This CPE summary could be partial or incomplete. Please contact us for a detailed listing.

Summary

Detail
Vendor Linux First view 1995-09-07
Product Linux Kernel Last view 2020-10-13
Version Type Os
Update  
Edition  
Language  
Sofware Edition  
Target Software  
Target Hardware  
Other  

Activity : Overall

COMMON PLATFORM ENUMERATION: Repartition per Version

CPE Name Affected CVE
cpe:2.3:o:linux:linux_kernel:2.6.0:*:*:*:*:*:*:* 1895
cpe:2.3:o:linux:linux_kernel:2.6.1:*:*:*:*:*:*:* 1872
cpe:2.3:o:linux:linux_kernel:2.6.2:*:*:*:*:*:*:* 1866
cpe:2.3:o:linux:linux_kernel:2.6.3:*:*:*:*:*:*:* 1863
cpe:2.3:o:linux:linux_kernel:2.6.5:*:*:*:*:*:*:* 1862
cpe:2.3:o:linux:linux_kernel:2.6.4:*:*:*:*:*:*:* 1862
cpe:2.3:o:linux:linux_kernel:2.6.6:*:*:*:*:*:*:* 1858
cpe:2.3:o:linux:linux_kernel:2.6.7:*:*:*:*:*:*:* 1857
cpe:2.3:o:linux:linux_kernel:2.6.10:*:*:*:*:*:*:* 1856
cpe:2.3:o:linux:linux_kernel:2.6.8:*:*:*:*:*:*:* 1853
cpe:2.3:o:linux:linux_kernel:2.6.11:*:*:*:*:*:*:* 1847
cpe:2.3:o:linux:linux_kernel:2.6.1:rc1:*:*:*:*:*:* 1841
cpe:2.3:o:linux:linux_kernel:2.6.1:rc2:*:*:*:*:*:* 1841
cpe:2.3:o:linux:linux_kernel:2.6.9:2.6.20:*:*:*:*:*:* 1840
cpe:2.3:o:linux:linux_kernel:2.6.11.6:*:*:*:*:*:*:* 1837
cpe:2.3:o:linux:linux_kernel:2.6.11.5:*:*:*:*:*:*:* 1837
cpe:2.3:o:linux:linux_kernel:2.6.11.7:*:*:*:*:*:*:* 1835
cpe:2.3:o:linux:linux_kernel:2.6.11.8:*:*:*:*:*:*:* 1834
cpe:2.3:o:linux:linux_kernel:2.4.0:*:*:*:*:*:*:* 1833
cpe:2.3:o:linux:linux_kernel:2.6.6:rc1:*:*:*:*:*:* 1827
cpe:2.3:o:linux:linux_kernel:2.6.7:rc1:*:*:*:*:*:* 1825
cpe:2.3:o:linux:linux_kernel:2.4.10:*:*:*:*:*:*:* 1824
cpe:2.3:o:linux:linux_kernel:2.6.0:test2:*:*:*:*:*:* 1823
cpe:2.3:o:linux:linux_kernel:2.6.0:test1:*:*:*:*:*:* 1823
cpe:2.3:o:linux:linux_kernel:2.6.0:test6:*:*:*:*:*:* 1823
cpe:2.3:o:linux:linux_kernel:2.6.8:rc3:*:*:*:*:*:* 1823
cpe:2.3:o:linux:linux_kernel:2.6.0:test4:*:*:*:*:*:* 1823
cpe:2.3:o:linux:linux_kernel:2.6.0:test8:*:*:*:*:*:* 1823
cpe:2.3:o:linux:linux_kernel:2.6.0:test9:*:*:*:*:*:* 1823
cpe:2.3:o:linux:linux_kernel:2.6.0:test5:*:*:*:*:*:* 1823
cpe:2.3:o:linux:linux_kernel:2.6.0:test7:*:*:*:*:*:* 1823
cpe:2.3:o:linux:linux_kernel:2.6.8:rc2:*:*:*:*:*:* 1823
cpe:2.3:o:linux:linux_kernel:2.6.8:rc1:*:*:*:*:*:* 1823
cpe:2.3:o:linux:linux_kernel:2.6.0:test3:*:*:*:*:*:* 1823
cpe:2.3:o:linux:linux_kernel:2.6.0:test11:*:*:*:*:*:* 1822
cpe:2.3:o:linux:linux_kernel:2.6.0:test10:*:*:*:*:*:* 1822
cpe:2.3:o:linux:linux_kernel:2.6.11.11:*:*:*:*:*:*:* 1821
cpe:2.3:o:linux:linux_kernel:2.4.3:*:*:*:*:*:*:* 1821
cpe:2.3:o:linux:linux_kernel:2.4.2:*:*:*:*:*:*:* 1821
cpe:2.3:o:linux:linux_kernel:2.4.11:*:*:*:*:*:*:* 1821
cpe:2.3:o:linux:linux_kernel:2.4.9:*:*:*:*:*:*:* 1820
cpe:2.3:o:linux:linux_kernel:2.4.8:*:*:*:*:*:*:* 1820
cpe:2.3:o:linux:linux_kernel:2.4.7:*:*:*:*:*:*:* 1820
cpe:2.3:o:linux:linux_kernel:2.4.12:*:*:*:*:*:*:* 1820
cpe:2.3:o:linux:linux_kernel:2.4.13:*:*:*:*:*:*:* 1820
cpe:2.3:o:linux:linux_kernel:2.4.1:*:*:*:*:*:*:* 1820
cpe:2.3:o:linux:linux_kernel:2.4.14:*:*:*:*:*:*:* 1820
cpe:2.3:o:linux:linux_kernel:2.4.16:*:*:*:*:*:*:* 1820
cpe:2.3:o:linux:linux_kernel:2.4.18:*:*:*:*:*:*:* 1820
cpe:2.3:o:linux:linux_kernel:2.4.15:*:*:*:*:*:*:* 1820

