Записи kernel
22 опубликованных записей вендора kernel.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 0
- С записью об исправлении
- 95,5 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer2
- CWE-59 Improper Link Resolution Before File Access ('Link Following')2
- CWE-552 Files or Directories Accessible to External Parties2
- CWE-189 Numeric Errors1
- CWE-209 Generation of Error Message Containing Sensitive Information1
- CWE-252 Unchecked Return Value1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
22 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
40В плане | CVE-2015-5224Эксплойта нет | The mkostemp function in login-utils in util-linux when used incorrectly allows remote attackers to cause file name collision and possibly okernel · util-linux · CWE-377 | Критическая9,8 | — | 4,5 % | 23 авг. 2017 г. |
32Наблюдать | CVE-2018-17953Эксплойта нет | pam_access does not handle netmask matches correctlyopensuse · leap · CWE-284 | Высокая8,1 | — | 1,3 % | 27 нояб. 2018 г. |
31Наблюдать | CVE-2014-9114Эксплойта нет | Blkid in util-linux before 2.26rc-1 allows local users to execute arbitrary code.opensuse · opensuse · CWE-77 | Высокая7,8 | — | 0,6 % | 31 мар. 2017 г. |
31Наблюдать | CVE-2018-7738Эксплойта нет | In util-linux before 2.32-rc1, bash-completion/umount allows local users to gain privileges by embedding shell commands in a mountpoint namekernel · util-linux | Высокая7,8 | — | 0,4 % | 6 мар. 2018 г. |
31Наблюдать | CVE-2016-2779Эксплойта нет | runuser in util-linux allows local users to escape to the parent session via a crafted TIOCSTI ioctl call, which pushes characters to the tekernel · util-linux · CWE-264 | Высокая7,8 | — | 0,4 % | 7 февр. 2017 г. |
28Наблюдать | CVE-2007-5191Эксплойта нет | mount and umount in util-linux and loop-aes-utils call the setuid and setgid functions in the wrong order and do not check the return valueskernel · util-linux · CWE-252 | Высокая7,2 | — | 0,4 % | 4 окт. 2007 г. |
26Наблюдать | CVE-2020-21583Эксплойта нет | An issue was discovered in hwclock.13-v2.27 allows attackers to gain escalated privlidges or execute arbitrary commands via the path parametkernel · util-linux · CWE-78 | Средняя6,7 | — | 0,5 % | 22 авг. 2023 г. |
24Наблюдать | CVE-2020-10751Эксплойта нет | A flaw was found in the Linux kernels SELinux LSM hook implementation before version 5.7, where it incorrectly assumed that an skb would onlkernel · selinux · CWE-349 | Средняя6,1 | — | 0,3 % | 26 мая 2020 г. |
22Наблюдать | CVE-2021-37600Эксплойта нет | An integer overflow in util-linux through 2.37.1 can potentially cause a buffer overflow if an attacker were able to use system resources inkernel · util-linux · CWE-190 | Средняя5,5 | — | 0,7 % | 30 июл. 2021 г. |
22Наблюдать | CVE-2021-3996Эксплойта нет | A logic error was found in the libmount library of util-linux in the function that allows an unprivileged user to unmount a FUSE filesystem.kernel · util-linux · CWE-552 | Средняя5,5 | — | 0,6 % | 23 авг. 2022 г. |
22Наблюдать | CVE-2021-3995Эксплойта нет | A logic error was found in the libmount library of util-linux in the function that allows an unprivileged user to unmount a FUSE filesystem.kernel · util-linux · CWE-552 | Средняя5,5 | — | 0,6 % | 23 авг. 2022 г. |
22Наблюдать | CVE-2001-1494Эксплойта нет | script command in the util-linux package before 2.11n allows local users to overwrite arbitrary files by setting a hardlink from the typescrkernel · util-linux · CWE-59 | Средняя5,5 | — | 0,4 % | 31 дек. 2001 г. |
22Наблюдать | CVE-2022-0563Эксплойта нет | A flaw was found in the util-linux chfn and chsh utilities when compiled with Readline support.kernel · util-linux · CWE-209 | Средняя5,5 | — | 0,4 % | 21 февр. 2022 г. |
