Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
ralf spenneberg vulnerabilities and exploits
(subscribe to this query)
3.6
CVSSv2
CVE-2017-18270
In the Linux kernel prior to 4.13.5, a local user could create keyrings for other users via keyctl commands, setting unwanted defaults or causing a denial of service.
Linux Linux Kernel
2.1
CVSSv2
CVE-2016-2085
The evm_verify_hmac function in security/integrity/evm/evm_main.c in the Linux kernel prior to 4.5 does not properly copy data, which makes it easier for local users to forge MAC values via a timing side-channel attack.
Linux Linux Kernel
1 Article
4.9
CVSSv2
CVE-2016-3689
The ims_pcu_parse_cdc_data function in drivers/input/misc/ims-pcu.c in the Linux kernel prior to 4.5.1 allows physically proximate malicious users to cause a denial of service (system crash) via a USB device without both a master and a slave interface.
Novell Suse Linux Enterprise Module For Public Cloud 12.0
Novell Suse Linux Enterprise Server 12.0
Novell Suse Linux Enterprise Live Patching 12.0
Novell Suse Linux Enterprise Desktop 12.0
Novell Suse Linux Enterprise Real Time Extension 12.0
Novell Suse Linux Enterprise Workstation Extension 12.0
Novell Suse Linux Enterprise Software Development Kit 12.0
Linux Linux Kernel
Canonical Ubuntu Linux 14.04
4.9
CVSSv2
CVE-2016-2188
The iowarrior_probe function in drivers/usb/misc/iowarrior.c in the Linux kernel prior to 4.5.1 allows physically proximate malicious users to cause a denial of service (NULL pointer dereference and system crash) via a crafted endpoints value in a USB device descriptor.
Novell Suse Linux Enterprise Module For Public Cloud 12.0
Novell Suse Linux Enterprise Server 11.0
Novell Suse Linux Enterprise Server 12.0
Novell Suse Linux Enterprise Live Patching 12.0
Novell Suse Linux Enterprise Real Time Extension 11.0
Novell Suse Linux Enterprise Desktop 12.0
Novell Suse Linux Enterprise Real Time Extension 12.0
Novell Suse Linux Enterprise Workstation Extension 12.0
Novell Suse Linux Enterprise Debuginfo 11.0
Novell Suse Linux Enterprise Software Development Kit 11.0
Novell Suse Linux Enterprise Software Development Kit 12.0
Linux Linux Kernel
Canonical Ubuntu Linux 12.04
1 EDB exploit
2.1
CVSSv2
CVE-2016-2383
The adjust_branches function in kernel/bpf/verifier.c in the Linux kernel prior to 4.5 does not consider the delta in the backward-jump case, which allows local users to obtain sensitive information from kernel memory by creating a packet filter and then loading crafted BPF instr...
Linux Linux Kernel
Linux Linux Kernel 4.5.0
Canonical Ubuntu Linux 14.04
Canonical Ubuntu Linux 15.10
Opensuse Leap 42.1
1 Github repository
4.9
CVSSv2
CVE-2016-2550
The Linux kernel prior to 4.5 allows local users to bypass file-descriptor limits and cause a denial of service (memory consumption) by leveraging incorrect tracking of descriptor ownership and sending each descriptor over a UNIX socket before closing it. NOTE: this vulnerability...
Linux Linux Kernel
1 Article
2.1
CVSSv2
CVE-2018-10087
The kernel_wait4 function in kernel/exit.c in the Linux kernel prior to 4.13, when an unspecified architecture and compiler is used, might allow local users to cause a denial of service by triggering an attempted use of the -INT_MIN value.
Linux Linux Kernel
Debian Debian Linux 8.0
Canonical Ubuntu Linux 14.04
Canonical Ubuntu Linux 16.04
2.1
CVSSv2
CVE-2018-10124
The kill_something_info function in kernel/signal.c in the Linux kernel prior to 4.13, when an unspecified architecture and compiler is used, might allow local users to cause a denial of service via an INT_MIN argument.
Linux Linux Kernel
Debian Debian Linux 8.0
Canonical Ubuntu Linux 14.04
Canonical Ubuntu Linux 16.04
4.9
CVSSv2
CVE-2015-7833
The usbvision driver in the Linux kernel package 3.10.0-123.20.1.el7 up to and including 3.10.0-229.14.1.el7 in Red Hat Enterprise Linux (RHEL) 7.1 allows physically proximate malicious users to cause a denial of service (panic) via a nonzero bInterfaceNumber value in a USB devic...
Novell Suse Linux Enterprise Real Time Extension 12
Redhat Enterprise Linux 7.1
4.6
CVSSv2
CVE-2017-18255
The perf_cpu_time_max_percent_handler function in kernel/events/core.c in the Linux kernel prior to 4.11 allows local users to cause a denial of service (integer overflow) or possibly have unspecified other impact via a large value, as demonstrated by an incorrect sample-rate cal...
Linux Linux Kernel
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-22120
CVE-2024-35921
CVE-2024-35874
brute force
CVE-2024-36080
unprivileged
CVE-2024-35917
IDOR
CVE-2024-4947
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
5
NEXT »