Vulnerabilities > Linux > Linux Kernel > Medium

DATE CVE VULNERABILITY TITLE RISK
2017-01-12 CVE-2016-8401 Information Exposure vulnerability in Linux Kernel 3.10/3.18
An information disclosure vulnerability in kernel components including the ION subsystem, Binder, USB driver and networking subsystem could enable a local malicious application to access data outside of its permission levels.
local
high complexity
linux CWE-200
4.7
2017-01-12 CVE-2016-8400 Information Exposure vulnerability in Linux Kernel 3.18
An information disclosure vulnerability in the NVIDIA librm library (libnvrm) could enable a local malicious application to access data outside of its permission levels.
local
low complexity
linux CWE-200
5.5
2017-01-12 CVE-2016-8397 Information Exposure vulnerability in Linux Kernel 3.10
An information disclosure vulnerability in the NVIDIA video driver could enable a local malicious application to access data outside of its permission levels.
local
low complexity
linux CWE-200
5.5
2017-01-12 CVE-2016-8395 Unspecified vulnerability in Linux Kernel 3.10
A denial of service vulnerability in the NVIDIA camera driver could enable an attacker to cause a local permanent denial of service, which may require reflashing the operating system to repair the device.
local
high complexity
linux
4.7
2017-01-12 CVE-2016-6757 Information Exposure vulnerability in Linux Kernel 3.10/3.18
An information disclosure vulnerability in Qualcomm components including the camera driver and video driver could enable a local malicious application to access data outside of its permission levels.
local
high complexity
linux CWE-200
4.7
2017-01-12 CVE-2016-6756 Information Exposure vulnerability in Linux Kernel 3.10/3.18
An information disclosure vulnerability in Qualcomm components including the camera driver and video driver could enable a local malicious application to access data outside of its permission levels.
local
high complexity
linux CWE-200
4.7
2016-12-28 CVE-2016-9756 Information Exposure vulnerability in Linux Kernel
arch/x86/kvm/emulate.c in the Linux kernel before 4.8.12 does not properly initialize Code Segment (CS) in certain error cases, which allows local users to obtain sensitive information from kernel stack memory via a crafted application.
local
low complexity
linux CWE-200
5.5
2016-12-28 CVE-2016-9685 Resource Exhaustion vulnerability in Linux Kernel
Multiple memory leaks in error paths in fs/xfs/xfs_attr_list.c in the Linux kernel before 4.5.1 allow local users to cause a denial of service (memory consumption) via crafted XFS filesystem operations.
local
low complexity
linux CWE-400
5.5
2016-12-28 CVE-2016-9588 7PK - Errors vulnerability in Linux Kernel
arch/x86/kvm/vmx.c in the Linux kernel through 4.9 mismanages the #BP and #OF exceptions, which allows guest OS users to cause a denial of service (guest OS crash) by declining to handle an exception thrown by an L2 guest.
local
low complexity
linux CWE-388
5.5
2016-12-28 CVE-2016-6213 Resource Exhaustion vulnerability in Linux Kernel
fs/namespace.c in the Linux kernel before 4.9 does not restrict how many mounts may exist in a mount namespace, which allows local users to cause a denial of service (memory consumption and deadlock) via MS_BIND mount system calls, as demonstrated by a loop that triggers exponential growth in the number of mounts.
local
high complexity
linux CWE-400
4.7