Vulnerabilities > Linux > Critical

DATE CVE VULNERABILITY TITLE RISK
2017-01-12 CVE-2016-8459 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Linux Kernel 3.18
Possible buffer overflow in storage subsystem.
network
low complexity
linux CWE-119
critical
10.0
2017-01-12 CVE-2016-8455 Permissions, Privileges, and Access Controls vulnerability in Linux Kernel 3.10
An elevation of privilege vulnerability in the Broadcom Wi-Fi driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
network
linux CWE-264
critical
9.3
2017-01-12 CVE-2016-8440 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Linux Kernel 3.18
Possible buffer overflow in SMMU system call.
network
low complexity
linux CWE-119
critical
10.0
2017-01-12 CVE-2016-8439 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Linux Kernel 3.18
Possible buffer overflow in trust zone access control API.
network
low complexity
linux CWE-119
critical
10.0
2017-01-12 CVE-2016-8438 Integer Overflow or Wraparound vulnerability in Linux Kernel 3.18
Integer overflow leading to a TOCTOU condition in hypervisor PIL.
network
low complexity
linux CWE-190
critical
10.0
2017-01-12 CVE-2016-8437 Improper Input Validation vulnerability in Linux Kernel 3.18
Improper input validation in Access Control APIs.
network
low complexity
linux CWE-20
critical
10.0
2017-01-12 CVE-2016-8436 Permissions, Privileges, and Access Controls vulnerability in multiple products
An elevation of privilege vulnerability in the Qualcomm video driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
network
linux google CWE-264
critical
9.3
2017-01-12 CVE-2016-8435 Improper Access Control vulnerability in Linux Kernel 3.18
An elevation of privilege vulnerability in the NVIDIA GPU driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
network
linux CWE-284
critical
9.3
2017-01-12 CVE-2016-8434 Improper Access Control vulnerability in Linux Kernel 3.10
An elevation of privilege vulnerability in the Qualcomm GPU driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
network
linux CWE-284
critical
9.3
2017-01-12 CVE-2016-8432 Permissions, Privileges, and Access Controls vulnerability in Linux Kernel 3.18
An elevation of privilege vulnerability in the NVIDIA GPU driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
network
linux CWE-264
critical
9.3