21Наблюдать | CVE-2026-3184Эксплойта нет | Util-linux: util-linux: access control bypass due to improper hostname canonicalizationkernel · util-linux · CWE-289 | Средняя5,3 | — | 0,6 % | 3 апр. 2026 г. |
21Наблюдать | CVE-2026-13595Эксплойта нет | Util-linux: util-linux: heap use-after-free in libblkid nested partition probingredhat · hardened images · CWE-416 | Средняя5,3 | — | 0,2 % | 29 июн. 2026 г. |
19Наблюдать | CVE-2009-3288Эксплойта нет | The sg_build_indirect function in drivers/scsi/sg.c in Linux kernel 2.6.28-rc1 through 2.6.31-rc8 uses an incorrect variable when accessing kernel · linux kernel · CWE-119 | Средняя4,9 | — | 0,4 % | 22 сент. 2009 г. |
19Наблюдать | CVE-2007-6712Эксплойта нет | Integer overflow in the hrtimer_forward function (hrtimer.c) in Linux kernel 2.6.21-rc4, when running on 64-bit systems, allows local users kernel · linux kernel · CWE-189 | Средняя4,9 | — | 0,4 % | 12 апр. 2008 г. |
18Наблюдать | CVE-2016-5011Эксплойта нет | The parse_dos_extended function in partitions/dos.c in the libblkid library in util-linux allows physically proximate attackers to cause a dkernel · util-linux | Средняя4,6 | — | 0,5 % | 11 апр. 2017 г. |
18Наблюдать | CVE-2026-27456Эксплойта нет | util-linux: TOCTOU Race Condition in util-linux mount(8) - Loop Device Setupkernel · util-linux · CWE-59 | Средняя4,7 | — | 0,1 % | 3 апр. 2026 г. |
14Наблюдать | CVE-2024-28085Proof of concept | wall in util-linux through 2.40, often installed with setgid tty permissions, allows escape sequences to be sent to other users' terminals tkernel · util-linux · CWE-150 | Низкая3,3 | — | 2,2 % | 27 мар. 2024 г. |
8Наблюдать | CVE-2015-5218Эксплойта нет | Buffer overflow in text-utils/colcrt.c in colcrt in util-linux before 2.27 allows local users to cause a denial of service (crash) via a crakernel · util-linux · CWE-119 | Низкая2,1 | — | 0,6 % | 9 нояб. 2015 г. |
8Наблюдать | CVE-2013-0157Эксплойта нет | (a) mount and (b) umount in util-linux 2.14.1, 2.17.2, and probably other versions allow local users to determine the existence of restrictekernel · util-linux · CWE-200 | Низкая2,1 | — | 0,4 % | 21 янв. 2014 г. |
- CVE-2015-522440В плане
The mkostemp function in login-utils in util-linux when used incorrectly allows remote attackers to cause file name collision and possibly o
КритическаяCVSS 9,8Эксплойта нетEPSS 5 %kernel · util-linux23 авг. 2017 г.
- CVE-2018-1795332Наблюдать
pam_access does not handle netmask matches correctly
ВысокаяCVSS 8,1Эксплойта нетEPSS 1 %opensuse · leap27 нояб. 2018 г.
- CVE-2014-911431Наблюдать
Blkid in util-linux before 2.26rc-1 allows local users to execute arbitrary code.
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %opensuse · opensuse31 мар. 2017 г.
- CVE-2018-773831Наблюдать
In util-linux before 2.32-rc1, bash-completion/umount allows local users to gain privileges by embedding shell commands in a mountpoint name
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %kernel · util-linux6 мар. 2018 г.
- CVE-2016-277931Наблюдать
runuser in util-linux allows local users to escape to the parent session via a crafted TIOCSTI ioctl call, which pushes characters to the te
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %kernel · util-linux7 февр. 2017 г.
- CVE-2007-519128Наблюдать
mount and umount in util-linux and loop-aes-utils call the setuid and setgid functions in the wrong order and do not check the return values
ВысокаяCVSS 7,2Эксплойта нетEPSS 0 %kernel · util-linux4 окт. 2007 г.
- CVE-2020-2158326Наблюдать
An issue was discovered in hwclock.13-v2.27 allows attackers to gain escalated privlidges or execute arbitrary commands via the path paramet
СредняяCVSS 6,7Эксплойта нетEPSS 1 %kernel · util-linux22 авг. 2023 г.
