All CVEs — page 211 of 242
The complete archive, 25 per page, newest first. 6034 records. Search instead.
The vulnerability in the HID rmi driver allows an attacker to perform out-of-bounds memory access, leading to potential data corruption or execution of arbitrary code.
This flaw involves a return type mismatch in the `dma_direct_alloc_from_pool` function, leading to incorrect handling of `struct page *`. It matters because it could allow an attacker to manipulate memory allocations, potentially leading to privilege escalation or other severe consequences.
The flaw allows a use-after-free condition in the Ceph MDS session handling, which can lead to kernel crashes or arbitrary code execution if exploited.