Vulnerabilities > Linux

DATE CVE VULNERABILITY TITLE RISK
2017-02-14 CVE-2017-5967 Information Exposure vulnerability in Linux Kernel
The time subsystem in the Linux kernel through 4.9.9, when CONFIG_TIMER_STATS is enabled, allows local users to discover real PID values (as distinguished from PID values inside a PID namespace) by reading the /proc/timer_list file, related to the print_timer function in kernel/time/timer_list.c and the __timer_stats_timer_set_start_info function in kernel/time/timer.c.
local
low complexity
linux CWE-200
4.0
2017-02-08 CVE-2017-0451 Information Exposure vulnerability in multiple products
An information disclosure vulnerability in the Qualcomm sound driver could enable a local malicious application to access data outside of its permission levels.
local
high complexity
google linux CWE-200
4.7
2017-02-08 CVE-2017-0449 An elevation of privilege vulnerability in the Broadcom Wi-Fi driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
local
high complexity
google linux
7.0
2017-02-08 CVE-2017-0448 Information Exposure vulnerability in multiple products
An information disclosure vulnerability in the NVIDIA video driver could enable a local malicious application to access data outside of its permission levels.
local
low complexity
google linux CWE-200
5.5
2017-02-08 CVE-2017-0447 An elevation of privilege vulnerability in the HTC touchscreen driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
local
high complexity
google linux
7.0
2017-02-08 CVE-2017-0446 An elevation of privilege vulnerability in the HTC touchscreen driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
local
high complexity
google linux
7.0
2017-02-08 CVE-2017-0445 An elevation of privilege vulnerability in the HTC touchscreen driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
local
high complexity
google linux
7.0
2017-02-08 CVE-2017-0444 An elevation of privilege vulnerability in the Realtek sound driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
local
high complexity
google linux
7.0
2017-02-08 CVE-2017-0443 An elevation of privilege vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
local
high complexity
linux google
7.0
2017-02-08 CVE-2017-0442 Classic Buffer Overflow vulnerability in multiple products
An elevation of privilege vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
local
high complexity
google linux CWE-120
7.0