CVE-2015-8962

CVSS v3 Score
7.3
High
CVSS v2 Score
9.3
Critical

Vulnerability Description

Double free vulnerability in the sg_common_write function in drivers/scsi/sg.c in the Linux kernel before 4.4 allows local users to gain privileges or cause a denial of service (memory corruption and system crash) by detaching a device during an SG_IO ioctl call.

CVSS:7.2(High)

Sudo before 1.9.13p2 has a double free in the per-command chroot feature.

CVSS:7.2(High)

A double free vulnerability [CWE-415] in Fortinet FortiOS before 7.0.0 may allow a privileged attacker to execute code or commands via crafted HTTP or HTTPs requests.

CVSS:7.4(High)

In lwis_device_event_states_clear_locked of lwis_event.c, there is a possible privilege escalation due to a double free. This could lead to local escalation of privilege with no additional execution p...

CVSS:7.4(High)

Windows Resilient File System (ReFS) Deduplication Service Elevation of Privilege Vulnerability

CVSS:7.4(High)

Windows Resilient File System (ReFS) Deduplication Service Elevation of Privilege Vulnerability

CVSS:7.5(High)

Double free vulnerability in gtk 2 (gtk2) before 2.2.4 allows remote attackers to cause a denial of service (crash) via a crafted BMP image.