Related : CVE

This CPE Product have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
  Date Alert Description
7.5 2020-10-13 CVE-2020-25645

A flaw was found in the Linux kernel in versions before 5.9-rc7. Traffic between two Geneve endpoints may be unencrypted when IPsec is configured to encrypt traffic for the specific UDP port used by the GENEVE tunnel allowing anyone between the two endpoints to read the traffic unencrypted. The main threat from this vulnerability is to data confidentiality.

7.2 2020-10-06 CVE-2020-25643

A flaw was found in the HDLC_PPP module of the Linux kernel in versions before 5.9-rc7. Memory corruption and a read overflow is caused by improper input validation in the ppp_cp_parse_cr function which can cause the system to crash or cause a denial of service. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

5.5 2020-10-06 CVE-2020-25641

A flaw was found in the Linux kernel's implementation of biovecs in versions before 5.9-rc7. A zero-length biovec request issued by the block subsystem could cause the kernel to enter an infinite loop, causing a denial of service. This flaw allows a local attacker with basic privileges to issue requests to a block device, resulting in a denial of service. The highest threat from this vulnerability is to system availability.

6.5 2020-10-02 CVE-2020-26541

The Linux kernel through 5.8.13 does not properly enforce the Secure Boot Forbidden Signature Database (aka dbx) protection mechanism. This affects certs/blacklist.c and certs/system_keyring.c.

5.5 2020-09-24 CVE-2020-26088

A missing CAP_NET_RAW check in NFC socket creation in net/nfc/rawsock.c in the Linux kernel before 5.8.2 could be used by local attackers to create raw sockets, bypassing security mechanisms, aka CID-26896f01467a.

5.6 2020-09-18 CVE-2020-14390

A flaw was found in the Linux kernel in versions before 5.9-rc6. When changing screen size, an out-of-bounds memory write can occur leading to memory corruption or a denial of service. Due to the nature of the flaw, privilege escalation cannot be fully ruled out.

7.8 2020-09-16 CVE-2020-14386

A flaw was found in the Linux kernel before 5.9-rc4. Memory corruption can be exploited to gain root privileges from unprivileged processes. The highest threat from this vulnerability is to data confidentiality and integrity.

5.5 2020-09-16 CVE-2020-10781

A flaw was found in the Linux Kernel before 5.8-rc6 in the ZRAM kernel module, where a user with a local account and the ability to read the /sys/class/zram-control/hot_add file can create ZRAM device nodes in the /dev/ directory. This read allocates kernel memory and is not accounted for a user that triggers the creation of that ZRAM device. With this vulnerability, continually reading the device may consume a large amount of system memory and cause the Out-of-Memory (OOM) killer to activate and terminate random userspace processes, possibly making the system inoperable.

5.5 2020-09-16 CVE-2020-10768

A flaw was found in the Linux Kernel before 5.8-rc1 in the prctl() function, where it can be used to enable indirect branch speculation after it has been disabled. This call incorrectly reports it as being 'force disabled' when it is not and opens the system to Spectre v2 attacks. The highest threat from this vulnerability is to confidentiality.

5.5 2020-09-15 CVE-2020-14385

A flaw was found in the Linux kernel before 5.9-rc4. A failure of the file system metadata validator in XFS can cause an inode with a valid, user-creatable extended attribute to be flagged as corrupt. This can lead to the filesystem being shutdown, or otherwise rendered inaccessible until it is remounted, leading to a denial of service. The highest threat from this vulnerability is to system availability.

6.6 2020-09-15 CVE-2020-14331

A flaw was found in the Linux kernel’s implementation of the invert video code on VGA consoles when a local attacker attempts to resize the console, calling an ioctl VT_RESIZE, which causes an out-of-bounds write to occur. This flaw allows a local user with access to the VGA console to crash the system, potentially escalating their privileges on the system. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

5.5 2020-09-15 CVE-2020-14314

A memory out-of-bounds read flaw was found in the Linux kernel before 5.9-rc2 with the ext3/ext4 file system, in the way it accesses a directory with broken indexing. This flaw allows a local user to crash the system if the directory exists. The highest threat from this vulnerability is to system availability.

