Логотип exploitDog
bind:"CVE-2017-1000363"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2017-1000363"

Количество 14

Количество 14

ubuntu логотип

CVE-2017-1000363

почти 8 лет назад

Linux drivers/char/lp.c Out-of-Bounds Write. Due to a missing bounds check, and the fact that parport_ptr integer is static, a 'secure boot' kernel command line adversary (can happen due to bootloader vulns, e.g. Google Nexus 6's CVE-2016-10277, where due to a vulnerability the adversary has partial control over the command line) can overflow the parport_nr array in the following code, by appending many (>LP_NO) 'lp=none' arguments to the command line.

CVSS3: 7.8
EPSS: Низкий
redhat логотип

CVE-2017-1000363

около 8 лет назад

Linux drivers/char/lp.c Out-of-Bounds Write. Due to a missing bounds check, and the fact that parport_ptr integer is static, a 'secure boot' kernel command line adversary (can happen due to bootloader vulns, e.g. Google Nexus 6's CVE-2016-10277, where due to a vulnerability the adversary has partial control over the command line) can overflow the parport_nr array in the following code, by appending many (>LP_NO) 'lp=none' arguments to the command line.

CVSS3: 4.6
EPSS: Низкий
nvd логотип

CVE-2017-1000363

почти 8 лет назад

Linux drivers/char/lp.c Out-of-Bounds Write. Due to a missing bounds check, and the fact that parport_ptr integer is static, a 'secure boot' kernel command line adversary (can happen due to bootloader vulns, e.g. Google Nexus 6's CVE-2016-10277, where due to a vulnerability the adversary has partial control over the command line) can overflow the parport_nr array in the following code, by appending many (>LP_NO) 'lp=none' arguments to the command line.

CVSS3: 7.8
EPSS: Низкий
debian логотип

CVE-2017-1000363

почти 8 лет назад

Linux drivers/char/lp.c Out-of-Bounds Write. Due to a missing bounds c ...

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-jg85-fhqf-2gfw

около 3 лет назад

Linux drivers/char/lp.c Out-of-Bounds Write. Due to a missing bounds check, and the fact that parport_ptr integer is static, a 'secure boot' kernel command line adversary (can happen due to bootloader vulns, e.g. Google Nexus 6's CVE-2016-10277, where due to a vulnerability the adversary has partial control over the command line) can overflow the parport_nr array in the following code, by appending many (>LP_NO) 'lp=none' arguments to the command line.

CVSS3: 7.8
EPSS: Низкий
fstec логотип

BDU:2017-02413

около 8 лет назад

Уязвимость функции lp_setup() загрузчика среды Secure Boot ядра операционной системы Linux, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.8
EPSS: Низкий
oracle-oval логотип

ELSA-2017-3595

почти 8 лет назад

ELSA-2017-3595: Unbreakable Enterprise kernel security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2017-3636

больше 7 лет назад

ELSA-2017-3636: Unbreakable Enterprise kernel security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2017-3637

больше 7 лет назад

ELSA-2017-3637: Unbreakable Enterprise kernel security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2017:2389-1

почти 8 лет назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2017:2908-1

больше 7 лет назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2017:2920-1

больше 7 лет назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2017:2525-1

почти 8 лет назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2017:2342-1

почти 8 лет назад

Security update for the Linux Kernel

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2017-1000363

Linux drivers/char/lp.c Out-of-Bounds Write. Due to a missing bounds check, and the fact that parport_ptr integer is static, a 'secure boot' kernel command line adversary (can happen due to bootloader vulns, e.g. Google Nexus 6's CVE-2016-10277, where due to a vulnerability the adversary has partial control over the command line) can overflow the parport_nr array in the following code, by appending many (>LP_NO) 'lp=none' arguments to the command line.

CVSS3: 7.8
0%
Низкий
почти 8 лет назад
redhat логотип
CVE-2017-1000363

Linux drivers/char/lp.c Out-of-Bounds Write. Due to a missing bounds check, and the fact that parport_ptr integer is static, a 'secure boot' kernel command line adversary (can happen due to bootloader vulns, e.g. Google Nexus 6's CVE-2016-10277, where due to a vulnerability the adversary has partial control over the command line) can overflow the parport_nr array in the following code, by appending many (>LP_NO) 'lp=none' arguments to the command line.

CVSS3: 4.6
0%
Низкий
около 8 лет назад
nvd логотип
CVE-2017-1000363

Linux drivers/char/lp.c Out-of-Bounds Write. Due to a missing bounds check, and the fact that parport_ptr integer is static, a 'secure boot' kernel command line adversary (can happen due to bootloader vulns, e.g. Google Nexus 6's CVE-2016-10277, where due to a vulnerability the adversary has partial control over the command line) can overflow the parport_nr array in the following code, by appending many (>LP_NO) 'lp=none' arguments to the command line.

CVSS3: 7.8
0%
Низкий
почти 8 лет назад
debian логотип
CVE-2017-1000363

Linux drivers/char/lp.c Out-of-Bounds Write. Due to a missing bounds c ...

CVSS3: 7.8
0%
Низкий
почти 8 лет назад
github логотип
GHSA-jg85-fhqf-2gfw

Linux drivers/char/lp.c Out-of-Bounds Write. Due to a missing bounds check, and the fact that parport_ptr integer is static, a 'secure boot' kernel command line adversary (can happen due to bootloader vulns, e.g. Google Nexus 6's CVE-2016-10277, where due to a vulnerability the adversary has partial control over the command line) can overflow the parport_nr array in the following code, by appending many (>LP_NO) 'lp=none' arguments to the command line.

CVSS3: 7.8
0%
Низкий
около 3 лет назад
fstec логотип
BDU:2017-02413

Уязвимость функции lp_setup() загрузчика среды Secure Boot ядра операционной системы Linux, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.8
0%
Низкий
около 8 лет назад
oracle-oval логотип
ELSA-2017-3595

ELSA-2017-3595: Unbreakable Enterprise kernel security update (IMPORTANT)

почти 8 лет назад
oracle-oval логотип
ELSA-2017-3636

ELSA-2017-3636: Unbreakable Enterprise kernel security update (IMPORTANT)

больше 7 лет назад
oracle-oval логотип
ELSA-2017-3637

ELSA-2017-3637: Unbreakable Enterprise kernel security update (IMPORTANT)

больше 7 лет назад
suse-cvrf логотип
SUSE-SU-2017:2389-1

Security update for the Linux Kernel

почти 8 лет назад
suse-cvrf логотип
SUSE-SU-2017:2908-1

Security update for the Linux Kernel

больше 7 лет назад
suse-cvrf логотип
SUSE-SU-2017:2920-1

Security update for the Linux Kernel

больше 7 лет назад
suse-cvrf логотип
SUSE-SU-2017:2525-1

Security update for the Linux Kernel

почти 8 лет назад
suse-cvrf логотип
SUSE-SU-2017:2342-1

Security update for the Linux Kernel

почти 8 лет назад

Уязвимостей на страницу