Search CVE reports
1591 – 1600 of 1756 results
Some fixes available 12 of 49
Race condition in fs/ext4/extents.c in the Linux kernel before 3.4.16 allows local users to obtain sensitive information from a deleted file by reading an extent that was not properly marked as uninitialized.
32 affected packages
linux, linux-ec2, linux-armadaxp, linux-aws, linux-flo...
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| linux | — | — | — | — | — |
| linux-ec2 | — | — | — | — | — |
| linux-armadaxp | — | — | — | — | — |
| linux-aws | — | — | — | — | — |
| linux-flo | — | — | — | — | — |
| linux-fsl-imx51 | — | — | — | — | — |
| linux-gke | — | — | — | — | — |
| linux-goldfish | — | — | — | — | — |
| linux-grouper | — | — | — | — | — |
| linux-hwe | — | — | — | — | — |
| linux-hwe-edge | — | — | — | — | — |
| linux-linaro-omap | — | — | — | — | — |
| linux-linaro-shared | — | — | — | — | — |
| linux-linaro-vexpress | — | — | — | — | — |
| linux-lts-backport-maverick | — | — | — | — | — |
| linux-lts-backport-natty | — | — | — | — | — |
| linux-lts-backport-oneiric | — | — | — | — | — |
| linux-lts-quantal | — | — | — | — | — |
| linux-lts-raring | — | — | — | — | — |
| linux-lts-trusty | — | — | — | — | — |
| linux-lts-utopic | — | — | — | — | — |
| linux-lts-vivid | — | — | — | — | — |
| linux-lts-wily | — | — | — | — | — |
| linux-lts-xenial | — | — | — | — | — |
| linux-maguro | — | — | — | — | — |
| linux-mako | — | — | — | — | — |
| linux-manta | — | — | — | — | — |
| linux-mvl-dove | — | — | — | — | — |
| linux-qcm-msm | — | — | — | — | — |
| linux-raspi2 | — | — | — | — | — |
| linux-snapdragon | — | — | — | — | — |
| linux-ti-omap4 | — | — | — | — | — |
The kernel in Samsung Galaxy S2, Galaxy Note 2, MEIZU MX, and possibly other Android devices, when running an Exynos 4210 or 4412 processor, uses weak permissions (0666) for /dev/exynos-mem, which allows attackers to read or write...
6 affected packages
linux-flo, linux-goldfish, linux-grouper, linux-maguro, linux-mako, linux-manta
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| linux-flo | — | — | — | — | — |
| linux-goldfish | — | — | — | — | — |
| linux-grouper | — | — | — | — | — |
| linux-maguro | — | — | — | — | — |
| linux-mako | — | — | — | — | — |
| linux-manta | — | — | — | — | — |
Some fixes available 1 of 2
Heap-based buffer overflow in the WebGL subsystem in Google Chrome OS before 23.0.1271.94 allows remote attackers to cause a denial of service (GPU process crash) or possibly have unspecified other impact via unknown vectors.
2 affected packages
mesa, mesa-lts-quantal
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| mesa | — | — | — | — | — |
| mesa-lts-quantal | — | — | — | — | — |
drivers/gpu/msm/kgsl.c in the Qualcomm Innovation Center (QuIC) Graphics KGSL kernel-mode driver for Android 2.3 through 4.2 allows attackers to cause a denial of service (NULL pointer dereference) via an application that uses...
13 affected packages
linux, linux-armadaxp, linux-ec2, linux-fsl-imx51, linux-linaro-omap...
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| linux | — | — | — | — | — |
| linux-armadaxp | — | — | — | — | — |
| linux-ec2 | — | — | — | — | — |
| linux-fsl-imx51 | — | — | — | — | — |
| linux-linaro-omap | — | — | — | — | — |
| linux-linaro-shared | — | — | — | — | — |
| linux-linaro-vexpress | — | — | — | — | — |
| linux-lts-backport-maverick | — | — | — | — | — |
| linux-lts-backport-oneiric | — | — | — | — | — |
| linux-lts-quantal | — | — | — | — | — |
| linux-mvl-dove | — | — | — | — | — |
| linux-qcm-msm | — | — | — | — | — |
| linux-ti-omap4 | — | — | — | — | — |
Integer overflow in diagchar_core.c in the Qualcomm Innovation Center (QuIC) Diagnostics (aka DIAG) kernel-mode driver for Android 2.3 through 4.2 allows attackers to execute arbitrary code or cause a denial of service via an...
13 affected packages
linux-armadaxp, linux, linux-ec2, linux-fsl-imx51, linux-linaro-omap...