4.4 2020-09-15 CVE-2020-14304

A memory disclosure flaw was found in the Linux kernel's ethernet drivers, in the way it read data from the EEPROM of the device. This flaw allows a local user to read uninitialized values from the kernel memory. The highest threat from this vulnerability is to confidentiality.

5.5 2020-09-15 CVE-2020-10767

A flaw was found in the Linux kernel before 5.8-rc1 in the implementation of the Enhanced IBPB (Indirect Branch Prediction Barrier). The IBPB mitigation will be disabled when STIBP is not available or when the Enhanced Indirect Branch Restricted Speculation (IBRS) is available. This flaw allows a local attacker to perform a Spectre V2 style attack when this configuration is active. The highest threat from this vulnerability is to confidentiality.

5.5 2020-09-15 CVE-2020-10766

A logic bug flaw was found in Linux kernel before 5.8-rc1 in the implementation of SSBD. A bug in the logic handling allows an attacker with a local account to disable SSBD protection during a context switch when additional speculative execution mitigations are in place. This issue was introduced when the per task/process conditional STIPB switching was added on top of the existing SSBD switching. The highest threat from this vulnerability is to confidentiality.

6.4 2020-09-13 CVE-2020-25285

A race condition between hugetlb sysctl handlers in mm/hugetlb.c in the Linux kernel before 5.8.8 could be used by local attackers to corrupt memory, cause a NULL pointer dereference, or possibly have unspecified other impact, aka CID-17743798d812.

4.1 2020-09-13 CVE-2020-25284

The rbd block device driver in drivers/block/rbd.c in the Linux kernel through 5.8.9 used incomplete permission checking for access to rbd devices, which could be leveraged by local attackers to map or unmap rbd block devices, aka CID-f44d04e696fe.

7.8 2020-09-10 CVE-2020-25221

get_gate_page in mm/gup.c in the Linux kernel 5.7.x and 5.8.x before 5.8.7 allows privilege escalation because of incorrect reference counting (caused by gate page mishandling) of the struct page that backs the vsyscall page. The result is a refcount underflow. This can be triggered by any 64-bit process that can use ptrace() or process_vm_readv(), aka CID-9fa2dd946743.

7.8 2020-09-10 CVE-2020-25220

The Linux kernel 4.9.x before 4.9.233, 4.14.x before 4.14.194, and 4.19.x before 4.19.140 has a use-after-free because skcd->no_refcnt was not considered during a backport of a CVE-2020-14356 patch. This is related to the cgroups feature.

4.4 2020-09-10 CVE-2020-10773

A stack information leak flaw was found in s390/s390x in the Linux kernel’s memory manager functionality, where it incorrectly writes to the /proc/sys/vm/cmm_timeout file. This flaw allows a local user to see the kernel data.

7 2020-09-09 CVE-2020-25212

A TOCTOU mismatch in the NFS client code in the Linux kernel before 5.8.3 could be used by local attackers to corrupt memory or possibly have unspecified other impact because a size check is in fs/nfs/nfs4proc.c instead of fs/nfs/nfs4xdr.c, aka CID-b4487b935452.

7.1 2020-09-09 CVE-2020-25211

In the Linux kernel through 5.8.7, local attackers able to inject conntrack netlink configuration could overflow a local buffer, causing crashes or triggering use of incorrect protocol numbers in ctnetlink_parse_tuple_filter in net/netfilter/nf_conntrack_netlink.c, aka CID-1cc5ef91d2ff.

7.5 2020-09-09 CVE-2020-1749

A flaw was found in the Linux kernel's implementation of some networking protocols in IPsec, such as VXLAN and GENEVE tunnels over IPv6. When an encrypted tunnel is created between two hosts, the kernel isn't correctly routing tunneled data over the encrypted link; rather sending the data unencrypted. This would allow anyone in between the two endpoints to read the traffic unencrypted. The main threat from this vulnerability is to data confidentiality.

5.5 2020-09-03 CVE-2020-10720

A flaw was found in the Linux kernel's implementation of GRO in versions before 5.2. This flaw allows an attacker with local access to crash the system.

7.1 2020-08-19 CVE-2020-24394

In the Linux kernel before 5.7.8, fs/nfsd/vfs.c (in the NFS server) can set incorrect permissions on new filesystem objects when the filesystem lacks ACL support, aka CID-22cf8419f131. This occurs because the current umask is not considered.

