299,584
Total vulnerabilities in the database
Array index error in the tcm_vhost_make_tpg function in drivers/vhost/scsi.c in the Linux kernel before 4.0 might allow guest OS users to cause a denial of service (memory corruption) or possibly have unspecified other impact via a crafted VHOST_SCSI_SET_ENDPOINT ioctl call. NOTE: the affected function was renamed to vhost_scsi_make_tpg before the vulnerability was announced.
| Software | From | Fixed in |
|---|---|---|
| linux / linux_kernel | 3.6-rc5 | 3.6-rc5.x |
| linux / linux_kernel | 3.15 | 3.16.35 |
| linux / linux_kernel | 3.11 | 3.12.44 |
| linux / linux_kernel | 3.19 | 4.0 |
| linux / linux_kernel | 3.13 | 3.14.57 |
| linux / linux_kernel | 3.17 | 3.18.25 |
| linux / linux_kernel | 3.6-rc6 | 3.6-rc6.x |
| linux / linux_kernel | 3.6-rc7 | 3.6-rc7.x |
| linux / linux_kernel | 3.6-rc3 | 3.6-rc3.x |
| linux / linux_kernel | 3.6-rc4 | 3.6-rc4.x |
| linux / linux_kernel | 3.6-rc2 | 3.6-rc2.x |
| linux / linux_kernel | 3.6.x | 3.10.90 |
| linux / linux_kernel | 3.6 | 3.6.x |