← Back

Linux Kernel

linux_kernel

Vendor: Linux • 14,504 CVEs

CVEs (14,504)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
2Linux
Redhat
2Enterprise Linux Eus
Linux Kernel
Apr 29, 2026
May 17, 2012
N/A· v4
7.5 HIGH· v3
7.8 HIGH· v2
The igmp_heard_query function in net/ipv4/igmp.c in the Linux kernel before 3.2.1 allows remote attackers to cause a denial of service (divide-by-zero error and panic) via IGMP packets.
1Linux
1Linux Kernel
Apr 29, 2026
May 17, 2012
N/A· v4
5.5 MEDIUM· v3
4.9 MEDIUM· v2
The kiocb_batch_free function in fs/aio.c in the Linux kernel before 3.2.2 allows local users to cause a denial of service (OOPS) via vectors that trigger incorrect iocb management.
2Canonical
Linux
2Linux Kernel
Ubuntu Linux
Apr 29, 2026
May 17, 2012
N/A· v4
7.8 HIGH· v3
7.2 HIGH· v2
Integer overflow in the drm_mode_dirtyfb_ioctl function in drivers/gpu/drm/drm_crtc.c in the Direct Rendering Manager (DRM) subsystem in the Linux kernel before 3.1.5 allows local users to gain privileges or cause a deni...Show more
Integer overflow in the drm_mode_dirtyfb_ioctl function in drivers/gpu/drm/drm_crtc.c in the Direct Rendering Manager (DRM) subsystem in the Linux kernel before 3.1.5 allows local users to gain privileges or cause a denial of service (memory corruption) via a crafted ioctl call.Show less
1Linux
1Linux Kernel
Apr 29, 2026
May 17, 2012
N/A· v4
5.5 MEDIUM· v3
4.9 MEDIUM· v2
Integer overflow in the xfs_acl_from_disk function in fs/xfs/xfs_acl.c in the Linux kernel before 3.1.9 allows local users to cause a denial of service (panic) via a filesystem with a malformed ACL, leading to a heap-bas...Show more
Integer overflow in the xfs_acl_from_disk function in fs/xfs/xfs_acl.c in the Linux kernel before 3.1.9 allows local users to cause a denial of service (panic) via a filesystem with a malformed ACL, leading to a heap-based buffer overflow.Show less
1Linux
1Linux Kernel
Apr 29, 2026
May 17, 2012
N/A· v4
5.5 MEDIUM· v3
4.9 MEDIUM· v2
The Linux kernel before 2.6.37 does not properly implement a certain clock-update optimization, which allows local users to cause a denial of service (system hang) via an application that executes code in a loop.
1Linux
1Linux Kernel
Apr 29, 2026
May 17, 2012
N/A· v4
N/A· v3
4.9 MEDIUM· v2
Integer overflow in the perf_event_interrupt function in arch/powerpc/kernel/perf_event.c in the Linux kernel before 2.6.39 on powerpc platforms allows local users to cause a denial of service (unhandled performance moni...Show more
Integer overflow in the perf_event_interrupt function in arch/powerpc/kernel/perf_event.c in the Linux kernel before 2.6.39 on powerpc platforms allows local users to cause a denial of service (unhandled performance monitor exception) via vectors that trigger certain outcomes of performance events.Show less
1Linux
1Linux Kernel
Apr 29, 2026
May 17, 2012
N/A· v4
5.5 MEDIUM· v3
4.9 MEDIUM· v2
The __sys_sendmsg function in net/socket.c in the Linux kernel before 3.1 allows local users to cause a denial of service (system crash) via crafted use of the sendmmsg system call, leading to an incorrect pointer derefe...Show more