CWE : Common Weakness Enumeration

This CPE Product have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
%idName
12% (254) CWE-200 Information Exposure
10% (211) CWE-119 Failure to Constrain Operations within the Bounds of a Memory Buffer
8% (172) CWE-20 Improper Input Validation
8% (171) CWE-264 Permissions, Privileges, and Access Controls
7% (157) CWE-399 Resource Management Errors
7% (150) CWE-476 NULL Pointer Dereference
6% (130) CWE-416 Use After Free
6% (125) CWE-362 Race Condition
3% (72) CWE-787 Out-of-bounds Write
3% (66) CWE-189 Numeric Errors
2% (58) CWE-125 Out-of-bounds Read
2% (57) CWE-401 Failure to Release Memory Before Removing Last Reference ('Memory L...
2% (53) CWE-190 Integer Overflow or Wraparound
2% (44) CWE-400 Uncontrolled Resource Consumption ('Resource Exhaustion')
1% (36) CWE-284 Access Control (Authorization) Issues
1% (33) CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflo...
1% (26) CWE-269 Improper Privilege Management
0% (18) CWE-772 Missing Release of Resource after Effective Lifetime
0% (15) CWE-415 Double Free
0% (13) CWE-310 Cryptographic Issues
0% (13) CWE-17 Code
0% (10) CWE-369 Divide By Zero
0% (8) CWE-19 Data Handling
0% (8) CWE-16 Configuration
0% (7) CWE-276 Incorrect Default Permissions

CAPEC : Common Attack Pattern Enumeration & Classification

This CPE Product have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
id Name
CAPEC-1 Accessing Functionality Not Properly Constrained by ACLs
CAPEC-3 Using Leading 'Ghost' Character Sequences to Bypass Input Filters
CAPEC-7 Blind SQL Injection
CAPEC-8 Buffer Overflow in an API Call
CAPEC-9 Buffer Overflow in Local Command-Line Utilities
CAPEC-10 Buffer Overflow via Environment Variables
CAPEC-13 Subverting Environment Variable Values
CAPEC-14 Client-side Injection-induced Buffer Overflow
CAPEC-17 Accessing, Modifying or Executing Executable Files
CAPEC-18 Embedding Scripts in Nonscript Elements
CAPEC-22 Exploiting Trust in Client (aka Make the Client Invisible)
CAPEC-24 Filter Failure through Buffer Overflow
CAPEC-28 Fuzzing
CAPEC-31 Accessing/Intercepting/Modifying HTTP Cookies
CAPEC-32 Embedding Scripts in HTTP Query Strings
CAPEC-39 Manipulating Opaque Client-based Data Tokens
CAPEC-42 MIME Conversion
CAPEC-43 Exploiting Multiple Input Interpretation Layers
CAPEC-44 Overflow Binary Resource File
CAPEC-45 Buffer Overflow via Symbolic Links
CAPEC-46 Overflow Variables and Tags
CAPEC-47 Buffer Overflow via Parameter Expansion
CAPEC-51 Poison Web Service Registry
CAPEC-52 Embedding NULL Bytes
CAPEC-53 Postfix, Null Terminate, and Backslash

Oval Markup Language : Definitions

This CPE Product have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
OvalID Name
oval:org.mitre.oval:def:2665 Data Leak in NIC
oval:org.mitre.oval:def:28706 Critical Patch Update January 2015
oval:org.mitre.oval:def:254 Linux Kernel ptrace Privilege Escalation Vulnerability
oval:org.mitre.oval:def:260 Netfilter Denial of Service
oval:org.mitre.oval:def:261 Linux Route Cache / Netfilter Denial of Service
oval:org.mitre.oval:def:278 Linux ioperm Privilege Restriction Vulnerability
oval:org.mitre.oval:def:309 Linux Kernel execve Race Condition Vulnerability
oval:org.mitre.oval:def:10285 The kernel strncpy function in Linux 2.4 and 2.5 does not %NUL pad the buffer...
oval:org.mitre.oval:def:327 Linux Kernel execve Read Access to Restricted File Descriptors
oval:org.mitre.oval:def:328 Linux Kernel /proc/self setuid Vulnerability
oval:org.mitre.oval:def:386 Lunix Kernel NFSv3 Procedure Kernel Panic Vulnerability
oval:org.mitre.oval:def:9406 Real time clock (RTC) routines in Linux kernel 2.4.23 and earlier do not prop...
oval:org.mitre.oval:def:859 Red Hat Kernel Real Time Clock Data Leakage
oval:org.mitre.oval:def:1013 Red Hat Enterprise 3 Kernel Real Time Clock Data Leakage
oval:org.mitre.oval:def:867 Red Hat Enterprise 3 Linux Kernel do_mremap Denial of Service Vulnerability
oval:org.mitre.oval:def:860 Red Hat Linux Kernel do_mremap Denial of Service Vulnerability
oval:org.mitre.oval:def:10189 The mremap system call (do_mremap) in Linux kernel 2.4.x before 2.4.21, and p...
oval:org.mitre.oval:def:9707 Various routines for the ppc64 architecture on Linux kernel 2.6 prior to 2.6....
oval:org.mitre.oval:def:9423 kmod in the Linux kernel does not set its uid, suid, gid, or sgid to 0, which...
oval:org.mitre.oval:def:868 Linux Kernel eflags Checking Privilege Escalation Vulnerability
oval:org.mitre.oval:def:10910 Unknown vulnerability in the eflags checking in the 32-bit ptrace emulation f...
oval:org.mitre.oval:def:9204 Unknown vulnerability in Linux kernel before 2.4.22 allows local users to gai...
oval:org.mitre.oval:def:834 Red Hat Kernel R128 DRI Limits Checking Vulnerability
oval:org.mitre.oval:def:1017 Red Hat Enterprise 3 Kernel R128 DRI Limits Checking Vulnerability
oval:org.mitre.oval:def:835 Red Hat Kernel ncp_lookup Function BO

