VYPR

rpm package

suse/kernel-source&distro=SUSE Linux Enterprise Server 12 SP3

pkg:rpm/suse/kernel-source&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP3

Vulnerabilities (174)

  • CVE-2017-8824HigDec 5, 2017
    affected < 4.4.103-6.33.1fixed 4.4.103-6.33.1

    The dccp_disconnect function in net/dccp/proto.c in the Linux kernel through 4.14.3 allows local users to gain privileges or cause a denial of service (use-after-free) via an AF_UNSPEC connect system call during the DCCP_LISTEN state.

  • CVE-2017-1000405HigNov 30, 2017
    affected < 4.4.92-6.30.1fixed 4.4.92-6.30.1

    The Linux Kernel versions 2.6.38 through 4.14 have a problematic use of pmd_mkdirty() in the touch_pmd() function inside the THP implementation. touch_pmd() can be reached by get_user_pages(). In such case, the pmd will become dirty. This scenario breaks the new can_follow_write_

  • CVE-2017-16994MedNov 27, 2017
    affected < 4.4.103-6.33.1fixed 4.4.103-6.33.1

    The walk_hugetlb_range function in mm/pagewalk.c in the Linux kernel before 4.14.2 mishandles holes in hugetlb ranges, which allows local users to obtain sensitive information from uninitialized kernel memory via crafted use of the mincore() system call.

  • CVE-2017-16939HigNov 24, 2017
    affected < 4.4.92-6.30.1fixed 4.4.92-6.30.1

    The XFRM dump policy implementation in net/xfrm/xfrm_user.c in the Linux kernel before 4.13.11 allows local users to gain privileges or cause a denial of service (use-after-free) via a crafted SO_RCVBUF setsockopt system call in conjunction with XFRM_MSG_GETPOLICY Netlink message

  • CVE-2017-12193MedNov 22, 2017
    affected < 4.4.103-6.33.1fixed 4.4.103-6.33.1

    The assoc_array_insert_into_terminal_node function in lib/assoc_array.c in the Linux kernel before 4.13.11 mishandles node splitting, which allows local users to cause a denial of service (NULL pointer dereference and panic) via a crafted application, as demonstrated by the keyri

  • CVE-2017-15115HigNov 15, 2017
    affected < 4.4.103-6.33.1fixed 4.4.103-6.33.1

    The sctp_do_peeloff function in net/sctp/socket.c in the Linux kernel before 4.14 does not check whether the intended netns is used in a peel-off action, which allows local users to cause a denial of service (use-after-free and system crash) or possibly have unspecified other imp

  • CVE-2017-16646MedNov 7, 2017
    affected < 4.4.103-6.33.1fixed 4.4.103-6.33.1

    drivers/media/usb/dvb-usb/dib0700_devices.c in the Linux kernel through 4.13.11 allows local users to cause a denial of service (BUG and system crash) or possibly have unspecified other impact via a crafted USB device.

  • CVE-2017-16645MedNov 7, 2017
    affected < 4.4.103-6.33.1fixed 4.4.103-6.33.1

    The ims_pcu_get_cdc_union_desc function in drivers/input/misc/ims-pcu.c in the Linux kernel through 4.13.11 allows local users to cause a denial of service (ims_pcu_parse_cdc_data out-of-bounds read and system crash) or possibly have unspecified other impact via a crafted USB dev

  • CVE-2017-16644MedNov 7, 2017
    affected < 4.4.120-94.17.1fixed 4.4.120-94.17.1

    The hdpvr_probe function in drivers/media/usb/hdpvr/hdpvr-core.c in the Linux kernel through 4.13.11 allows local users to cause a denial of service (improper error handling and system crash) or possibly have unspecified other impact via a crafted USB device.

  • CVE-2017-16537MedNov 4, 2017
    affected < 4.4.103-6.33.1fixed 4.4.103-6.33.1

    The imon_probe function in drivers/media/rc/imon.c in the Linux kernel through 4.13.11 allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact via a crafted USB device.

