSA-2019-4777

ELSA-2019-4777: Unbreakable Enterprise kernel security update (IMPORTANT)

почти 6 лет назад
oracle-oval логотип
ELSA-2019-4775

ELSA-2019-4775: Unbreakable Enterprise kernel security update (IMPORTANT)

почти 6 лет назад
oracle-oval логотип
ELSA-2019-4735

ELSA-2019-4735: Unbreakable Enterprise kernel security update (IMPORTANT)

почти 6 лет назад
oracle-oval логотип
ELSA-2019-4733

ELSA-2019-4733: Unbreakable Enterprise kernel security update (IMPORTANT)

почти 6 лет назад
fstec логотип
BDU:2019-04636

Уязвимость операционных систем Windows и Linux, связанная с отсутствием защиты служебных данных, позволяющая нарушителю раскрыть защищаемую информацию

CVSS3: 5.5
15%
Средний
почти 6 лет назад
oracle-oval логотип
ELSA-2019-2600

ELSA-2019-2600: kernel security and bug fix update (IMPORTANT)

почти 6 лет назад
oracle-oval логотип
ELSA-2019-2411

ELSA-2019-2411: kernel security update (IMPORTANT)

почти 6 лет назад
suse-cvrf логотип
openSUSE-SU-2019:1407-1

Security update for the Linux Kernel

около 6 лет назад
ubuntu логотип
CVE-2017-17805

The Salsa20 encryption algorithm in the Linux kernel before 4.14.8 does not correctly handle zero-length inputs, allowing a local attacker able to use the AF_ALG-based skcipher interface (CONFIG_CRYPTO_USER_API_SKCIPHER) to cause a denial of service (uninitialized-memory free and kernel crash) or have unspecified other impact by executing a crafted sequence of system calls that use the blkcipher_walk API. Both the generic implementation (crypto/salsa20_generic.c) and x86 implementation (arch/x86/crypto/salsa20_glue.c) of Salsa20 were vulnerable.

CVSS3: 7.8
0%
Низкий
больше 7 лет назад
redhat логотип
CVE-2017-17805

The Salsa20 encryption algorithm in the Linux kernel before 4.14.8 does not correctly handle zero-length inputs, allowing a local attacker able to use the AF_ALG-based skcipher interface (CONFIG_CRYPTO_USER_API_SKCIPHER) to cause a denial of service (uninitialized-memory free and kernel crash) or have unspecified other impact by executing a crafted sequence of system calls that use the blkcipher_walk API. Both the generic implementation (crypto/salsa20_generic.c) and x86 implementation (arch/x86/crypto/salsa20_glue.c) of Salsa20 were vulnerable.

CVSS3: 5.5
0%
Низкий
больше 7 лет назад
nvd логотип
CVE-2017-17805

The Salsa20 encryption algorithm in the Linux kernel before 4.14.8 does not correctly handle zero-length inputs, allowing a local attacker able to use the AF_ALG-based skcipher interface (CONFIG_CRYPTO_USER_API_SKCIPHER) to cause a denial of service (uninitialized-memory free and kernel crash) or have unspecified other impact by executing a crafted sequence of system calls that use the blkcipher_walk API. Both the generic implementation (crypto/salsa20_generic.c) and x86 implementation (arch/x86/crypto/salsa20_glue.c) of Salsa20 were vulnerable.

CVSS3: 7.8
0%
Низкий
больше 7 лет назад
debian логотип
CVE-2017-17805

The Salsa20 encryption algorithm in the Linux kernel before 4.14.8 doe ...

CVSS3: 7.8
0%
Низкий
больше 7 лет назад
ubuntu логотип
CVE-2019-5489

The mincore() implementation in mm/mincore.c in the Linux kernel through 4.19.13 allowed local attackers to observe page cache access patterns of other processes on the same system, potentially allowing sniffing of secret information. (Fixing this affects the output of the fincore program.) Limited remote exploitation may be possible, as demonstrated by latency differences in accessing public files from an Apache HTTP Server.

CVSS3: 5.5
0%
Низкий
больше 6 лет назад
redhat логотип
CVE-2019-5489

The mincore() implementation in mm/mincore.c in the Linux kernel through 4.19.13 allowed local attackers to observe page cache access patterns of other processes on the same system, potentially allowing sniffing of secret information. (Fixing this affects the output of the fincore program.) Limited remote exploitation may be possible, as demonstrated by latency differences in accessing public files from an Apache HTTP Server.

CVSS3: 7.1
0%
Низкий
больше 6 лет назад
nvd логотип
CVE-2019-5489

The mincore() implementation in mm/mincore.c in the Linux kernel through 4.19.13 allowed local attackers to observe page cache access patterns of other processes on the same system, potentially allowing sniffing of secret information. (Fixing this affects the output of the fincore program.) Limited remote exploitation may be possible, as demonstrated by latency differences in accessing public files from an Apache HTTP Server.

CVSS3: 5.5
0%
Низкий
больше 6 лет назад
debian логотип
CVE-2019-5489

The mincore() implementation in mm/mincore.c in the Linux kernel throu ...

CVSS3: 5.5
0%
Низкий
больше 6 лет назад

Уязвимостей на страницу