SAINT Exploits

Description Link
Linux kernel ptrace privilege elevation vulnerability More info here
Linux kernel __sock_diag_rcv_msg Netlink message privilege elevation More info here
Ubuntu overlayfs privilege elevation More info here
Linux kernel futex_requeue privilege elevation More info here
Linux Dirty COW Local File Overwrite More info here

Open Source Vulnerability Database (OSVDB)

This CPE Product have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
id Description
78509 Linux Kernel /proc/<pid>/mem Access Restriction Weakness Local Privileg...
78303 Linux Kernel sctp_rcv() / sctp_accept() Socket Lock Race Remote DoS
78302 Linux Kernel m_stop() Implementation Local DoS
78301 Linux Kernel NSF O_Direct Implementation Local DoS
78264 Linux Kernel KVM syscall Instruction Executable Handling Local DoS
78226 Linux Kernel fs/xfs/xfs_acl.c xfs_acl_from_disk() Function Memory Corruption
78225 Linux Kernel net/ipv4/igmp.c igmp_heard_query() Function IGMP Query Parsing R...
78014 Linux Kernel SG_IO SCSI IOCTL Command Parsing Local Privilege Escalation
77780 Linux Kernel B.A.T.M.A.N. net/batman/icmp_socket.c bat_socket_read() Packet P...
77684 Linux Kernel OMAP4 Bridge Networking Interface Network Packet Parsing Remote DoS
77683 Linux Kernel HFS File System Mount Local Privilege Escalation
77658 Linux Kernel hfs_find_init() Function NULL Pointer Dereference Local DoS
77626 Linux Kernel kvm_vm_ioctl_assign_device Function /dev/kym Local DoS
77625 Linux Kernel NFSv4 Mount mknod(2) Syscall Local DoS
77485 Linux Kernel /mm/oom_kill.c Local Overflow
77452 OpenFabrics Enterprise Distribution (OFED) RDS_FLAG_CONG_BITMAP Flagged RDS M...
77450 Linux Kernel security/keys/user_defined.c user_update() Function NULL Pointer...
77360 Linux Kernel TX_SKB_SHARING Local DoS
77355 Linux Kernel clock_gettime() Call Parsing Local DoS
77295 Linux Kernel UFO IPv6 UDP Datagram Parsing Remote DoS
77294 Linux Kernel VLAN 0 Frame Priority Tag Parsing Remote DoS
77293 Linux Kernel b43 Driver Wireless Interface Frame Parsing Remote DoS
77292 Linux Kernel tpm_read() Local TPM Command Result Disclosure
77100 Linux Kernel ACL Attribute Request NFSv4 Response Parsing Local DoS
77092 Linux Kernel fs/jbd/journal.c journal_get_superblock() ext3 Image Handling Lo...

ExploitDB Exploits

This CPE Product have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
id Description
35370 Linux Kernel libfutex Local Root for RHEL/CentOS 7.0.1406
35161 Linux Local Root => 2.6.39 (32-bit & 64-bit) - Mempodipper #2
34923 Linux Kernel remount FUSE Exploit
34134 Linux Kernel ptrace/sysret - Local Privilege Escalation
33824 Linux Kernel <= 3.13 - Local Privilege Escalation PoC (gid)
33516 Linux kernel 3.14-rc1 <= 3.15-rc4 - Raw Mode PTY Local Echo Race Condition...
33336 Linux Kernel 3.3-3.8 - SOCK_DIAG Local Root Exploit
32926 Linux group_info refcounter - Overflow Memory Corruption
31574 Linux ARM - Local Root Exploit
31347 linux 3.4+ local root (CONFIG_X86_X32=y)
31346 Linux 3.4+ Arbitrary write with CONFIG_X86_X32
30605 Linux Kernel 2.6.x ALSA snd-page-alloc Local Proc File Information Disclosure...
29822 Man Command -H Flag Local Buffer Overflow Vulnerability
26489 Linux Kernel 2.6.x Sysctl Unregistration Local Denial of Service Vulnerability
26382 Linux Kernel 2.6.x IPV6 Local Denial of Service Vulnerability
26131 Linux kernel perf_swevent_init - Local root Exploit
26076 Cisco ASA < 8.4.4.6|8.2.5.32 Ethernet Information Leak
25375 KDE KMail 1.7.1 HTML EMail Remote Email Content Spoofing Vulnerability
24696 Linux Kernel 2.6.x IPTables Logging Rules Integer Underflow Vulnerability
24459 Linux Kernel /dev/ptmx Key Stroke Timing Local Disclosure
22131 Linux Kernel 2.0.x/2.2.x/2.4.x,FreeBSD 4.x Network Device Driver Frame Paddin...
18411 Mempodipper - Linux Local Root for >=2.6.39, 32-bit and 64-bit
18378 Linux IGMP Remote Denial Of Service (Introduced in linux-2.6.36)
17787 Linux Kernel < 2.6.36.2 Econet Privilege Escalation Exploit
16973 Linux <= 2.6.37-rc1 serial_core TIOCGICOUNT Leak Exploit

