CVEs (4,120)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
4Canonical DebianQemu+1 more11Debian Linux Enterprise Linux DesktopEnterprise Linux Eus+8 moreMay 6, 2026 May 25, 2016 N/A· v4 6.5 MEDIUM· v3 2.1 LOW· v2 The patch_instruction function in hw/i386/kvmvapic.c in QEMU does not initialize the imm32 variable, which allows local guest OS administrators to obtain sensitive information from host stack memory by accessing the Task...Show more |
4Canonical DebianFedoraproject+1 more4Debian Linux FedoraQemu+1 moreMay 6, 2026 May 23, 2016 N/A· v4 6.0 MEDIUM· v3 4.9 MEDIUM· v2 The ehci_advance_state function in hw/usb/hcd-ehci.c in QEMU allows local guest OS administrators to cause a denial of service (infinite loop and CPU consumption) via a circular split isochronous transfer descriptor (siT...Show more |
4Canonical DebianFedoraproject+1 more4Debian Linux FedoraQemu+1 moreMay 6, 2026 May 23, 2016 N/A· v4 8.6 HIGH· v3 4.3 MEDIUM· v2 Buffer overflow in the stellaris_enet_receive function in hw/net/stellaris_enet.c in QEMU, when the Stellaris ethernet controller is configured to accept large packets, allows remote attackers to cause a denial of servic...Show more |
3Canonical LinuxOracle3Linux Linux KernelUbuntu LinuxMay 6, 2026 May 23, 2016 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 The tipc_nl_publ_dump function in net/tipc/socket.c in the Linux kernel through 4.6 does not verify socket existence, which allows local users to cause a denial of service (NULL pointer dereference and system crash) or p...Show more |
4Canonical LinuxNovell+1 more6Linux Linux KernelSuse Linux Enterprise Debuginfo+3 moreMay 6, 2026 May 23, 2016 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 The get_rock_ridge_filename function in fs/isofs/rock.c in the Linux kernel before 4.5.5 mishandles NM (aka alternate name) entries containing \0 characters, which allows local users to obtain sensitive information from...Show more |
5Canonical LinuxNovell+2 more12Enterprise Linux LinuxLinux Kernel+9 moreMay 6, 2026 May 23, 2016 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 Use-after-free vulnerability in drivers/net/ppp/ppp_generic.c in the Linux kernel before 4.5.2 allows local users to cause a denial of service (memory corruption and system crash, or spinlock) or possibly have unspecifie...Show more |
2Canonical Linux2Linux Kernel Ubuntu LinuxMay 6, 2026 May 23, 2016 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 Use-after-free vulnerability in mm/percpu.c in the Linux kernel through 4.6 allows local users to cause a denial of service (BUG) or possibly have unspecified other impact via crafted use of the mmap and bpf system calls...Show more |
3Canonical LinuxOracle3Linux Linux KernelUbuntu LinuxMay 6, 2026 May 23, 2016 N/A· v4 5.5 MEDIUM· v3 4.9 MEDIUM· v2 fs/pnode.c in the Linux kernel before 4.5.4 does not properly traverse a mount propagation tree in a certain case involving a slave mount, which allows local users to cause a denial of service (NULL pointer dereference a...Show more |
2Canonical Linux2Linux Kernel Ubuntu LinuxMay 6, 2026 May 23, 2016 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 The x25_negotiate_facilities function in net/x25/x25_facilities.c in the Linux kernel before 4.5.5 does not properly initialize a certain data structure, which allows attackers to obtain sensitive information from kernel...Show more |
5Canonical DebianLinux+2 more11Debian Linux Enterprise Linux DesktopEnterprise Linux Server+8 moreMay 6, 2026 May 23, 2016 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 sound/core/timer.c in the Linux kernel through 4.6 does not initialize certain r1 data structures, which allows local users to obtain sensitive information from kernel stack memory via crafted use of the ALSA timer inter...Show more |