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| linux-armadaxp | — | — | — | — | — |
| linux | — | — | — | — | — |
| linux-ec2 | — | — | — | — | — |
| linux-fsl-imx51 | — | — | — | — | — |
| linux-linaro-omap | — | — | — | — | — |
| linux-linaro-shared | — | — | — | — | — |
| linux-linaro-vexpress | — | — | — | — | — |
| linux-lts-backport-maverick | — | — | — | — | — |
| linux-lts-backport-oneiric | — | — | — | — | — |
| linux-lts-quantal | — | — | — | — | — |
| linux-mvl-dove | — | — | — | — | — |
| linux-qcm-msm | — | — | — | — | — |
| linux-ti-omap4 | — | — | — | — | — |
diagchar_core.c in the Qualcomm Innovation Center (QuIC) Diagnostics (aka DIAG) kernel-mode driver for Android 2.3 through 4.2 allows attackers to execute arbitrary code or cause a denial of service (incorrect pointer dereference)...
13 affected packages
linux, linux-armadaxp, linux-ec2, linux-fsl-imx51, linux-linaro-omap...
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| linux | — | — | — | — | — |
| linux-armadaxp | — | — | — | — | — |
| linux-ec2 | — | — | — | — | — |
| linux-fsl-imx51 | — | — | — | — | — |
| linux-linaro-omap | — | — | — | — | — |
| linux-linaro-shared | — | — | — | — | — |
| linux-linaro-vexpress | — | — | — | — | — |
| linux-lts-backport-maverick | — | — | — | — | — |
| linux-lts-backport-oneiric | — | — | — | — | — |
| linux-lts-quantal | — | — | — | — | — |
| linux-mvl-dove | — | — | — | — | — |
| linux-qcm-msm | — | — | — | — | — |
| linux-ti-omap4 | — | — | — | — | — |
core/email_api.php in MantisBT before 1.2.12 does not properly manage the sending of e-mail notifications about restricted bugs, which might allow remote authenticated users to obtain sensitive information by adding a note to a...
1 affected package
mantis
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| mantis | — | — | — | — | — |
MantisBT before 1.2.12 does not use an expected default value during decisions about whether a user may modify the status of a bug, which allows remote authenticated users to bypass intended access restrictions and make status...
1 affected package
mantis
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| mantis | — | — | — | — | — |
Some fixes available 10 of 48
The online_pages function in mm/memory_hotplug.c in the Linux kernel before 3.6 allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact in opportunistic...
30 affected packages
linux, linux-armadaxp, linux-aws, linux-ec2, linux-flo...
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| linux | — | — | — | — | — |
| linux-armadaxp | — | — | — | — | — |
| linux-aws | — | — | — | — | — |
| linux-ec2 | — | — | — | — | — |
| linux-flo | — | — | — | — | — |
| linux-fsl-imx51 | — | — | — | — | — |
| linux-gke | — | — | — | — | — |
| linux-goldfish | — | — | — | — | — |
| linux-grouper | — | — | — | — | — |
| linux-hwe | — | — | — | — | — |
| linux-hwe-edge | — | — | — | — | — |
| linux-linaro-omap | — | — | — | — | — |
| linux-linaro-shared | — | — | — | — | — |
| linux-linaro-vexpress | — | — | — | — | — |
| linux-lts-backport-maverick | — | — | — | — | — |
| linux-lts-backport-oneiric | — | — | — | — | — |
| linux-mvl-dove | — | — | — | — | — |
| linux-lts-quantal | — | — | — | — | — |
| linux-lts-trusty | — | — | — | — | — |
| linux-lts-utopic | — | — | — | — | — |
| linux-lts-vivid | — | — | — | — | — |
| linux-lts-wily | — | — | — | — | — |
| linux-lts-xenial | — | — | — | — | — |
| linux-maguro | — | — | — | — | — |
| linux-mako | — | — | — | — | — |
| linux-manta | — | — | — | — | — |
| linux-qcm-msm | — | — | — | — | — |
| linux-raspi2 | — | — | — | — | — |
| linux-snapdragon | — | — | — | — | — |
| linux-ti-omap4 | — | — | — | — | — |
Some fixes available 3 of 22
The ip6_frag_queue function in net/ipv6/reassembly.c in the Linux kernel before 2.6.36 allows remote attackers to bypass intended network restrictions via overlapping IPv6 fragments.
14 affected packages
linux, linux-armadaxp, linux-ec2, linux-fsl-imx51, linux-linaro-omap...
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| linux | — | — | — | — | — |
| linux-armadaxp | — | — | — | — | — |
| linux-ec2 | — | — | — | — | — |
| linux-fsl-imx51 | — | — | — | — | — |
| linux-linaro-omap | — | — | — | — | — |
| linux-linaro-shared | — | — | — | — | — |
| linux-linaro-vexpress | — | — | — | — | — |
| linux-lts-backport-maverick | — | — | — | — | — |
| linux-lts-backport-oneiric | — | — | — | — | — |
| linux-lts-quantal | — | — | — | — | — |
| linux-lts-raring | — | — | — | — | — |
| linux-mvl-dove | — | — | — | — | — |
| linux-qcm-msm | — | — | — | — | — |
| linux-ti-omap4 | — | — | — | — | — |