VendorsLinuxlinux_kernelany version
Vulnerabilities

Linux Kernel any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

18467CVEs
CVE-2012-0724
Adobe Flash Player before 11.2.202.229 in Google Chrome before 18.0.1025.151 allow attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via unknown vectors, a different vulnerability than CVE-2012-0725.
Published 2012-04-06 · Modified
9.3EPSS 0.020
CVE-2012-0725
Adobe Flash Player before 11.2.202.229 in Google Chrome before 18.0.1025.151 allow attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via unknown vectors, a different vulnerability than CVE-2012-0724.
Published 2012-04-06 · Modified
9.3EPSS 0.020
CVE-2015-8962
Double free vulnerability in the sg_common_write function in drivers/scsi/sg.c in the Linux kernel before 4.4 allows local users to gain privileges or cause a denial of service (memory corruption and system crash) by detaching a device during an SG_IO ioctl call.
Published 2016-11-16 · Modified
9.3EPSS 0.018
CVE-2015-0570
Stack-based buffer overflow in the SET_WPS_IE IOCTL implementation in wlan_hdd_hostapd.c in the WLAN (aka Wi-Fi) driver for the Linux kernel 3.x and 4.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, allows attackers to gain privileges via a crafted application that uses a long WPS IE element.
Published 2016-05-09 · Modified
9.3EPSS 0.018
CVE-2022-21817
NVIDIA Omniverse Launcher contains a Cross-Origin Resource Sharing (CORS) vulnerability which can allow an unprivileged remote attacker, if they can get user to browse malicious site, to acquire access tokens allowing them to access resources in other security domains, which may lead to code execution, escalation of privileges, and impact to confidentiality and integrity.
Published 2022-02-02 · Modified
9.3EPSS 0.017
CVE-2016-9120
Race condition in the ion_ioctl function in drivers/staging/android/ion/ion.c in the Linux kernel before 4.6 allows local users to gain privileges or cause a denial of service (use-after-free) by calling ION_IOC_FREE on two CPUs at the same time.
Published 2016-12-08 · Modified
9.3EPSS 0.017
CVE-2017-6264
An elevation of privilege vulnerability exists in the NVIDIA GPU driver (gm20b_clk_throt_set_cdev_state), where an out of bound memory read is used as a function pointer could lead to code execution in the kernel.This issue is rated as high because it could allow a local malicious application to execute arbitrary code within the context of a privileged process. Product: Android. Version: N/A. Android ID: A-34705430. References: N-CVE-2017-6264.
Published 2017-11-14 · Modified
9.3EPSS 0.016
CVE-2016-7911
Race condition in the get_task_ioprio function in block/ioprio.c in the Linux kernel before 4.6.6 allows local users to gain privileges or cause a denial of service (use-after-free) via a crafted ioprio_get system call.
Published 2016-11-16 · Modified
9.3EPSS 0.015
CVE-2022-1030
Okta Advanced Server Access Client for Linux and macOS prior to version 1.58.0 was found to be vulnerable to command injection via a specially crafted URL. An attacker, who has knowledge of a valid team name for the victim and also knows a valid target host where the user has access, can execute commands on the local system.
Published 2022-03-23 · Modified
9.3EPSS 0.015
CVE-2015-0571
The WLAN (aka Wi-Fi) driver for the Linux kernel 3.x and 4.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, does not verify authorization for private SET IOCTL calls, which allows attackers to gain privileges via a crafted application, related to wlan_hdd_hostapd.c and wlan_hdd_wext.c.
Published 2016-05-09 · Modified
9.3EPSS 0.014
CVE-2007-6053
IBM DB2 UDB 9.1 before Fixpak 4 does not properly handle use of large numbers of file descriptors, which might allow attackers to have an unknown impact involving "memory corruption." NOTE: the vendor description of this issue is too vague to be certain that it is security-related.
Published 2007-11-20 · Modified
9.3EPSS 0.013
CVE-2014-9922
The eCryptfs subsystem in the Linux kernel before 3.18 allows local users to gain privileges via a large filesystem stack that includes an overlayfs layer, related to fs/ecryptfs/main.c and fs/overlayfs/super.c.
Published 2017-04-04 · Modified
9.3EPSS 0.013
CVE-2014-9870
The Linux kernel before 3.11 on ARM platforms, as used in Android before 2016-08-05 on Nexus 5 and 7 (2013) devices, does not properly consider user-space access to the TPIDRURW register, which allows local users to gain privileges via a crafted application, aka Android internal bug 28749743 and Qualcomm internal bug CR561044.
Published 2016-08-06 · Modified
9.3EPSS 0.010
CVE-2015-9004
kernel/events/core.c in the Linux kernel before 3.19 mishandles counter grouping, which allows local users to gain privileges via a crafted application, related to the perf_pmu_register and perf_event_open functions.
Published 2017-05-02 · Modified
9.3EPSS 0.008
CVE-2015-8967
arch/arm64/kernel/sys.c in the Linux kernel before 4.0 allows local users to bypass the "strict page permissions" protection mechanism and modify the system-call table, and consequently gain privileges, by leveraging write access.
Published 2016-12-08 · Modified
9.3EPSS 0.008
CVE-2026-34691
Adobe Experience Manager Forms JEE | Cross-site Scripting (Stored XSS) (CWE-79)
Published 2026-06-09 · Analyzed
9.3EPSS 0.007
CVE-2016-2067
drivers/gpu/msm/kgsl.c in the MSM graphics driver (aka GPU driver) for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, mishandles the KGSL_MEMFLAGS_GPUREADONLY flag, which allows attackers to gain privileges by leveraging accidental read-write mappings, aka Qualcomm internal bug CR988993.