The __sys_sendmsg function in net/socket.c in the Linux kernel before 3.1 allows local users to cause a denial of service (system crash) via crafted use of the sendmmsg system call, leading to an incorrect pointer dereference.Show less
2Avaya
Linux
296x1 Ip Deskphone Firmware
Linux Kernel
Apr 29, 2026
May 17, 2012
N/A· v4
N/A· v3
7.1 HIGH· v2
The udp6_ufo_fragment function in net/ipv6/udp.c in the Linux kernel before 2.6.39, when a certain UDP Fragmentation Offload (UFO) configuration is enabled, allows remote attackers to cause a denial of service (system cr...Show more
The udp6_ufo_fragment function in net/ipv6/udp.c in the Linux kernel before 2.6.39, when a certain UDP Fragmentation Offload (UFO) configuration is enabled, allows remote attackers to cause a denial of service (system crash) by sending fragmented IPv6 UDP packets to a bridge device.Show less
1Linux
1Linux Kernel
Apr 29, 2026
May 17, 2012
N/A· v4
N/A· v3
4.6 MEDIUM· v2
The NFSv4 implementation in the Linux kernel before 3.2.2 does not properly handle bitmap sizes in GETACL replies, which allows remote NFS servers to cause a denial of service (OOPS) by sending an excessive number of bit...Show more
The NFSv4 implementation in the Linux kernel before 3.2.2 does not properly handle bitmap sizes in GETACL replies, which allows remote NFS servers to cause a denial of service (OOPS) by sending an excessive number of bitmap words.Show less
2Avaya
Linux
79608 Firmware
9608g Firmware9611g Firmware+4 more
Apr 29, 2026
May 17, 2012
N/A· v4
5.5 MEDIUM· v3
4.9 MEDIUM· v2
The net subsystem in the Linux kernel before 3.1 does not properly restrict use of the IFF_TX_SKB_SHARING flag, which allows local users to cause a denial of service (panic) by leveraging the CAP_NET_ADMIN capability to...Show more
The net subsystem in the Linux kernel before 3.1 does not properly restrict use of the IFF_TX_SKB_SHARING flag, which allows local users to cause a denial of service (panic) by leveraging the CAP_NET_ADMIN capability to access /proc/net/pktgen/pgctrl, and then using the pktgen package in conjunction with a bridge device for a VLAN interface.Show less
2Linux
Redhat
2Enterprise Linux
Linux Kernel
Apr 29, 2026
May 17, 2012
N/A· v4
5.5 MEDIUM· v3
4.9 MEDIUM· v2
Integer overflow in the oom_badness function in mm/oom_kill.c in the Linux kernel before 3.1.8 on 64-bit platforms allows local users to cause a denial of service (memory consumption or process termination) by using a ce...Show more
Integer overflow in the oom_badness function in mm/oom_kill.c in the Linux kernel before 3.1.8 on 64-bit platforms allows local users to cause a denial of service (memory consumption or process termination) by using a certain large amount of memory.Show less
2Linux
Redhat
2Enterprise Linux
Linux Kernel
Apr 29, 2026
May 17, 2012
N/A· v4
5.5 MEDIUM· v3
4.9 MEDIUM· v2
The m_stop function in fs/proc/task_mmu.c in the Linux kernel before 2.6.39 allows local users to cause a denial of service (OOPS) via vectors that trigger an m_start error.
