Search CVE reports


Toggle filters

1121 – 1130 of 1355 results


CVE-2014-0038

Critical priority

Some fixes available 3 of 14

The compat_sys_recvmmsg function in net/compat.c in the Linux kernel before 3.13.2, when CONFIG_X86_X32 is enabled, allows local users to gain privileges via a recvmmsg system call with a crafted timeout pointer parameter.

18 affected packages

linux, linux-armadaxp, linux-ec2, linux-fsl-imx51, linux-goldfish...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux
linux-armadaxp
linux-ec2
linux-fsl-imx51
linux-goldfish
linux-grouper
linux-linaro-omap
linux-linaro-shared
linux-linaro-vexpress
linux-lts-quantal
linux-lts-raring
linux-lts-saucy
linux-maguro
linux-mako
linux-manta
linux-mvl-dove
linux-qcm-msm
linux-ti-omap4
Show all 18 packages Show less packages

CVE-2013-6429

Medium priority
Ignored

The SourceHttpMessageConverter in Spring MVC in Spring Framework before 3.2.5 and 4.0.0.M1 through 4.0.0.RC1 does not disable external entity resolution, which allows remote attackers to read arbitrary files, cause a denial of...

1 affected package

libspring-java

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libspring-java Not affected
Show less packages

CVE-2013-7315

Medium priority
Ignored

The Spring MVC in Spring Framework before 3.2.4 and 4.0.0.M1 through 4.0.0.M2 does not disable external entity resolution for the StAX XMLInputFactory, which allows context-dependent attackers to read arbitrary files, cause a...

1 affected package

libspring-java

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libspring-java Not affected
Show less packages

CVE-2013-4152

Medium priority
Ignored

The Spring OXM wrapper in Spring Framework before 3.2.4 and 4.0.0.M1, when using the JAXB marshaller, does not disable entity resolution, which allows context-dependent attackers to read arbitrary files, cause a denial of service,...

1 affected package

libspring-java

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libspring-java
Show less packages

CVE-2014-1446

Low priority

Some fixes available 13 of 48

The yam_ioctl function in drivers/net/hamradio/yam.c in the Linux kernel before 3.12.8 does not initialize a certain structure member, which allows local users to obtain sensitive information from kernel memory by leveraging the...

30 affected packages

linux, linux-armadaxp, linux-aws, linux-ec2, linux-flo...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux
linux-armadaxp
linux-aws
linux-ec2
linux-flo
linux-fsl-imx51
linux-gke
linux-goldfish
linux-grouper
linux-hwe
linux-hwe-edge
linux-linaro-omap
linux-linaro-shared
linux-linaro-vexpress
linux-lts-quantal
linux-lts-raring
linux-lts-saucy
linux-lts-trusty
linux-lts-utopic
linux-lts-vivid
linux-lts-wily
linux-lts-xenial
linux-maguro
linux-mako
linux-manta
linux-mvl-dove
linux-qcm-msm
linux-raspi2
linux-snapdragon
linux-ti-omap4
Show all 30 packages Show less packages

CVE-2014-1445

Low priority

Some fixes available 14 of 48

The wanxl_ioctl function in drivers/net/wan/wanxl.c in the Linux kernel before 3.11.7 does not properly initialize a certain data structure, which allows local users to obtain sensitive information from kernel memory via an ioctl call.

30 affected packages

linux, linux-armadaxp, linux-aws, linux-ec2, linux-flo...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux
linux-armadaxp
linux-aws
linux-ec2
linux-flo
linux-fsl-imx51
linux-gke
linux-goldfish
linux-grouper
linux-hwe
linux-hwe-edge
linux-linaro-omap
linux-linaro-shared
linux-linaro-vexpress
linux-lts-quantal
linux-lts-raring
linux-lts-saucy
linux-lts-trusty
linux-lts-utopic
linux-lts-vivid
linux-lts-wily
linux-lts-xenial
linux-maguro
linux-mako
linux-manta
linux-mvl-dove
linux-qcm-msm
linux-raspi2
linux-snapdragon
linux-ti-omap4
Show all 30 packages Show less packages

CVE-2014-1444

Low priority

Some fixes available 11 of 48

The fst_get_iface function in drivers/net/wan/farsync.c in the Linux kernel before 3.11.7 does not properly initialize a certain data structure, which allows local users to obtain sensitive information from kernel memory...

