Search CVE reports


Toggle filters

1331 – 1340 of 1753 results


CVE-2014-1739

Medium priority

Some fixes available 9 of 39

The media_device_enum_entities function in drivers/media/media-device.c in the Linux kernel before 3.14.6 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel memory by...

31 affected packages

linux, linux-2.6, linux-armadaxp, linux-aws, linux-ec2...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux
linux-2.6
linux-armadaxp
linux-aws
linux-ec2
linux-flo
linux-fsl-imx51
linux-gke
linux-goldfish
linux-grouper
linux-hwe
linux-hwe-edge
linux-linaro-omap
linux-linaro-shared
linux-linaro-vexpress
linux-lts-quantal
linux-lts-raring
linux-lts-saucy
linux-lts-trusty
linux-lts-utopic
linux-lts-vivid
linux-lts-wily
linux-lts-xenial
linux-maguro
linux-mako
linux-manta
linux-mvl-dove
linux-qcm-msm
linux-raspi2
linux-snapdragon
linux-ti-omap4
Show all 31 packages Show less packages

CVE-2014-0203

Medium priority

Some fixes available 2 of 15

The __do_follow_link function in fs/namei.c in the Linux kernel before 2.6.33 does not properly handle the last pathname component during use of certain filesystems, which allows local users to cause a denial of service (incorrect...

30 affected packages

linux, linux-armadaxp, linux-aws, linux-ec2, linux-flo...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux
linux-armadaxp
linux-aws
linux-ec2
linux-flo
linux-fsl-imx51
linux-gke
linux-goldfish
linux-grouper
linux-hwe
linux-hwe-edge
linux-linaro-omap
linux-linaro-shared
linux-linaro-vexpress
linux-lts-quantal
linux-lts-raring
linux-lts-saucy
linux-lts-trusty
linux-lts-utopic
linux-lts-vivid
linux-lts-wily
linux-lts-xenial
linux-maguro
linux-mako
linux-manta
linux-mvl-dove
linux-qcm-msm
linux-raspi2
linux-snapdragon
linux-ti-omap4
Show all 30 packages Show less packages

CVE-2014-3940

Low priority

Some fixes available 2 of 17

The Linux kernel through 3.14.5 does not properly consider the presence of hugetlb entries, which allows local users to cause a denial of service (memory corruption or system crash) by accessing certain memory locations, as...

30 affected packages

linux, linux-armadaxp, linux-aws, linux-ec2, linux-flo...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux
linux-armadaxp
linux-aws
linux-ec2
linux-flo
linux-fsl-imx51
linux-gke
linux-goldfish
linux-grouper
linux-hwe
linux-hwe-edge
linux-linaro-omap
linux-linaro-shared
linux-linaro-vexpress
linux-lts-quantal
linux-lts-raring
linux-lts-saucy
linux-lts-trusty
linux-lts-utopic
linux-lts-vivid
linux-lts-wily
linux-lts-xenial
linux-maguro
linux-mako
linux-manta
linux-mvl-dove
linux-qcm-msm
linux-raspi2
linux-snapdragon
linux-ti-omap4
Show all 30 packages Show less packages

CVE-2014-3917

High priority

Some fixes available 11 of 25

kernel/auditsc.c in the Linux kernel through 3.14.5, when CONFIG_AUDITSYSCALL is enabled with certain syscall rules, allows local users to obtain potentially sensitive single-bit values from kernel memory or cause a denial of...

30 affected packages

linux, linux-armadaxp, linux-aws, linux-ec2, linux-flo...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux
linux-armadaxp
linux-aws
linux-ec2
linux-flo
linux-fsl-imx51
linux-gke
linux-goldfish
linux-grouper
linux-hwe
linux-hwe-edge
linux-linaro-omap
linux-linaro-shared
linux-linaro-vexpress
linux-lts-quantal
linux-lts-raring
linux-lts-saucy
linux-lts-trusty
linux-lts-utopic
linux-lts-vivid
linux-lts-wily
linux-lts-xenial
linux-maguro
linux-mako
linux-manta
linux-mvl-dove
linux-qcm-msm
linux-raspi2
linux-snapdragon
linux-ti-omap4
Show all 30 packages Show less packages

CVE-2014-3153

High priority

Some fixes available 11 of 25

The futex_requeue function in kernel/futex.c in the Linux kernel through 3.14.5 does not ensure that calls have two different futex addresses, which allows local users to gain privileges via a crafted FUTEX_REQUEUE command that...

30 affected packages

linux, linux-armadaxp, linux-aws, linux-ec2, linux-flo...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux
linux-armadaxp
linux-aws
linux-ec2
linux-flo
linux-fsl-imx51
linux-gke
linux-goldfish
linux-grouper
linux-hwe
linux-hwe-edge
linux-linaro-omap
linux-linaro-shared
linux-linaro-vexpress
linux-lts-quantal
linux-lts-raring
linux-lts-saucy
linux-lts-trusty
linux-lts-utopic
linux-lts-vivid
linux-lts-wily
linux-lts-xenial
linux-maguro
linux-mako
linux-manta
linux-mvl-dove
linux-qcm-msm
linux-raspi2
linux-snapdragon
linux-ti-omap4
Show all 30 packages Show less packages

CVE-2013-6433

Medium priority
Fixed

The default configuration in the Red Hat openstack-neutron package before 2013.2.3-7 does not properly set a configuration file for rootwrap, which allows remote attackers to gain privileges via a crafted configuration file.

2 affected packages

neutron, quantum

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
neutron
quantum
Show less packages

CVE-2013-1883

Medium priority
Not affected

Mantis Bug Tracker (aka MantisBT) 1.2.12 before 1.2.15 allows remote attackers to cause a denial of service (resource consumption) via a filter using a criteria, text search, and the "any condition" match type.

1 affected package

mantis

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mantis
Show less packages

CVE-2012-6647

Medium priority

Some fixes available 5 of 25

The futex_wait_requeue_pi function in kernel/futex.c in the Linux kernel before 3.5.1 does not ensure that calls have two different futex addresses, which allows local users to cause a denial of service (NULL pointer dereference...

31 affected packages

linux, linux-2.6, linux-armadaxp, linux-aws, linux-ec2...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux
linux-2.6
linux-armadaxp
linux-aws
linux-ec2
linux-flo
linux-fsl-imx51
linux-gke
linux-goldfish
linux-grouper
linux-hwe
linux-hwe-edge
linux-linaro-omap
linux-linaro-shared
linux-linaro-vexpress
linux-lts-quantal
linux-lts-raring
linux-lts-saucy
linux-lts-trusty
linux-lts-utopic
linux-lts-vivid
linux-lts-wily
linux-lts-xenial
linux-maguro
linux-mako
linux-manta
linux-mvl-dove
linux-qcm-msm
linux-raspi2
linux-snapdragon
linux-ti-omap4
Show all 31 packages Show less packages

CVE-2013-1810

Medium priority
Not affected

Multiple cross-site scripting (XSS) vulnerabilities in core/summary_api.php in MantisBT 1.2.12 allow remote authenticated users with manager or administrator permissions to inject arbitrary web script or HTML via a (1) category...

1 affected package

mantis

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mantis
Show less packages

CVE-2013-0197

Medium priority
Ignored

Cross-site scripting (XSS) vulnerability in the filter_draw_selection_area2 function in core/filter_api.php in MantisBT 1.2.12 before 1.2.13 allows remote attackers to inject arbitrary web script or HTML via the...

1 affected package

mantis

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mantis
Show less packages