  • CVE-2017-16536MedNov 4, 2017
    affected < 4.4.103-6.33.1fixed 4.4.103-6.33.1

    The cx231xx_usb_probe function in drivers/media/usb/cx231xx/cx231xx-cards.c in the Linux kernel through 4.13.11 allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact via a crafted USB device.

  • CVE-2017-16528MedNov 4, 2017
    affected < 4.4.103-6.33.1fixed 4.4.103-6.33.1

    sound/core/seq_device.c in the Linux kernel before 4.13.4 allows local users to cause a denial of service (snd_rawmidi_dev_seq_free use-after-free and system crash) or possibly have unspecified other impact via a crafted USB device.

  • CVE-2017-15951HigOct 28, 2017
    affected < 4.4.120-94.17.1fixed 4.4.120-94.17.1

    The KEYS subsystem in the Linux kernel before 4.13.10 does not correctly synchronize the actions of updating versus finding a key in the "negative" state to avoid a race condition, which allows local users to cause a denial of service or possibly have unspecified other impact via

  • CVE-2017-15649HigOct 19, 2017
    affected < 4.4.92-6.18.1fixed 4.4.92-6.18.1

    net/packet/af_packet.c in the Linux kernel before 4.13.6 allows local users to gain privileges via crafted system calls that trigger mishandling of packet_fanout data structures, because of a race condition (involving fanout_add and packet_do_bind) that leads to a use-after-free,

  • CVE-2017-13080MedOct 17, 2017
    affected < 4.4.92-6.18.1fixed 4.4.92-6.18.1

    Wi-Fi Protected Access (WPA and WPA2) allows reinstallation of the Group Temporal Key (GTK) during the group key handshake, allowing an attacker within radio range to replay frames from access points to clients.

  • CVE-2017-15265HigOct 16, 2017
    affected < 4.4.92-6.18.1fixed 4.4.92-6.18.1

    Race condition in the ALSA subsystem in the Linux kernel before 4.13.8 allows local users to cause a denial of service (use-after-free) or possibly have unspecified other impact via crafted /dev/snd/seq ioctl calls, related to sound/core/seq/seq_clientmgr.c and sound/core/seq/seq

  • CVE-2017-1000112HigOct 5, 2017
    affected < 4.4.82-6.3.1fixed 4.4.82-6.3.1

    Linux kernel: Exploitable memory corruption due to UFO to non-UFO path switch. When building a UFO packet with MSG_MORE __ip_append_data() calls ip_ufo_append_data() to append. However in between two send() calls, the append path can be switched from UFO to non-UFO one, which lea

  • CVE-2017-1000111HigOct 5, 2017
    affected < 4.4.82-6.3.1fixed 4.4.82-6.3.1

    Linux kernel: heap out-of-bounds in AF_PACKET sockets. This new issue is analogous to previously disclosed CVE-2016-8655. In both cases, a socket option that changes socket state may race with safety checks in packet_set_ring. Previously with PACKET_VERSION. This time with PACKET

  • CVE-2017-12154HigSep 26, 2017
    affected < 4.4.92-6.18.1fixed 4.4.92-6.18.1

    The prepare_vmcs02 function in arch/x86/kvm/vmx.c in the Linux kernel through 4.13.3 does not ensure that the "CR8-load exiting" and "CR8-store exiting" L0 vmcs02 controls exist in cases where L1 omits the "use TPR shadow" vmcs12 control, which allows KVM L2 guest OS users to obt

  • CVE-2017-1000252MedSep 26, 2017
    affected < 4.4.92-6.18.1fixed 4.4.92-6.18.1

    The KVM subsystem in the Linux kernel through 4.13.3 allows guest OS users to cause a denial of service (assertion failure, and hypervisor hang or crash) via an out-of bounds guest_irq value, related to arch/x86/kvm/vmx.c and virt/kvm/eventfd.c.

Page 8 of 9