Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 125

Количество 125

suse-cvrf логотип

SUSE-SU-2021:2027-1

больше 5 лет назад

Security update for the Linux Kernel (Live Patch 13 for SLE 15 SP2)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:2026-1

больше 5 лет назад

Security update for the Linux Kernel (Live Patch 39 for SLE 12 SP3)

EPSS: Низкий
oracle-oval логотип

ELSA-2021-9346

больше 5 лет назад

ELSA-2021-9346: Unbreakable Enterprise kernel security update (IMPORTANT)

EPSS: Низкий
github логотип

GHSA-pjv2-crr6-xm2p

больше 4 лет назад

The Linux kernel before 5.11.14 has a use-after-free in cipso_v4_genopt in net/ipv4/cipso_ipv4.c because the CIPSO and CALIPSO refcounting for the DOI definitions is mishandled, aka CID-ad5d07f4a9cd. This leads to writing an arbitrary value.

CVSS3: 7.8
EPSS: Низкий
fstec логотип

BDU:2021-04828

больше 5 лет назад

Уязвимость функции cipso_v4_genopt (net/ipv4/cipso_ipv4.c) ядра операционной системы Linux, позволяющая нарушителю выполнить произвольный код

CVSS3: 7.8
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2021:1977-1

около 5 лет назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2021:1975-1

около 5 лет назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:1977-1

больше 5 лет назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:1975-1

больше 5 лет назад

Security update for the Linux Kernel

EPSS: Низкий
altlinux логотип

ALT-PU-2021-1833

больше 5 лет назад

ALT-PU-2021-1833: package `kernel-image-mp` update to version 5.12.4-alt1

CVSS3: 8.8
EPSS: Низкий
ubuntu логотип

CVE-2021-32399

больше 5 лет назад

net/bluetooth/hci_request.c in the Linux kernel through 5.12.2 has a race condition for removal of the HCI controller.

CVSS3: 7
EPSS: Низкий
redhat логотип

CVE-2021-32399

больше 5 лет назад

net/bluetooth/hci_request.c in the Linux kernel through 5.12.2 has a race condition for removal of the HCI controller.

CVSS3: 7
EPSS: Низкий
nvd логотип

CVE-2021-32399

больше 5 лет назад

net/bluetooth/hci_request.c in the Linux kernel through 5.12.2 has a race condition for removal of the HCI controller.

CVSS3: 7
EPSS: Низкий
msrc логотип

CVE-2021-32399

больше 5 лет назад

net/bluetooth/hci_request.c in the Linux kernel through 5.12.2 has a race condition for removal of the HCI controller.

CVSS3: 7
EPSS: Низкий
debian логотип

CVE-2021-32399

больше 5 лет назад

net/bluetooth/hci_request.c in the Linux kernel through 5.12.2 has a r ...

CVSS3: 7
EPSS: Низкий
ubuntu логотип

CVE-2021-23133

больше 5 лет назад

A race condition in Linux kernel SCTP sockets (net/sctp/socket.c) before 5.12-rc8 can lead to kernel privilege escalation from the context of a network service or an unprivileged process. If sctp_destroy_sock is called without sock_net(sk)->sctp.addr_wq_lock then an element is removed from the auto_asconf_splist list without any proper locking. This can be exploited by an attacker with network service privileges to escalate to root or from the context of an unprivileged user directly if a BPF_CGROUP_INET_SOCK_CREATE is attached which denies creation of some SCTP socket.

CVSS3: 6.7
EPSS: Низкий
redhat логотип

CVE-2021-23133

больше 5 лет назад

A race condition in Linux kernel SCTP sockets (net/sctp/socket.c) before 5.12-rc8 can lead to kernel privilege escalation from the context of a network service or an unprivileged process. If sctp_destroy_sock is called without sock_net(sk)->sctp.addr_wq_lock then an element is removed from the auto_asconf_splist list without any proper locking. This can be exploited by an attacker with network service privileges to escalate to root or from the context of an unprivileged user directly if a BPF_CGROUP_INET_SOCK_CREATE is attached which denies creation of some SCTP socket.

CVSS3: 7
EPSS: Низкий
nvd логотип

CVE-2021-23133

больше 5 лет назад

A race condition in Linux kernel SCTP sockets (net/sctp/socket.c) before 5.12-rc8 can lead to kernel privilege escalation from the context of a network service or an unprivileged process. If sctp_destroy_sock is called without sock_net(sk)->sctp.addr_wq_lock then an element is removed from the auto_asconf_splist list without any proper locking. This can be exploited by an attacker with network service privileges to escalate to root or from the context of an unprivileged user directly if a BPF_CGROUP_INET_SOCK_CREATE is attached which denies creation of some SCTP socket.

CVSS3: 6.7
EPSS: Низкий
msrc логотип

CVE-2021-23133

больше 5 лет назад

CVSS3: 7
EPSS: Низкий
debian логотип

CVE-2021-23133

больше 5 лет назад

A race condition in Linux kernel SCTP sockets (net/sctp/socket.c) befo ...

