Search CVE reports


Toggle filters

91 – 100 of 1263 results


CVE-2017-17857

Medium priority
Ignored

The check_stack_boundary function in kernel/bpf/verifier.c in the Linux kernel through 4.14.8 allows local users to cause a denial of service (memory corruption) or possibly have unspecified other impact by leveraging mishandling...

32 affected packages

linux, linux-armadaxp, linux-aws, linux-azure, linux-euclid...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux — — — — —
linux-armadaxp — — — — —
linux-aws — — — — —
linux-azure — — — — —
linux-euclid — — — — —
linux-flo — — — — —
linux-gcp — — — — —
linux-gke — — — — —
linux-goldfish — — — — —
linux-grouper — — — — —
linux-hwe — — — — —
linux-hwe-edge — — — — —
linux-kvm — — — — —
linux-linaro-omap — — — — —
linux-linaro-shared — — — — —
linux-linaro-vexpress — — — — —
linux-lts-quantal — — — — —
linux-lts-raring — — — — —
linux-lts-saucy — — — — —
linux-lts-trusty — — — — —
linux-lts-utopic — — — — —
linux-lts-vivid — — — — —
linux-lts-wily — — — — —
linux-lts-xenial — — — — —
linux-maguro — — — — —
linux-mako — — — — —
linux-manta — — — — —
linux-oem — — — — —
linux-qcm-msm — — — — —
linux-raspi2 — — — — —
linux-snapdragon — — — — —
linux-ti-omap4 — — — — —
Show all 32 packages Show less packages

CVE-2017-17856

Medium priority
Ignored

kernel/bpf/verifier.c in the Linux kernel through 4.14.8 allows local users to cause a denial of service (memory corruption) or possibly have unspecified other impact by leveraging the lack of stack-pointer alignment enforcement.

32 affected packages

linux, linux-armadaxp, linux-aws, linux-azure, linux-euclid...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux — — — — —
linux-armadaxp — — — — —
linux-aws — — — — —
linux-azure — — — — —
linux-euclid — — — — —
linux-flo — — — — —
linux-gcp — — — — —
linux-gke — — — — —
linux-goldfish — — — — —
linux-grouper — — — — —
linux-hwe — — — — —
linux-hwe-edge — — — — —
linux-kvm — — — — —
linux-linaro-omap — — — — —
linux-linaro-shared — — — — —
linux-linaro-vexpress — — — — —
linux-lts-quantal — — — — —
linux-lts-raring — — — — —
linux-lts-saucy — — — — —
linux-lts-trusty — — — — —
linux-lts-utopic — — — — —
linux-lts-vivid — — — — —
linux-lts-wily — — — — —
linux-lts-xenial — — — — —
linux-maguro — — — — —
linux-mako — — — — —
linux-manta — — — — —
linux-oem — — — — —
linux-qcm-msm — — — — —
linux-raspi2 — — — — —
linux-snapdragon — — — — —
linux-ti-omap4 — — — — —
Show all 32 packages Show less packages

CVE-2017-17855

Medium priority
Ignored

kernel/bpf/verifier.c in the Linux kernel through 4.14.8 allows local users to cause a denial of service (memory corruption) or possibly have unspecified other impact by leveraging improper use of pointers in place of scalars.

32 affected packages

linux, linux-armadaxp, linux-aws, linux-azure, linux-euclid...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux — — — — —
linux-armadaxp — — — — —
linux-aws — — — — —
linux-azure — — — — —
linux-euclid — — — — —
linux-flo — — — — —
linux-gcp — — — — —
linux-gke — — — — —
linux-goldfish — — — — —
linux-grouper — — — — —
linux-hwe — — — — —
linux-hwe-edge — — — — —
linux-kvm — — — — —
linux-linaro-omap — — — — —
linux-linaro-shared — — — — —
linux-linaro-vexpress — — — — —
linux-lts-quantal — — — — —
linux-lts-raring — — — — —
linux-lts-saucy — — — — —
linux-lts-trusty — — — — —
linux-lts-utopic — — — — —
linux-lts-vivid — — — — —
linux-lts-wily — — — — —
linux-lts-xenial — — — — —
linux-maguro — — — — —
linux-mako — — — — —
linux-manta — — — — —
linux-oem — — — — —
linux-qcm-msm — — — — —
linux-raspi2 — — — — —
linux-snapdragon — — — — —
linux-ti-omap4 — — — — —
Show all 32 packages Show less packages

CVE-2017-17854

Medium priority
Ignored

kernel/bpf/verifier.c in the Linux kernel through 4.14.8 allows local users to cause a denial of service (integer overflow and memory corruption) or possibly have unspecified other impact by leveraging unrestricted integer values...