30 affected packages

linux, linux-armadaxp, linux-aws, linux-ec2, linux-flo...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux
linux-armadaxp
linux-aws
linux-ec2
linux-flo
linux-fsl-imx51
linux-gke
linux-goldfish
linux-grouper
linux-hwe
linux-hwe-edge
linux-linaro-omap
linux-linaro-shared
linux-linaro-vexpress
linux-lts-quantal
linux-lts-raring
linux-lts-saucy
linux-lts-trusty
linux-lts-utopic
linux-lts-vivid
linux-lts-wily
linux-lts-xenial
linux-maguro
linux-mako
linux-manta
linux-mvl-dove
linux-qcm-msm
linux-raspi2
linux-snapdragon
linux-ti-omap4
Show all 30 packages Show less packages

CVE-2014-1438

Medium priority

Some fixes available 13 of 48

The restore_fpu_checking function in arch/x86/include/asm/fpu-internal.h in the Linux kernel before 3.12.8 on the AMD K7 and K8 platforms does not clear pending exceptions before proceeding to an EMMS instruction, which allows...

30 affected packages

linux-ec2, linux-fsl-imx51, linux-linaro-omap, linux-armadaxp, linux-goldfish...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux-ec2
linux-fsl-imx51
linux-linaro-omap
linux-armadaxp
linux-goldfish
linux-grouper
linux-lts-quantal
linux-lts-raring
linux
linux-aws
linux-flo
linux-gke
linux-hwe
linux-hwe-edge
linux-linaro-shared
linux-linaro-vexpress
linux-lts-saucy
linux-lts-trusty
linux-lts-utopic
linux-lts-vivid
linux-lts-wily
linux-lts-xenial
linux-maguro
linux-mako
linux-manta
linux-mvl-dove
linux-qcm-msm
linux-raspi2
linux-snapdragon
linux-ti-omap4
Show all 30 packages Show less packages

CVE-2013-6123

Medium priority
Ignored

Multiple array index errors in drivers/media/video/msm/server/msm_cam_server.c in the MSM camera driver for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other...

30 affected packages

linux, linux-ec2, linux-fsl-imx51, linux-linaro-omap, linux-mvl-dove...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux
linux-ec2
linux-fsl-imx51
linux-linaro-omap
linux-mvl-dove
linux-linaro-shared
linux-armadaxp
linux-linaro-vexpress
linux-aws
linux-flo
linux-gke
linux-goldfish
linux-grouper
linux-hwe
linux-hwe-edge
linux-lts-quantal
linux-lts-raring
linux-lts-saucy
linux-lts-trusty
linux-lts-utopic
linux-lts-vivid
linux-lts-wily
linux-lts-xenial
linux-maguro
linux-mako
linux-manta
linux-qcm-msm
linux-raspi2
linux-snapdragon
linux-ti-omap4
Show all 30 packages Show less packages

CVE-2013-7281

Low priority

Some fixes available 13 of 48

The dgram_recvmsg function in net/ieee802154/dgram.c in the Linux kernel before 3.12.4 updates a certain length value without ensuring that an associated data structure has been initialized, which allows local users to obtain...

30 affected packages

linux, linux-armadaxp, linux-aws, linux-ec2, linux-flo...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux
linux-armadaxp
linux-aws
linux-ec2
linux-flo
linux-fsl-imx51
linux-gke
linux-goldfish
linux-grouper
linux-hwe
linux-hwe-edge
linux-linaro-omap
linux-linaro-shared
linux-linaro-vexpress
linux-lts-quantal
linux-lts-raring
linux-lts-saucy
linux-lts-trusty
linux-lts-utopic
linux-lts-vivid
linux-lts-wily
linux-lts-xenial
linux-maguro
linux-mako
linux-manta
linux-mvl-dove
linux-qcm-msm
linux-raspi2
linux-snapdragon
linux-ti-omap4
Show all 30 packages Show less packages