- CVE-2020-1075124Наблюдать
A flaw was found in the Linux kernels SELinux LSM hook implementation before version 5.7, where it incorrectly assumed that an skb would onl
СредняяCVSS 6,1Эксплойта нетEPSS 0 %kernel · selinux26 мая 2020 г.
- CVE-2021-3760022Наблюдать
An integer overflow in util-linux through 2.37.1 can potentially cause a buffer overflow if an attacker were able to use system resources in
СредняяCVSS 5,5Эксплойта нетEPSS 1 %kernel · util-linux30 июл. 2021 г.
- CVE-2021-399622Наблюдать
A logic error was found in the libmount library of util-linux in the function that allows an unprivileged user to unmount a FUSE filesystem.
СредняяCVSS 5,5Эксплойта нетEPSS 1 %kernel · util-linux23 авг. 2022 г.
- CVE-2021-399522Наблюдать
A logic error was found in the libmount library of util-linux in the function that allows an unprivileged user to unmount a FUSE filesystem.
СредняяCVSS 5,5Эксплойта нетEPSS 1 %kernel · util-linux23 авг. 2022 г.
- CVE-2001-149422Наблюдать
script command in the util-linux package before 2.11n allows local users to overwrite arbitrary files by setting a hardlink from the typescr
СредняяCVSS 5,5Эксплойта нетEPSS 0 %kernel · util-linux31 дек. 2001 г.
- CVE-2022-056322Наблюдать
A flaw was found in the util-linux chfn and chsh utilities when compiled with Readline support.
СредняяCVSS 5,5Эксплойта нетEPSS 0 %kernel · util-linux21 февр. 2022 г.
- CVE-2026-318421Наблюдать
Util-linux: util-linux: access control bypass due to improper hostname canonicalization
СредняяCVSS 5,3Эксплойта нетEPSS 1 %kernel · util-linux3 апр. 2026 г.
- CVE-2026-1359521Наблюдать
Util-linux: util-linux: heap use-after-free in libblkid nested partition probing
СредняяCVSS 5,3Эксплойта нетEPSS 0 %redhat · hardened images29 июн. 2026 г.
- CVE-2009-328819Наблюдать
The sg_build_indirect function in drivers/scsi/sg.c in Linux kernel 2.6.28-rc1 through 2.6.31-rc8 uses an incorrect variable when accessing
СредняяCVSS 4,9Эксплойта нетEPSS 0 %kernel · linux kernel22 сент. 2009 г.
- CVE-2007-671219Наблюдать
Integer overflow in the hrtimer_forward function (hrtimer.c) in Linux kernel 2.6.21-rc4, when running on 64-bit systems, allows local users
СредняяCVSS 4,9Эксплойта нетEPSS 0 %kernel · linux kernel12 апр. 2008 г.
- CVE-2016-501118Наблюдать
The parse_dos_extended function in partitions/dos.c in the libblkid library in util-linux allows physically proximate attackers to cause a d
СредняяCVSS 4,6Эксплойта нетEPSS 0 %kernel · util-linux11 апр. 2017 г.
- CVE-2026-2745618Наблюдать
util-linux: TOCTOU Race Condition in util-linux mount(8) - Loop Device Setup
СредняяCVSS 4,7Эксплойта нетEPSS 0 %kernel · util-linux3 апр. 2026 г.
- CVE-2024-2808514Наблюдать
wall in util-linux through 2.40, often installed with setgid tty permissions, allows escape sequences to be sent to other users' terminals t
НизкаяCVSS 3,3Proof of conceptEPSS 2 %kernel · util-linux27 мар. 2024 г.
- CVE-2015-52188Наблюдать
Buffer overflow in text-utils/colcrt.c in colcrt in util-linux before 2.27 allows local users to cause a denial of service (crash) via a cra
НизкаяCVSS 2,1Эксплойта нетEPSS 1 %kernel · util-linux9 нояб. 2015 г.
- CVE-2013-01578Наблюдать
(a) mount and (b) umount in util-linux 2.14.1, 2.17.2, and probably other versions allow local users to determine the existence of restricte
НизкаяCVSS 2,1Эксплойта нетEPSS 0 %kernel · util-linux21 янв. 2014 г.