32 affected packages

linux, linux-armadaxp, linux-aws, linux-azure, linux-euclid...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux — — — — —
linux-armadaxp — — — — —
linux-aws — — — — —
linux-azure — — — — —
linux-euclid — — — — —
linux-flo — — — — —
linux-gcp — — — — —
linux-gke — — — — —
linux-goldfish — — — — —
linux-grouper — — — — —
linux-hwe — — — — —
linux-hwe-edge — — — — —
linux-kvm — — — — —
linux-linaro-omap — — — — —
linux-linaro-shared — — — — —
linux-linaro-vexpress — — — — —
linux-lts-quantal — — — — —
linux-lts-raring — — — — —
linux-lts-saucy — — — — —
linux-lts-trusty — — — — —
linux-lts-utopic — — — — —
linux-lts-vivid — — — — —
linux-lts-wily — — — — —
linux-lts-xenial — — — — —
linux-maguro — — — — —
linux-mako — — — — —
linux-manta — — — — —
linux-oem — — — — —
linux-qcm-msm — — — — —
linux-raspi2 — — — — —
linux-snapdragon — — — — —
linux-ti-omap4 — — — — —
Show all 32 packages Show less packages

CVE-2017-17853

Medium priority
Ignored

kernel/bpf/verifier.c in the Linux kernel through 4.14.8 allows local users to cause a denial of service (memory corruption) or possibly have unspecified other impact by leveraging incorrect BPF_RSH signed bounds calculations.

32 affected packages

linux, linux-armadaxp, linux-aws, linux-azure, linux-euclid...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux — — — — —
linux-armadaxp — — — — —
linux-aws — — — — —
linux-azure — — — — —
linux-euclid — — — — —
linux-flo — — — — —
linux-gcp — — — — —
linux-gke — — — — —
linux-goldfish — — — — —
linux-grouper — — — — —
linux-hwe — — — — —
linux-hwe-edge — — — — —
linux-kvm — — — — —
linux-linaro-omap — — — — —
linux-linaro-shared — — — — —
linux-linaro-vexpress — — — — —
linux-lts-quantal — — — — —
linux-lts-raring — — — — —
linux-lts-saucy — — — — —
linux-lts-trusty — — — — —
linux-lts-utopic — — — — —
linux-lts-vivid — — — — —
linux-lts-wily — — — — —
linux-lts-xenial — — — — —
linux-maguro — — — — —
linux-mako — — — — —
linux-manta — — — — —
linux-oem — — — — —
linux-qcm-msm — — — — —
linux-raspi2 — — — — —
linux-snapdragon — — — — —
linux-ti-omap4 — — — — —
Show all 32 packages Show less packages

CVE-2017-17852

Medium priority
Ignored

kernel/bpf/verifier.c in the Linux kernel through 4.14.8 allows local users to cause a denial of service (memory corruption) or possibly have unspecified other impact by leveraging mishandling of 32-bit ALU ops.

32 affected packages

linux, linux-armadaxp, linux-aws, linux-azure, linux-euclid...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux — — — — —
linux-armadaxp — — — — —
linux-aws — — — — —
linux-azure — — — — —
linux-euclid — — — — —
linux-flo — — — — —
linux-gcp — — — — —
linux-gke — — — — —
linux-goldfish — — — — —
linux-grouper — — — — —
linux-hwe — — — — —
linux-hwe-edge — — — — —
linux-kvm — — — — —
linux-linaro-omap — — — — —
linux-linaro-shared — — — — —
linux-linaro-vexpress — — — — —
linux-lts-quantal — — — — —
linux-lts-raring — — — — —
linux-lts-saucy — — — — —
linux-lts-trusty — — — — —
linux-lts-utopic — — — — —
linux-lts-vivid — — — — —
linux-lts-wily — — — — —
linux-lts-xenial — — — — —
linux-maguro — — — — —
linux-mako — — — — —
linux-manta — — — — —
linux-oem — — — — —
linux-qcm-msm — — — — —
linux-raspi2 — — — — —
linux-snapdragon — — — — —
linux-ti-omap4 — — — — —
Show all 32 packages Show less packages

CVE-2017-16996

High priority
Ignored

kernel/bpf/verifier.c in the Linux kernel through 4.14.8 allows local users to cause a denial of service (memory corruption) or possibly have unspecified other impact by leveraging register truncation mishandling.

