Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Aaro Koskinen

#15803of 53,633
17.1Total CVSS
Vulnerabilities · 2
High
2
PT-2019-6537
7.8
2019-11-07
Linux · Linux Kernel · CVE-2010-2243
**Name of the Vulnerable Software and Affected Versions** Linux kernel versions prior to 2.6.34 **Description** A vulnerability exists in the Linux kernel where accessing the /sys/devices/system/clocksource/clocksource0/current clocksource endpoint on non-GENERIC TIME systems (GENERIC TIME=n) results in an OOPS. **Recommendations** For Linux kernel versions prior to 2.6.34, update to version 2.6.34 or later to resolve the issue. As a temporary workaround, consider restricting access to the /sys/devices/system/clocksource/clocksource0/current clocksource endpoint to minimize the risk of exploitation.
PT-2016-4073
9.3
2013-12-03
Linux · Linux Kernel · CVE-2015-8961
**Name of the Vulnerable Software and Affected Versions** Linux kernel versions prior to 4.3.3 **Description** The issue allows local users to gain privileges or cause a denial of service (use-after-free) by leveraging improper access to a certain error field in the ext4 journal stop function. **Recommendations** For versions prior to 4.3.3, update to version 4.3.3 or later to resolve the issue.