VYPR

rpm package

almalinux/kernel-tools-libs-devel

pkg:rpm/almalinux/kernel-tools-libs-devel

Vulnerabilities (1,699)

  • CVE-2020-27835MedJan 7, 2021
    affected < 4.18.0-305.el8fixed 4.18.0-305.el8

    A use after free in the Linux kernel infiniband hfi1 driver in versions prior to 5.10-rc6 was found in the way user calls Ioctl after open dev file and fork. A local user could use this flaw to crash the system.

  • CVE-2020-36158HigJan 5, 2021
    affected < 4.18.0-348.el8fixed 4.18.0-348.el8

    mwifiex_cmd_802_11_ad_hoc_start in drivers/net/wireless/marvell/mwifiex/join.c in the Linux kernel through 5.10.4 might allow remote attackers to execute arbitrary code via a long SSID value, aka CID-5c455c5ab332.

  • CVE-2020-27777MedDec 15, 2020
    affected < 4.18.0-348.el8fixed 4.18.0-348.el8

    A flaw was found in the way RTAS handled memory accesses in userspace to kernel communication. On a locked down (usually due to Secure Boot) guest system running on top of PowerVM or KVM hypervisors (pseries platform) a root like local user could use this flaw to further increase

  • CVE-2020-0466HigDec 14, 2020
    affected < 4.18.0-240.22.1.el8_3fixed 4.18.0-240.22.1.el8_3

    In do_epoll_ctl and ep_loop_check_proc of eventpoll.c, there is a possible use after free due to a logic error. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersion

  • CVE-2020-27786HigDec 11, 2020
    affected < 4.18.0-305.el8fixed 4.18.0-305.el8

    A flaw was found in the Linux kernel’s implementation of MIDI, where an attacker with a local account and the permissions to issue ioctl commands to midi devices could trigger a use-after-free issue. A write to this specific memory while freed and before use causes the flow of ex

  • CVE-2020-29661HigDec 9, 2020
    affected < 4.18.0-240.15.1.el8_3fixed 4.18.0-240.15.1.el8_3

    A locking issue was discovered in the tty subsystem of the Linux kernel through 5.9.13. drivers/tty/tty_jobctrl.c allows a use-after-free attack against TIOCSPGRP, aka CID-54ffccbf053b.

  • CVE-2020-29660MedDec 9, 2020
    affected < 4.18.0-348.el8fixed 4.18.0-348.el8

    A locking inconsistency issue was discovered in the tty subsystem of the Linux kernel through 5.9.13. drivers/tty/tty_io.c and drivers/tty/tty_jobctrl.c may allow a read-after-free attack against TIOCGSID, aka CID-c8bcd9c5be24.

  • CVE-2020-14381HigDec 3, 2020
    affected < 4.18.0-240.el8fixed 4.18.0-240.el8

    A flaw was found in the Linux kernel’s futex implementation. This flaw allows a local attacker to corrupt system memory or escalate their privileges when creating a futex on a filesystem that is about to be unmounted. The highest threat from this vulnerability is to confidentiali

  • CVE-2020-14351HigDec 3, 2020
    affected < 4.18.0-240.15.1.el8_3fixed 4.18.0-240.15.1.el8_3

    A flaw was found in the Linux kernel. A use-after-free memory flaw was found in the perf subsystem allowing a local attacker with permission to monitor perf events to corrupt memory and possibly escalate privileges. The highest threat from this vulnerability is to data confidenti

  • CVE-2020-25704MedDec 2, 2020
    affected < 4.18.0-305.el8fixed 4.18.0-305.el8

    A flaw memory leak in the Linux kernel performance monitoring subsystem was found in the way if using PERF_EVENT_IOC_SET_FILTER. A local user could use this flaw to starve the resources causing denial of service.

  • CVE-2020-29368HigNov 28, 2020
    affected < 4.18.0-348.el8fixed 4.18.0-348.el8

    An issue was discovered in __split_huge_pmd in mm/huge_memory.c in the Linux kernel before 5.7.5. The copy-on-write implementation can grant unintended write access because of a race condition in a THP mapcount check, aka CID-c444eb564fb1.

  • CVE-2020-15437MedNov 23, 2020
    affected < 4.18.0-305.el8fixed 4.18.0-305.el8

    The Linux kernel before version 5.8 is vulnerable to a NULL pointer dereference in drivers/tty/serial/8250/8250_core.c:serial8250_isa_init_ports() that allows local users to cause a denial of service by using the p->serial_in pointer which uninitialized.

  • CVE-2020-28974MedNov 20, 2020
    affected < 4.18.0-305.el8fixed 4.18.0-305.el8

    A slab-out-of-bounds read in fbcon in the Linux kernel before 5.9.7 could be used by local attackers to read privileged information or potentially crash the kernel, aka CID-3c4e0dff2095. This occurs because KD_FONT_OP_COPY in drivers/tty/vt/vt.c can be used for manipulations such

  • CVE-2020-4788MedNov 20, 2020
    affected < 4.18.0-372.9.1.el8fixed 4.18.0-372.9.1.el8

    IBM Power9 (AIX 7.1, 7.2, and VIOS 3.1) processors could allow a local user to obtain sensitive information from the data in the L1 cache under extenuating circumstances. IBM X-Force ID: 189296.

  • CVE-2020-28915MedNov 18, 2020
    affected < 4.18.0-372.13.1.el8_6fixed 4.18.0-372.13.1.el8_6

    A buffer over-read (at the framebuffer layer) in the fbcon code in the Linux kernel before 5.8.15 could be used by local attackers to read kernel memory, aka CID-6735b4632def.

  • CVE-2020-25705HigNov 17, 2020
    affected < 4.18.0-240.15.1.el8_3fixed 4.18.0-240.15.1.el8_3

    A flaw in ICMP packets in the Linux kernel may allow an attacker to quickly scan open UDP ports. This flaw allows an off-path remote attacker to effectively bypass source port UDP randomization. Software that relies on UDP source port randomization are indirectly affected as well

  • CVE-2020-27152MedNov 6, 2020
    affected < 4.18.0-240.22.1.el8_3fixed 4.18.0-240.22.1.el8_3

    An issue was discovered in ioapic_lazy_update_eoi in arch/x86/kvm/ioapic.c in the Linux kernel before 5.9.2. It has an infinite loop related to improper interaction between a resampler and edge triggering, aka CID-77377064c3a9.

  • CVE-2020-25643HigOct 6, 2020
    affected < 4.18.0-305.el8fixed 4.18.0-305.el8

    A flaw was found in the HDLC_PPP module of the Linux kernel in versions before 5.9-rc7. Memory corruption and a read overflow is caused by improper input validation in the ppp_cp_parse_cr function which can cause the system to crash or cause a denial of service. The highest threa

  • CVE-2020-25641MedOct 6, 2020
    affected < 4.18.0-240.el8fixed 4.18.0-240.el8

    A flaw was found in the Linux kernel's implementation of biovecs in versions before 5.9-rc7. A zero-length biovec request issued by the block subsystem could cause the kernel to enter an infinite loop, causing a denial of service. This flaw allows a local attacker with basic priv

  • CVE-2020-26541MedOct 2, 2020
    affected < 4.18.0-305.7.1.el8_4fixed 4.18.0-305.7.1.el8_4

    The Linux kernel through 5.8.13 does not properly enforce the Secure Boot Forbidden Signature Database (aka dbx) protection mechanism. This affects certs/blacklist.c and certs/system_keyring.c.

Page 82 of 85