📦

linux

Vendor: redhat

Actively Exploited 0 CISA KEV List
PoC / Exploits 45 Code Available
Total RCEs 10 Remote Access
Total CVEs 318 Total Indexed
Avg. EPSS 4.23% Exploit Prob.
Latest CVE CVE-2016-3699 Oct 07

Security Vulnerability Index

Page 1 / 32
7.4 CVSS

The Linux kernel, as used in Red Hat Enterprise Linux 7.2 and Red Hat Enterprise MRG 2 and when booted with UEFI Secure Boot enabled, allows local users to bypass intended Secure Boot restrictions and execute untrusted code by appending ACPI tables to the initrd.

EPSS: 0.50%
6.0 CVSS

Red Hat Enterprise Linux 4 does not properly compile and link gdm with tcp_wrappers on x86_64 platforms, which might allow remote attackers to bypass intended access restrictions.

EPSS: 1.74%
2.1 CVSS

Unspecified vulnerability in the kernel in Red Hat Enterprise Linux (RHEL) 4 on the x86_64 platform allows local users to cause a denial of service (OOPS) via unspecified vectors related to the get_gate_vma function and the fuser command.

EPSS: 0.34%
6.2 CVSS
CVE-2007-3103
Exploit Found

The init.d script for the X.Org X11 xfs font server on various Linux distributions might allow local users to change the permissions of arbitrary files via a symlink attack on the /tmp/.font-unix temporary file.

EPSS: 0.90%
7.2 CVSS
CVE-2005-0750
Exploit Found

The bluez_sock_create function in the Bluetooth stack for Linux kernel 2.4.6 through 2.4.30-rc1 and 2.6 through 2.6.11.5 allows local users to gain privileges via (1) socket or (2) socketpair call with a negative protocol value.

EPSS: 0.85%
2.1 CVSS
CVE-2004-1335
Exploit Found

Memory leak in the ip_options_get function in the Linux kernel before 2.6.10 allows local users to cause a denial of service (memory consumption) by repeatedly calling the ip_cmsg_send function.

EPSS: 1.04%
2.1 CVSS
CVE-2004-1333
Exploit Found

Integer overflow in the vc_resize function in the Linux kernel 2.4 and 2.6 before 2.6.10 allows local users to cause a denial of service (kernel crash) via a short new screen value, which leads to a buffer overflow.

EPSS: 0.96%
2.1 CVSS

Integer overflow in the ip_options_get function in the Linux kernel before 2.6.10 allows local users to cause a denial of service (kernel crash) via a cmsg_len that contains a -1, which leads to a buffer overflow.

EPSS: 0.53%
4.6 CVSS

The RPC code in Linux kernel 2.4 sets the reuse flag when sockets are created, which could allow local users to bind to UDP ports that are used by privileged services such as nfsd.

EPSS: 0.38%
5.0 CVSS

The STP protocol, as enabled in Linux 2.4.x, does not provide sufficient security by design, which allows attackers to modify the bridge topology.

EPSS: 1.94%