32 affected packages

linux, linux-armadaxp, linux-aws, linux-azure, linux-euclid...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux — — — — —
linux-armadaxp — — — — —
linux-aws — — — — —
linux-azure — — — — —
linux-euclid — — — — —
linux-flo — — — — —
linux-gcp — — — — —
linux-gke — — — — —
linux-goldfish — — — — —
linux-grouper — — — — —
linux-hwe — — — — —
linux-hwe-edge — — — — —
linux-kvm — — — — —
linux-linaro-omap — — — — —
linux-linaro-shared — — — — —
linux-linaro-vexpress — — — — —
linux-lts-quantal — — — — —
linux-lts-raring — — — — —
linux-lts-saucy — — — — —
linux-lts-trusty — — — — —
linux-lts-utopic — — — — —
linux-lts-vivid — — — — —
linux-lts-wily — — — — —
linux-lts-xenial — — — — —
linux-maguro — — — — —
linux-mako — — — — —
linux-manta — — — — —
linux-oem — — — — —
linux-qcm-msm — — — — —
linux-raspi2 — — — — —
linux-snapdragon — — — — —
linux-ti-omap4 — — — — —
Show all 32 packages Show less packages

CVE-2017-17864

Low priority
Not affected

kernel/bpf/verifier.c in the Linux kernel through 4.14.8 mishandles states_equal comparisons between the pointer data type and the UNKNOWN_VALUE data type, which allows local users to obtain potentially sensitive address...

32 affected packages

linux, linux-armadaxp, linux-aws, linux-azure, linux-euclid...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux — — — — —
linux-armadaxp — — — — —
linux-aws — — — — —
linux-azure — — — — —
linux-euclid — — — — —
linux-flo — — — — —
linux-gcp — — — — —
linux-gke — — — — —
linux-goldfish — — — — —
linux-grouper — — — — —
linux-hwe — — — — —
linux-hwe-edge — — — — —
linux-kvm — — — — —
linux-linaro-omap — — — — —
linux-linaro-shared — — — — —
linux-linaro-vexpress — — — — —
linux-lts-quantal — — — — —
linux-lts-raring — — — — —
linux-lts-saucy — — — — —
linux-lts-trusty — — — — —
linux-lts-utopic — — — — —
linux-lts-vivid — — — — —
linux-lts-wily — — — — —
linux-lts-xenial — — — — —
linux-maguro — — — — —
linux-mako — — — — —
linux-manta — — — — —
linux-oem — — — — —
linux-qcm-msm — — — — —
linux-raspi2 — — — — —
linux-snapdragon — — — — —
linux-ti-omap4 — — — — —
Show all 32 packages Show less packages

CVE-2017-17863

High priority
Not affected

kernel/bpf/verifier.c in the Linux kernel 4.9.x through 4.9.71 does not check the relationship between pointer values and the BPF stack, which allows local users to cause a denial of service (integer overflow or invalid memory...

32 affected packages

linux, linux-armadaxp, linux-aws, linux-azure, linux-euclid...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux — — — — —
linux-armadaxp — — — — —
linux-aws — — — — —
linux-azure — — — — —
linux-euclid — — — — —
linux-flo — — — — —
linux-gcp — — — — —
linux-gke — — — — —
linux-goldfish — — — — —
linux-grouper — — — — —
linux-hwe — — — — —
linux-hwe-edge — — — — —
linux-kvm — — — — —
linux-linaro-omap — — — — —
linux-linaro-shared — — — — —
linux-linaro-vexpress — — — — —
linux-lts-quantal — — — — —
linux-lts-raring — — — — —
linux-lts-saucy — — — — —
linux-lts-trusty — — — — —
linux-lts-utopic — — — — —
linux-lts-vivid — — — — —
linux-lts-wily — — — — —
linux-lts-xenial — — — — —
linux-maguro — — — — —
linux-mako — — — — —
linux-manta — — — — —
linux-oem — — — — —
linux-qcm-msm — — — — —
linux-raspi2 — — — — —
linux-snapdragon — — — — —
linux-ti-omap4 — — — — —
Show all 32 packages Show less packages

CVE-2017-17862

Medium priority

Some fixes available 16 of 21

kernel/bpf/verifier.c in the Linux kernel through 4.14.8 ignores unreachable code, even though it would still be processed by JIT compilers. This behavior, also considered an improper branch-pruning logic issue, could possibly be...