OpenVAS Exploits

This CPE Product have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
id Description
2013-09-18 Name : Debian Security Advisory DSA 2389-1 (linux-2.6 - privilege escalation/denial ...
File : nvt/deb_2389_1.nasl
2013-09-18 Name : Debian Security Advisory DSA 2443-1 (linux-2.6 - privilege escalation/denial ...
File : nvt/deb_2443_1.nasl
2013-09-18 Name : Debian Security Advisory DSA 2469-1 (linux-2.6 - privilege escalation/denial ...
File : nvt/deb_2469_1.nasl
2012-12-26 Name : CentOS Update for kernel CESA-2012:1580 centos6
File : nvt/gb_CESA-2012_1580_kernel_centos6.nasl
2012-12-26 Name : RedHat Update for kernel RHSA-2012:1580-01
File : nvt/gb_RHSA-2012_1580-01_kernel.nasl
2012-12-26 Name : Ubuntu Update for linux USN-1669-1
File : nvt/gb_ubuntu_USN_1669_1.nasl
2012-12-26 Name : Ubuntu Update for linux-ti-omap4 USN-1670-1
File : nvt/gb_ubuntu_USN_1670_1.nasl
2012-12-26 Name : Ubuntu Update for linux USN-1671-1
File : nvt/gb_ubuntu_USN_1671_1.nasl
2012-12-26 Name : Ubuntu Update for linux-ti-omap4 USN-1673-1
File : nvt/gb_ubuntu_USN_1673_1.nasl
2012-12-26 Name : Ubuntu Update for linux USN-1677-1
File : nvt/gb_ubuntu_USN_1677_1.nasl
2012-12-26 Name : Ubuntu Update for linux-lts-backport-oneiric USN-1678-1
File : nvt/gb_ubuntu_USN_1678_1.nasl
2012-12-26 Name : Ubuntu Update for linux-ti-omap4 USN-1679-1
File : nvt/gb_ubuntu_USN_1679_1.nasl
2012-12-18 Name : Fedora Update for kernel FEDORA-2012-20240
File : nvt/gb_fedora_2012_20240_kernel_fc16.nasl
2012-12-14 Name : Ubuntu Update for linux-ec2 USN-1664-1
File : nvt/gb_ubuntu_USN_1664_1.nasl
2012-12-11 Name : Ubuntu Update for linux USN-1660-1
File : nvt/gb_ubuntu_USN_1660_1.nasl
2012-12-11 Name : Ubuntu Update for linux USN-1661-1
File : nvt/gb_ubuntu_USN_1661_1.nasl
2012-12-06 Name : CentOS Update for kernel CESA-2012:1540 centos5
File : nvt/gb_CESA-2012_1540_kernel_centos5.nasl
2012-12-06 Name : RedHat Update for kernel RHSA-2012:1540-01
File : nvt/gb_RHSA-2012_1540-01_kernel.nasl
2012-12-06 Name : Ubuntu Update for linux-ec2 USN-1653-1
File : nvt/gb_ubuntu_USN_1653_1.nasl
2012-12-04 Name : Fedora Update for kernel FEDORA-2012-19337
File : nvt/gb_fedora_2012_19337_kernel_fc17.nasl
2012-12-04 Name : Ubuntu Update for linux USN-1644-1
File : nvt/gb_ubuntu_USN_1644_1.nasl
2012-12-04 Name : Ubuntu Update for linux-ti-omap4 USN-1645-1
File : nvt/gb_ubuntu_USN_1645_1.nasl
2012-12-04 Name : Ubuntu Update for linux USN-1646-1
File : nvt/gb_ubuntu_USN_1646_1.nasl
2012-12-04 Name : Ubuntu Update for linux-ti-omap4 USN-1647-1
File : nvt/gb_ubuntu_USN_1647_1.nasl
2012-12-04 Name : Ubuntu Update for linux USN-1648-1
File : nvt/gb_ubuntu_USN_1648_1.nasl