Published 2016-07-11 · Modified
9.3EPSS 0.007
CVE-2024-36913
Drivers: hv: vmbus: Leak pages if set_memory_encrypted() fails
Published 2024-05-30 · Modified
9.3EPSS 0.007
CVE-2014-9803
arch/arm64/include/asm/pgtable.h in the Linux kernel before 3.15-rc5-next-20140519, as used in Android before 2016-07-05 on Nexus 5X and 6P devices, mishandles execute-only pages, which allows attackers to gain privileges via a crafted application, aka Android internal bug 28557020.
Published 2016-07-11 · Modified
9.3EPSS 0.006
CVE-2026-30797
RustDesk rustdesk://config/ URI Silently Re-homes Client to Attacker-Controlled Server
Published 2026-03-05 · Analyzed
9.3EPSS 0.006
CVE-2026-14973
Path Traversal in IBM Desktop App
Published 2026-07-28 · Analyzed
9.3EPSS 0.005
CVE-2026-11707
Multiple vulnerabilities have been identified in IBM WebSphere Application Server shipped with Tivoli System Automation Application Manager
Published 2026-07-30 · Analyzed
9.3EPSS 0.004
CVE-2024-36909
Drivers: hv: vmbus: Don't free ring buffers that couldn't be re-encrypted
Published 2024-05-30 · Modified
9.3EPSS 0.002
CVE-2024-35939
dma-direct: Leak pages on dma_set_decrypted() failure
Published 2024-05-19 · Modified
9.3EPSS 0.002
CVE-2026-46316
KVM: arm64: vgic-its: Drop the translation cache reference only for the erased entry
Published 2026-06-09 · Modified
9.3EPSS 0.002
CVE-2024-57793
virt: tdx-guest: Just leak decrypted memory on unrecoverable errors
Published 2025-01-11 · Modified
9.3EPSS 0.002
CVE-2026-64080
firmware: arm_ffa: Snapshot notifier callbacks under lock
Published 2026-07-19 · Analyzed
9.3EPSS 0.002
CVE-2025-38560
x86/sev: Evict cache lines during SNP memory validation
Published 2025-08-19 · Modified
9.3EPSS 0.002
CVE-2024-26594
ksmbd: validate mech token in session setup
Published 2024-02-23 · Modified
9.1EPSS 0.510
CVE-2023-52442
ksmbd: validate session id and tree id in compound request
Published 2024-02-21 · Modified
9.1EPSS 0.296
CVE-2020-4006
VMware Workspace One Access, Access Connector, Identity Manager, and Identity Manager Connector address have a command injection vulnerability.
Published 2020-11-23 · Analyzed
9.1KEVEPSS 0.173
CVE-2023-3867
ksmbd: fix out of bounds read in smb2_sess_setup
Published 2025-08-16 · Modified
9.1EPSS 0.054
CVE-2022-0742
Memory leak in ICMP6 in Linux Kernel
Published 2022-03-18 · Modified
9.1EPSS 0.050
CVE-2011-3188
The (1) IPv4 and (2) IPv6 implementations in the Linux kernel before 3.1 use a modified MD4 algorithm to generate sequence numbers and Fragment Identification values, which makes it easier for remote attackers to cause a denial of service (disrupted networking) or hijack network sessions by predicting these values and sending crafted packets.
Published 2012-05-24 · Modified
9.1EPSS 0.050
CVE-2023-38428
An issue was discovered in the Linux kernel before 6.3.4. fs/ksmbd/smb2pdu.c in ksmbd does not properly check the UserName value because it does not consider the address of security buffer, leading to an out-of-bounds read.
Published 2023-07-17 · Modified
9.1EPSS 0.032
CVE-2023-38426
An issue was discovered in the Linux kernel before 6.3.4. ksmbd has an out-of-bounds read in smb2_find_context_vals when create_context's name_len is larger than the tag length.
Published 2023-07-17 · Modified
9.1EPSS 0.030
CVE-2022-26629
An Access Control vulnerability exists in SoroushPlus+ Messenger 1.0.30 in the Lock Screen Security Feature function due to insufficient permissions and privileges, which allows a malicious attacker bypass the lock screen function.
Published 2022-03-24 · Modified
9.1EPSS 0.028
CVE-2023-38432
An issue was discovered in the Linux kernel before 6.3.10. fs/smb/server/smb2misc.c in ksmbd does not validate the relationship between the command payload size and the RFC1002 length specification, leading to an out-of-bounds read.
Published 2023-07-17 · Modified
9.1EPSS 0.025
CVE-2018-1426
IBM GSKit (IBM DB2 for Linux, UNIX and Windows 9.7, 10.1, 10.5, and 11.1) duplicates the PRNG state across fork() system calls when multiple ICC instances are loaded which could result in duplicate Session IDs and a risk of duplicate key material. IBM X-Force ID: 139071.
Published 2018-03-22 · Modified
9.1EPSS 0.024
CVE-2025-23243
NVIDIA Riva contains a vulnerability where a user could cause an improper access control issue. A successful exploit of this vulnerability might lead to data tampering or denial of service.
Published 2025-03-11 · Analyzed
9.1EPSS 0.021
← Prev41 / 462Next →