AVG-1741 - linux-lts - Arch Linux
AVG-1741 log
| Package | linux-lts |
| Status | Vulnerable |
| Severity | Medium |
| Type | multiple issues |
| Affected | 5.10.85-1 |
| Fixed | Unknown |
| Current |
5.15.15-1 [testing] 5.15.14-1 [core] |
| Ticket | Create |
| Created | Sat Mar 27 11:42:19 2021 |
| Issue | Severity | Remote | Type | Description |
|---|---|---|---|---|
| CVE-2021-43976 | Low | No | Denial of service | In the Linux kernel through 5.15.2, mwifiex_usb_recv in drivers/net/wireless/marvell/mwifiex/usb.c allows an attacker (who can connect a crafted USB device)... |
| CVE-2021-30178 | Low | No | Denial of service | An issue was discovered in the Linux kernel. synic_get in arch/x86/kvm/hyperv.c has a NULL pointer dereference for certain accesses to the SynIC Hyper-V... |
| CVE-2021-29648 | Low | No | Denial of service | An issue was discovered in the Linux kernel before 5.11.11. The BPF subsystem does not properly consider that resolved_ids and resolved_sizes are... |
| CVE-2021-4095 | Low | No | Denial of service | A security issue has been found in the Linux kernel. There is a NULL pointer dereference in kvm_dirty_ring_get() in virt/kvm/dirty_ring.c via a KVM... |
| CVE-2021-4028 | Medium | No | Privilege escalation | A security issue in the Linux kernel's implementation of RDMA communications manager listener code allowed an attacker with local access to setup socket to... |
| CVE-2021-4023 | Low | No | Denial of service | A security issue was found in the io-workqueue implementation in the Linux kernel before version 5.15. The kernel can panic when an improper cancellation... |
| CVE-2021-3847 | Medium | No | Privilege escalation | A security issue has been found in the Linux kernel. An attacker with a low-privileged user on a Linux machine with an overlay mount which has a file... |
| CVE-2021-3759 | Low | No | Denial of service | A memory overflow was found in the Linux kernel before 5.15, in the ipc functionality of the memcg subsystem in the way user calls semget for many times... |
| CVE-2021-3752 | Medium | No | Arbitrary code execution | A use after free vulnerability has been found in the Linux kernel's bluetooth module. |
| CVE-2021-3669 | Low | No | Denial of service | A security issue was found in the Linux kernel. Reading /proc/sysvipc/shm does not scale with large shared memory segment counts, which could lead to... |