Information Assurance Vulnerability Management (IAVM)

id Description
2015-A-0150 Multiple Security Vulnerabilities in Juniper Networks CTPView
Severity: Category I - VMSKEY: V0061073
2014-B-0145 HP Operations Manager Remote Code Execution Vulnerabilities
Severity: Category I - VMSKEY: V0056563
2012-A-0153 Multiple Vulnerabilities in VMware ESX 4.0 and ESXi 4.0
Severity: Category I - VMSKEY: V0033884
2012-A-0148 Multiple Vulnerabilities in VMware ESXi 4.1 and ESX 4.1
Severity: Category I - VMSKEY: V0033794
2012-A-0136 Multiple Vulnerabilities in Juniper Network Management Products
Severity: Category I - VMSKEY: V0033662
2012-A-0073 Multiple Vulnerabilities in VMware ESXi 4.1 and ESX 4.1
Severity: Category I - VMSKEY: V0032171
2012-A-0056 Multiple Vulnerabilities in VMWare ESX 4.0 and ESXi 4.0
Severity: Category I - VMSKEY: V0031979
2012-A-0020 Multiple Vulnerabilities in VMware ESX 4.1 and ESXi 4.1
Severity: Category I - VMSKEY: V0031252
2011-A-0147 Multiple Vulnerabilities in VMware ESX and ESXi
Severity: Category I - VMSKEY: V0030545
2011-A-0075 Multiple Vulnerabilities in VMware Products
Severity: Category I - VMSKEY: V0028311
2011-A-0066 Multiple Vulnerabilities in VMware Products
Severity: Category I - VMSKEY: V0027158
2010-B-0085 Linux Kernel Privilege Escalation Vulnerability
Severity: Category I - VMSKEY: V0025410
2010-A-0037 Multiple Vulnerabilities in Linux Kernel
Severity: Category I - VMSKEY: V0022704
2010-A-0015 Multiple Vulnerabilities in Red Hat Linux Kernel
Severity: Category I - VMSKEY: V0022631
2010-A-0001 Multiple Vulnerabilities in Linux Kernel
Severity: Category I - VMSKEY: V0022180
2009-A-0105 Multiple Vulnerabilities in VMware Products
Severity: Category I - VMSKEY: V0021867
2009-T-0024 Multiple Vulnerabilities in Linux Kernel
Severity: Category I - VMSKEY: V0018983

Snort® IPS/IDS

This CPE Product have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
Date Description
2014-01-10 record route rr denial of service attempt
RuleID : 8730 - Type : PROTOCOL-ICMP - Revision : 6
2014-01-10 IPv6 packets encapsulated in IPv4
RuleID : 8446 - Type : POLICY-OTHER - Revision : 8
2014-01-10 kernel SCTP chunkless packet denial of service attempt
RuleID : 7021 - Type : OS-LINUX - Revision : 9
2014-01-10 root directory
RuleID : 520-community - Type : PROTOCOL-TFTP - Revision : 13
2014-01-10 root directory
RuleID : 520 - Type : PROTOCOL-TFTP - Revision : 13
2014-01-10 parent directory
RuleID : 519-community - Type : PROTOCOL-TFTP - Revision : 15
2014-01-10 parent directory
RuleID : 519 - Type : PROTOCOL-TFTP - Revision : 15
2014-01-10 Put
RuleID : 518-community - Type : PROTOCOL-TFTP - Revision : 16
2014-01-10 Put
RuleID : 518 - Type : PROTOCOL-TFTP - Revision : 16
2019-09-26 Google Android Kernel local denial of service attempt
RuleID : 51291 - Type : OS-MOBILE - Revision : 1
2019-09-26 Google Android Kernel local denial of service attempt
RuleID : 51290 - Type : OS-MOBILE - Revision : 1
2019-01-15 DECODE_TCP_INVALID_OFFSET
RuleID : 46 - Type : DECODE_TCP_INVALID_OFFSET - Revision : 1
2014-01-10 DECODE_ICMP_DOS_ATTEMPT
RuleID : 452 - Type : DECODE_ICMP_DOS_ATTEMPT - Revision : 1
2017-11-21 Linux kernel nfsd nfsd4_layout_verify out of bounds read attempt
RuleID : 44638 - Type : PROTOCOL-RPC - Revision : 1
2017-11-21 Linux kernel nfsd nfsd4_layout_verify out of bounds read attempt
RuleID : 44637 - Type : PROTOCOL-RPC - Revision : 1
2017-10-10 Linux kernel sctp_rcv_ootb invalid chunk length DoS attempt
RuleID : 44309 - Type : OS-LINUX - Revision : 1
2017-10-10 Linux kernel sctp_rcv_ootb invalid chunk length DoS attempt
RuleID : 44308 - Type : OS-LINUX - Revision : 1
2017-08-24 Linux kernel SCTP invalid chunk length denial of service attempt
RuleID : 43692 - Type : OS-LINUX - Revision : 1
2017-07-18 Linux kernel NFSv3 malformed WRITE arbitrary memory read attempt
RuleID : 43189 - Type : PROTOCOL-RPC - Revision : 2
2017-07-18 Linux kernel NFSv2 malformed WRITE arbitrary memory read attempt
RuleID : 43188 - Type : PROTOCOL-RPC - Revision : 2
2017-05-04 Foscam IP Camera command injection attempt
RuleID : 42434 - Type : SERVER-WEBAPP - Revision : 7
2017-05-04 Foscam IP Camera command injection attempt
RuleID : 42433 - Type : SERVER-WEBAPP - Revision : 7
2017-05-04 Foscam IP Camera command injection attempt
RuleID : 42432 - Type : SERVER-WEBAPP - Revision : 8
2017-01-18 Linux net af_packet.c tpacket version race condition use after free attempt
RuleID : 41028 - Type : OS-LINUX - Revision : 2
2017-01-18 Linux net af_packet.c tpacket version race condition use after free attempt
RuleID : 41027 - Type : OS-LINUX - Revision : 2