CVSS3: 6.7
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
suse-cvrf логотип
SUSE-SU-2021:2027-1

Security update for the Linux Kernel (Live Patch 13 for SLE 15 SP2)

больше 5 лет назад
suse-cvrf логотип
SUSE-SU-2021:2026-1

Security update for the Linux Kernel (Live Patch 39 for SLE 12 SP3)

больше 5 лет назад
oracle-oval логотип
ELSA-2021-9346

ELSA-2021-9346: Unbreakable Enterprise kernel security update (IMPORTANT)

больше 5 лет назад
github логотип
GHSA-pjv2-crr6-xm2p

The Linux kernel before 5.11.14 has a use-after-free in cipso_v4_genopt in net/ipv4/cipso_ipv4.c because the CIPSO and CALIPSO refcounting for the DOI definitions is mishandled, aka CID-ad5d07f4a9cd. This leads to writing an arbitrary value.

CVSS3: 7.8
1%
Низкий
больше 4 лет назад
fstec логотип
BDU:2021-04828

Уязвимость функции cipso_v4_genopt (net/ipv4/cipso_ipv4.c) ядра операционной системы Linux, позволяющая нарушителю выполнить произвольный код

CVSS3: 7.8
1%
Низкий
больше 5 лет назад
suse-cvrf логотип
openSUSE-SU-2021:1977-1

Security update for the Linux Kernel

около 5 лет назад
suse-cvrf логотип
openSUSE-SU-2021:1975-1

Security update for the Linux Kernel

около 5 лет назад
suse-cvrf логотип
SUSE-SU-2021:1977-1

Security update for the Linux Kernel

больше 5 лет назад
suse-cvrf логотип
SUSE-SU-2021:1975-1

Security update for the Linux Kernel

больше 5 лет назад
altlinux логотип
ALT-PU-2021-1833

ALT-PU-2021-1833: package `kernel-image-mp` update to version 5.12.4-alt1

CVSS3: 8.8
больше 5 лет назад
ubuntu логотип
CVE-2021-32399

net/bluetooth/hci_request.c in the Linux kernel through 5.12.2 has a race condition for removal of the HCI controller.

CVSS3: 7
1%
Низкий
больше 5 лет назад
redhat логотип
CVE-2021-32399

net/bluetooth/hci_request.c in the Linux kernel through 5.12.2 has a race condition for removal of the HCI controller.

CVSS3: 7
1%
Низкий
больше 5 лет назад
nvd логотип
CVE-2021-32399

net/bluetooth/hci_request.c in the Linux kernel through 5.12.2 has a race condition for removal of the HCI controller.

CVSS3: 7
1%
Низкий
больше 5 лет назад
msrc логотип
CVE-2021-32399

net/bluetooth/hci_request.c in the Linux kernel through 5.12.2 has a race condition for removal of the HCI controller.

CVSS3: 7
1%
Низкий
больше 5 лет назад
debian логотип
CVE-2021-32399

net/bluetooth/hci_request.c in the Linux kernel through 5.12.2 has a r ...

CVSS3: 7
1%
Низкий
больше 5 лет назад
ubuntu логотип
CVE-2021-23133

A race condition in Linux kernel SCTP sockets (net/sctp/socket.c) before 5.12-rc8 can lead to kernel privilege escalation from the context of a network service or an unprivileged process. If sctp_destroy_sock is called without sock_net(sk)->sctp.addr_wq_lock then an element is removed from the auto_asconf_splist list without any proper locking. This can be exploited by an attacker with network service privileges to escalate to root or from the context of an unprivileged user directly if a BPF_CGROUP_INET_SOCK_CREATE is attached which denies creation of some SCTP socket.

CVSS3: 6.7
0%
Низкий
больше 5 лет назад
redhat логотип
CVE-2021-23133

A race condition in Linux kernel SCTP sockets (net/sctp/socket.c) before 5.12-rc8 can lead to kernel privilege escalation from the context of a network service or an unprivileged process. If sctp_destroy_sock is called without sock_net(sk)->sctp.addr_wq_lock then an element is removed from the auto_asconf_splist list without any proper locking. This can be exploited by an attacker with network service privileges to escalate to root or from the context of an unprivileged user directly if a BPF_CGROUP_INET_SOCK_CREATE is attached which denies creation of some SCTP socket.

CVSS3: 7
0%
Низкий
больше 5 лет назад
nvd логотип
CVE-2021-23133

A race condition in Linux kernel SCTP sockets (net/sctp/socket.c) before 5.12-rc8 can lead to kernel privilege escalation from the context of a network service or an unprivileged process. If sctp_destroy_sock is called without sock_net(sk)->sctp.addr_wq_lock then an element is removed from the auto_asconf_splist list without any proper locking. This can be exploited by an attacker with network service privileges to escalate to root or from the context of an unprivileged user directly if a BPF_CGROUP_INET_SOCK_CREATE is attached which denies creation of some SCTP socket.

CVSS3: 6.7
0%
Низкий
больше 5 лет назад
msrc логотип
CVSS3: 7
0%
Низкий
больше 5 лет назад
debian логотип
CVE-2021-23133

A race condition in Linux kernel SCTP sockets (net/sctp/socket.c) befo ...

CVSS3: 6.7
0%
Низкий
больше 5 лет назад

Уязвимостей на страницу