79 affected packages

linux-aws-fips, linux-azure-fips, linux-gcp-fips, linux, linux-aws...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux-aws-fips — Not in release Not affected Not affected Not affected
linux-azure-fips — Not in release Not affected Not affected Not affected
linux-gcp-fips — Not in release Not affected Not affected Not affected
linux — Not affected Not affected Not affected Not affected
linux-aws — Not affected Not affected Not affected Not affected
linux-aws-5.15 — Not in release Not in release Not affected Not in release
linux-aws-5.4 — Not in release Not in release Not in release Not affected
linux-aws-6.8 — Not in release Not affected Not in release Not in release
linux-aws-hwe — Not in release Not in release Not in release Not in release
linux-azure — Not affected Not affected Not affected Not affected
linux-azure-4.15 — Not in release Not in release Not in release Not affected
linux-azure-5.15 — Not in release Not in release Not affected Not in release
linux-azure-5.4 — Not in release Not in release Not in release Not affected
linux-azure-6.8 — Not in release Not affected Not in release Not in release
linux-azure-fde — Not affected Not affected Ignored Not in release
linux-azure-fde-5.15 — Not in release Not in release Not affected Not in release
linux-bluefield — Not in release Not in release Not affected Not in release
linux-euclid — — — — Not in release
linux-fips — Not in release Not affected Not affected Not affected
linux-flo — — — — Not in release
linux-gcp — Not affected Not affected Not affected Not affected
linux-gcp-4.15 — Not in release Not in release Not in release Not affected
linux-gcp-5.15 — Not in release Not in release Not affected Not in release
linux-gcp-5.4 — Not in release Not in release Not in release Not affected
linux-gcp-6.8 — Not in release Not affected Not in release Not in release
linux-gke — Not affected Not affected Ignored Not in release
linux-gkeop — Not affected Not affected Not affected Not in release
linux-gkeop-5.15 — Not in release Not in release Not affected Not in release
linux-goldfish — — — — Not in release
linux-grouper — — — — Not in release
linux-hwe — Not in release Not in release Not in release Not affected
linux-hwe-5.15 — Not in release Not in release Not affected Not in release
linux-hwe-5.4 — Not in release Not in release Not in release Not affected
linux-hwe-6.8 — Not in release Not affected Not in release Not in release
linux-hwe-edge — Not in release Not in release Not in release Not affected
linux-ibm — Not affected Not affected Not affected Not in release
linux-ibm-5.15 — Not in release Not in release Not affected Not in release
linux-ibm-5.4 — Not in release Not in release Not in release Not affected
linux-intel — Not affected Not in release Not in release Not in release
linux-intel-iot-realtime — Not in release Not affected Not in release Not in release
linux-intel-iotg — Not in release Not affected Not in release Not in release
linux-intel-iotg-5.15 — Not in release Not in release Not affected Not in release
linux-iot — Not in release Not in release Not affected Not in release
linux-kvm — Not in release Not affected Not affected Not affected
linux-lowlatency — Not affected Not affected Not in release Not in release
linux-lowlatency-hwe-5.15 — Not in release Not in release Not affected Not in release
linux-lowlatency-hwe-6.8 — Not in release Not affected Not in release Not in release
linux-lts-quantal — — — — Not in release
linux-lts-raring — — — — Not in release
linux-lts-saucy — — — — Not in release
linux-lts-trusty — — — — Not in release
linux-lts-utopic — — — — Not in release
linux-lts-vivid — — — — Not in release
linux-lts-wily — — — — Not in release
linux-lts-xenial — Not in release Not in release Not in release Not in release
linux-maguro — — — — Not in release
linux-mako — — — — Not in release
linux-manta — — — — Not in release
linux-nvidia — Not affected Not affected Not in release Not in release
linux-nvidia-6.5 — Not in release Not affected Not in release Not in release
linux-nvidia-6.8 — Not in release Not affected Not in release Not in release
linux-nvidia-lowlatency — Not affected Not in release Not in release Not in release
linux-oem — Not in release Not in release Not in release Not affected
linux-oem-6.11 — Not affected Not in release Not in release Not in release
linux-oem-6.8 — Not affected Not in release Not in release Not in release
linux-oracle — Not affected Not affected Not affected Not affected
linux-oracle-5.15 — Not in release Not in release Not affected Not in release
linux-oracle-5.4 — Not in release Not in release Not in release Not affected
linux-oracle-6.8 — Not in release Not affected Not in release Not in release
linux-raspi — Not affected Not affected Not affected Not in release
linux-raspi-5.4 — Not in release Not in release Not in release Not affected
linux-raspi-realtime — Not affected Not in release Not in release Not in release
linux-raspi2 — Not in release Not in release Ignored Not affected
linux-realtime — Not affected Not affected Not in release Not in release
linux-riscv — Not affected Ignored Ignored Not in release
linux-riscv-5.15 — Not in release Not in release Not affected Not in release
linux-riscv-6.8 — Not in release Not affected Not in release Not in release
linux-snapdragon — Not in release Not in release Not in release Not affected
linux-xilinx-zynqmp — Not in release Not affected Not affected Not in release
Show all 79 packages Show less packages