Vulnerabilities > Linux > Critical

DATE CVE VULNERABILITY TITLE RISK
2017-04-04 CVE-2016-10229 Improperly Implemented Security Check for Standard vulnerability in multiple products
udp.c in the Linux kernel before 4.5 allows remote attackers to execute arbitrary code via UDP traffic that triggers an unsafe second checksum calculation during execution of a recv system call with the MSG_PEEK flag.
network
low complexity
linux google CWE-358
critical
9.8
2017-04-04 CVE-2014-9922 Permissions, Privileges, and Access Controls vulnerability in Linux Kernel
The eCryptfs subsystem in the Linux kernel before 3.18 allows local users to gain privileges via a large filesystem stack that includes an overlayfs layer, related to fs/ecryptfs/main.c and fs/overlayfs/super.c.
network
linux google CWE-264
critical
9.3
2017-03-23 CVE-2017-5897 Out-of-bounds Read vulnerability in multiple products
The ip6gre_err function in net/ipv6/ip6_gre.c in the Linux kernel allows remote attackers to have unspecified impact via vectors involving GRE flags in an IPv6 packet, which trigger an out-of-bounds access.
network
low complexity
linux canonical debian CWE-125
critical
9.8
2017-03-08 CVE-2017-0528 Privilege Escalation vulnerability in Linux Kernel 3.18
An elevation of privilege vulnerability in the kernel security subsystem could enable a local malicious application to to execute code in the context of a privileged process.
network
linux
critical
9.3
2017-03-08 CVE-2017-0510 Privilege Escalation vulnerability in Linux Kernel 3.10
An elevation of privilege vulnerability in the kernel FIQ debugger could enable a local malicious application to execute arbitrary code within the context of the kernel.
network
linux
critical
9.3
2017-03-08 CVE-2017-0508 Privilege Escalation vulnerability in Linux Kernel 3.18
An elevation of privilege vulnerability in the kernel ION subsystem could enable a local malicious application to execute arbitrary code within the context of the kernel.
network
linux
critical
9.3
2017-03-08 CVE-2017-0507 Privilege Escalation vulnerability in Linux Kernel 3.10/3.18
An elevation of privilege vulnerability in the kernel ION subsystem could enable a local malicious application to execute arbitrary code within the context of the kernel.
network
linux
critical
9.3
2017-03-08 CVE-2017-0455 Information Exposure vulnerability in Linux Kernel 3.18
An information disclosure vulnerability in the Qualcomm bootloader could help to enable a local malicious application to to execute arbitrary code within the context of the bootloader.
network
linux CWE-200
critical
9.3
2017-03-08 CVE-2017-0338 Privilege Escalation vulnerability in Linux Kernel 3.18
An elevation of privilege vulnerability in the NVIDIA GPU driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
network
linux
critical
9.3
2017-03-08 CVE-2017-0337 Privilege Escalation vulnerability in Linux Kernel 3.18
An elevation of privilege vulnerability in the NVIDIA GPU driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
network
linux
critical
9.3