Nessus® Vulnerability Scanner

This CPE Product have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
id Description
2019-01-17 Name: The remote Fedora host is missing one or more security updates.
File: fedora_2019-509c133845.nasl - Type: ACT_GATHER_INFO
2019-01-17 Name: The remote Fedora host is missing one or more security updates.
File: fedora_2019-f812c9fb22.nasl - Type: ACT_GATHER_INFO
2019-01-15 Name: The remote Fedora host is missing one or more security updates.
File: fedora_2019-337484d88b.nasl - Type: ACT_GATHER_INFO
2019-01-15 Name: The remote Fedora host is missing one or more security updates.
File: fedora_2019-b0f7a7b74b.nasl - Type: ACT_GATHER_INFO
2019-01-14 Name: The remote Virtuozzo host is missing multiple security updates.
File: Virtuozzo_VZA-2016-104.nasl - Type: ACT_GATHER_INFO
2019-01-14 Name: The remote Amazon Linux AMI host is missing a security update.
File: ala_ALAS-2019-1145.nasl - Type: ACT_GATHER_INFO
2019-01-11 Name: The remote Virtuozzo host is missing a security update.
File: Virtuozzo_VZA-2018-072.nasl - Type: ACT_GATHER_INFO
2019-01-11 Name: The remote Virtuozzo host is missing multiple security updates.
File: Virtuozzo_VZA-2018-075.nasl - Type: ACT_GATHER_INFO
2019-01-11 Name: The remote Virtuozzo host is missing a security update.
File: Virtuozzo_VZA-2018-077.nasl - Type: ACT_GATHER_INFO
2019-01-11 Name: The remote Virtuozzo host is missing a security update.
File: Virtuozzo_VZA-2018-085.nasl - Type: ACT_GATHER_INFO
2019-01-11 Name: The remote Virtuozzo host is missing a security update.
File: Virtuozzo_VZA-2018-089.nasl - Type: ACT_GATHER_INFO
2019-01-10 Name: The remote Amazon Linux 2 host is missing a security update.
File: al2_ALAS-2019-1145.nasl - Type: ACT_GATHER_INFO
2019-01-10 Name: The remote device is affected by multiple vulnerabilities.
File: juniper_space_jsa10917_183R1.nasl - Type: ACT_GATHER_INFO
2019-01-10 Name: The remote device is affected by multiple vulnerabilities.
File: juniper_space_jsa10917_184R1.nasl - Type: ACT_GATHER_INFO
2019-01-03 Name: The remote Fedora host is missing one or more security updates.
File: fedora_2018-0edb45d9db.nasl - Type: ACT_GATHER_INFO
2019-01-03 Name: The remote Fedora host is missing one or more security updates.
File: fedora_2018-1621b2204a.nasl - Type: ACT_GATHER_INFO
2019-01-03 Name: The remote Fedora host is missing one or more security updates.
File: fedora_2018-2645eb8dab.nasl - Type: ACT_GATHER_INFO
2019-01-03 Name: The remote Fedora host is missing one or more security updates.
File: fedora_2018-272cf2f9f4.nasl - Type: ACT_GATHER_INFO
2019-01-03 Name: The remote Fedora host is missing one or more security updates.
File: fedora_2018-2c6bd93875.nasl - Type: ACT_GATHER_INFO
2019-01-03 Name: The remote Fedora host is missing one or more security updates.
File: fedora_2018-3857a8b41a.nasl - Type: ACT_GATHER_INFO
2019-01-03 Name: The remote Fedora host is missing a security update.
File: fedora_2018-50075276e8.nasl - Type: ACT_GATHER_INFO
2019-01-03 Name: The remote Fedora host is missing a security update.
File: fedora_2018-537c8312fc.nasl - Type: ACT_GATHER_INFO
2019-01-03 Name: The remote Fedora host is missing one or more security updates.
File: fedora_2018-5453baa4af.nasl - Type: ACT_GATHER_INFO
2019-01-03 Name: The remote Fedora host is missing one or more security updates.
File: fedora_2018-5904d0794d.nasl - Type: ACT_GATHER_INFO
2019-01-03 Name: The remote Fedora host is missing a security update.
File: fedora_2018-5926c0ffc8.nasl - Type: ACT_GATHER_INFO