Vulnerabilities > Linux > Linux Kernel > 6.1.72
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-07-21 | CVE-2023-3609 | Use After Free vulnerability in multiple products A use-after-free vulnerability in the Linux kernel's net/sched: cls_u32 component can be exploited to achieve local privilege escalation. If tcf_change_indev() fails, u32_set_parms() will immediately return an error after incrementing or decrementing the reference counter in tcf_bind_filter(). | 7.8 |
2023-07-18 | CVE-2023-0160 | Improper Locking vulnerability in multiple products A deadlock flaw was found in the Linux kernel’s BPF subsystem. | 5.5 |
2023-07-17 | CVE-2023-38409 | Unspecified vulnerability in Linux Kernel An issue was discovered in set_con2fb_map in drivers/video/fbdev/core/fbcon.c in the Linux kernel before 6.2.12. | 5.5 |
2023-07-06 | CVE-2023-37453 | Out-of-bounds Read vulnerability in Linux Kernel An issue was discovered in the USB subsystem in the Linux kernel through 6.4.2. | 4.6 |
2023-07-06 | CVE-2023-37454 | Use After Free vulnerability in Linux Kernel An issue was discovered in the Linux kernel through 6.4.2. | 5.5 |
2023-06-30 | CVE-2023-1206 | Resource Exhaustion vulnerability in multiple products A hash collision flaw was found in the IPv6 connection lookup table in the Linux kernel’s IPv6 functionality when a user makes a new kind of SYN flood attack. | 5.7 |
2023-06-30 | CVE-2023-3338 | NULL Pointer Dereference vulnerability in multiple products A null pointer dereference flaw was found in the Linux kernel's DECnet networking protocol. | 6.5 |
2023-06-28 | CVE-2023-3358 | NULL Pointer Dereference vulnerability in Linux Kernel A null pointer dereference was found in the Linux kernel's Integrated Sensor Hub (ISH) driver. | 5.5 |
2023-06-28 | CVE-2023-3359 | NULL Pointer Dereference vulnerability in Linux Kernel An issue was discovered in the Linux kernel brcm_nvram_parse in drivers/nvmem/brcm_nvram.c. | 5.5 |
2023-06-28 | CVE-2023-3389 | Use After Free vulnerability in multiple products A use-after-free vulnerability in the Linux Kernel io_uring subsystem can be exploited to achieve local privilege escalation. Racing a io_uring cancel poll request with a linked timeout can cause a UAF in a hrtimer. We recommend upgrading past commit ef7dfac51d8ed961b742218f526bd589f3900a59 (4716c73b188566865bdd79c3a6709696a224ac04 for 5.10 stable and 0e388fce7aec40992eadee654193cad345d62663 for 5.15 stable). | 7.8 |