3Canonical LinuxNovell10Linux Kernel Suse Linux Enterprise DebuginfoSuse Linux Enterprise Desktop+7 moreMay 6, 2026 May 23, 2016 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 The snd_timer_user_params function in sound/core/timer.c in the Linux kernel through 4.6 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel stack memory via...Show more |
3Canonical DebianLinux3Debian Linux Linux KernelUbuntu LinuxMay 6, 2026 May 23, 2016 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 The InfiniBand (aka IB) stack in the Linux kernel before 4.5.3 incorrectly relies on the write system call, which allows local users to cause a denial of service (kernel memory write operation) or possibly have unspecifi...Show more |
2Canonical Linux2Linux Kernel Ubuntu LinuxMay 6, 2026 May 23, 2016 N/A· v4 7.0 HIGH· v3 6.9 MEDIUM· v2 The BPF subsystem in the Linux kernel before 4.5.5 mishandles reference counts, which allows local users to cause a denial of service (use-after-free) or possibly have unspecified other impact via a crafted application o...Show more |
3Canonical LinuxNovell10Linux Kernel Suse Linux Enterprise DebuginfoSuse Linux Enterprise Desktop+7 moreMay 6, 2026 May 23, 2016 N/A· v4 3.3 LOW· v3 2.1 LOW· v2 The rtnl_fill_link_ifmap function in net/core/rtnetlink.c in the Linux kernel before 4.5.5 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel stack memory b...Show more |
3Canonical LinuxNovell5Linux Kernel Suse Linux Enterprise DebuginfoSuse Linux Enterprise Server+2 moreMay 6, 2026 May 23, 2016 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 The llc_cmsg_rcv function in net/llc/af_llc.c in the Linux kernel before 4.5.5 does not initialize a certain data structure, which allows attackers to obtain sensitive information from kernel stack memory by reading a me...Show more |
4Canonical FedoraprojectLinux+1 more11Fedora Linux KernelSuse Linux Enterprise Debuginfo+8 moreMay 6, 2026 May 23, 2016 N/A· v4 6.2 MEDIUM· v3 2.1 LOW· v2 The proc_connectinfo function in drivers/usb/core/devio.c in the Linux kernel through 4.6 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel stack memory vi...Show more |
The openssl_random_pseudo_bytes function in ext/openssl/openssl.c in PHP before 5.4.44, 5.5.x before 5.5.28, and 5.6.x before 5.6.12 incorrectly relies on the deprecated RAND_pseudo_bytes function, which makes it easier...Show more |
4Canonical OpensusePhp+1 more6Leap Linux Enterprise Module For Web ScriptingLinux Enterprise Software Development Kit+3 moreMay 6, 2026 May 22, 2016 N/A· v4 9.6 CRITICAL· v3 6.8 MEDIUM· v2 ext/libxml/libxml.c in PHP before 5.5.22 and 5.6.x before 5.6.6, when PHP-FPM is used, does not isolate each thread from libxml_disable_entity_loader changes in other threads, which allows remote attackers to conduct XML...Show more |
3Canonical DebianQemu3Debian Linux QemuUbuntu LinuxMay 6, 2026 May 20, 2016 N/A· v4 6.0 MEDIUM· v3 2.1 LOW· v2 The get_cmd function in hw/scsi/esp.c in the 53C9X Fast SCSI Controller (FSC) support in QEMU does not properly check DMA length, which allows local guest OS administrators to cause a denial of service (out-of-bounds wri...Show more |
3Canonical DebianQemu3Debian Linux QemuUbuntu LinuxMay 6, 2026 May 20, 2016 N/A· v4 6.7 MEDIUM· v3 4.6 MEDIUM· v2 The esp_reg_write function in hw/scsi/esp.c in the 53C9X Fast SCSI Controller (FSC) support in QEMU does not properly check command buffer length, which allows local guest OS administrators to cause a denial of service (...Show more |