1Linux
1Linux Kernel
Apr 29, 2026
Feb 2, 2012
N/A· v4
N/A· v3
5.0 MEDIUM· v2
The Linux kernel, when using IPv6, allows remote attackers to determine whether a host is sniffing the network by sending an ICMPv6 Echo Request to a multicast address and determining whether an Echo Reply is sent, as de...Show more
The Linux kernel, when using IPv6, allows remote attackers to determine whether a host is sniffing the network by sending an ICMPv6 Echo Request to a multicast address and determining whether an Echo Reply is sent, as demonstrated by thcping.Show less
2Linux
Redhat
2Enterprise Linux
Linux Kernel
Apr 29, 2026
Feb 2, 2012
N/A· v4
7.8 HIGH· v3
7.2 HIGH· v2
The qdisc_notify function in net/sched/sch_api.c in the Linux kernel before 2.6.35 does not prevent tc_fill_qdisc function calls referencing builtin (aka CQ_F_BUILTIN) Qdisc structures, which allows local users to cause...Show more
The qdisc_notify function in net/sched/sch_api.c in the Linux kernel before 2.6.35 does not prevent tc_fill_qdisc function calls referencing builtin (aka CQ_F_BUILTIN) Qdisc structures, which allows local users to cause a denial of service (NULL pointer dereference and OOPS) or possibly have unspecified other impact via a crafted call.Show less
1Linux
1Linux Kernel
Apr 29, 2026
Feb 2, 2012
N/A· v4
5.9 MEDIUM· v3
4.3 MEDIUM· v2
net/sctp/sm_make_chunk.c in the Linux kernel before 2.6.34, when addip_enable and auth_enable are used, does not consider the amount of zero padding during calculation of chunk lengths for (1) INIT and (2) INIT ACK chunk...Show more
net/sctp/sm_make_chunk.c in the Linux kernel before 2.6.34, when addip_enable and auth_enable are used, does not consider the amount of zero padding during calculation of chunk lengths for (1) INIT and (2) INIT ACK chunks, which allows remote attackers to cause a denial of service (OOPS) via crafted packet data.Show less
1Linux
1Linux Kernel
Apr 29, 2026
Jan 27, 2012
N/A· v4
N/A· v3
6.9 MEDIUM· v2
The mem_write function in the Linux kernel before 3.2.2, when ASLR is disabled, does not properly check permissions when writing to /proc/<pid>/mem, which allows local users to gain privileges by modifying process memory...Show more
The mem_write function in the Linux kernel before 3.2.2, when ASLR is disabled, does not properly check permissions when writing to /proc/<pid>/mem, which allows local users to gain privileges by modifying process memory, as demonstrated by Mempodipper.Show less
1Linux
1Linux Kernel
Apr 29, 2026
Jan 27, 2012
N/A· v4
N/A· v3
7.2 HIGH· v2
Stack-based buffer overflow in the hfs_mac2asc function in fs/hfs/trans.c in the Linux kernel 2.6 allows local users to cause a denial of service (crash) and possibly execute arbitrary code via an HFS image with a crafte...Show more
Stack-based buffer overflow in the hfs_mac2asc function in fs/hfs/trans.c in the Linux kernel 2.6 allows local users to cause a denial of service (crash) and possibly execute arbitrary code via an HFS image with a crafted len field.Show less
1Linux
1Linux Kernel
Apr 29, 2026
Jan 27, 2012
N/A· v4
N/A· v3
4.9 MEDIUM· v2
The NFS implementation in Linux kernel before 2.6.31-rc6 calls certain functions without properly initializing certain data, which allows local users to cause a denial of service (NULL pointer dereference and O_DIRECT oo...Show more
The NFS implementation in Linux kernel before 2.6.31-rc6 calls certain functions without properly initializing certain data, which allows local users to cause a denial of service (NULL pointer dereference and O_DIRECT oops), as demonstrated using diotest4 from LTP.Show less
2Linux
Suse
2Linux Enterprise Server
Linux Kernel
Apr 29, 2026
Jan 27, 2012
N/A· v4
N/A· v3
2.1 LOW· v2
The cleanup_journal_tail function in the Journaling Block Device (JBD) functionality in the Linux kernel 2.6 allows local users to cause a denial of service (assertion error and kernel oops) via an ext3 or ext4 image wit...Show more
The cleanup_journal_tail function in the Journaling Block Device (JBD) functionality in the Linux kernel 2.6 allows local users to cause a denial of service (assertion error and kernel oops) via an ext3 or ext4 image with an "invalid log first block value."Show less
1Linux
1Linux Kernel
Apr 29, 2026
Jan 27, 2012
N/A· v4
N/A· v3
2.1 LOW· v2
The user_update function in security/keys/user_defined.c in the Linux kernel 2.6 allows local users to cause a denial of service (NULL pointer dereference and kernel oops) via vectors related to a user-defined key and "u...Show more
The user_update function in security/keys/user_defined.c in the Linux kernel 2.6 allows local users to cause a denial of service (NULL pointer dereference and kernel oops) via vectors related to a user-defined key and "updating a negative key into a fully instantiated key."Show less