[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-USN-4095-1":6},{"stargazers_count":4,"fetched_at":5},8,"2026-09-19T04:32:17.889Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":11,"aliases":12,"duplicate_of":9,"upstream":13,"downstream":46,"duplicates":47,"related":48,"reserved_at":9,"published_at":65,"modified_at":66,"state":9,"summary":67,"references_raw":69,"kevs":109,"epss":9,"epss_history":110,"metrics":111,"affected":112},"USN-4095-1","linux, linux-aws, linux-kvm, linux-raspi2, linux-snapdragon vulnerabilities\n\nEli Biham and Lior Neumann discovered that the Bluetooth implementation in\nthe Linux kernel did not properly validate elliptic curve parameters during\nDiffie-Hellman key exchange in some situations. An attacker could use this\nto expose sensitive information. (CVE-2018-5383)\n\nIt was discovered that a heap buffer overflow existed in the Marvell\nWireless LAN device driver for the Linux kernel. An attacker could use this\nto cause a denial of service (system crash) or possibly execute arbitrary\ncode. (CVE-2019-10126)\n\nAndrei Vlad Lutas and Dan Lutas discovered that some x86 processors\nincorrectly handle SWAPGS instructions during speculative execution. A\nlocal attacker could use this to expose sensitive information (kernel\nmemory). (CVE-2019-1125)\n\nJann Horn discovered that a race condition existed in the Linux kernel when\nperforming core dumps. A local attacker could use this to cause a denial of\nservice (system crash) or expose sensitive information. (CVE-2019-11599)\n\nIt was discovered that the PowerPC dlpar implementation in the Linux kernel\ndid not properly check for allocation errors in some situations. A local\nattacker could possibly use this to cause a denial of service (system\ncrash). (CVE-2019-12614)\n\nJann Horn discovered that the ptrace implementation in the Linux kernel did\nnot properly record credentials in some situations. A local attacker could\nuse this to cause a denial of service (system crash) or possibly gain\nadministrative privileges. (CVE-2019-13272)\n\nIt was discovered that the Marvell Wireless LAN device driver in the Linux\nkernel did not properly validate the BSS descriptor. A local attacker could\npossibly use this to cause a denial of service (system crash) or possibly\nexecute arbitrary code. (CVE-2019-3846)\n",null,[],[],[],[14,16,18,20,22,24,26,28,30,32,34,36,38,40,42,44],{"_key":15},"CVE-2018-5383",{"_key":17},"CVE-2019-10126",{"_key":19},"CVE-2019-1125",{"_key":21},"CVE-2019-11599",{"_key":23},"CVE-2019-12614",{"_key":25},"CVE-2019-13272",{"_key":27},"CVE-2019-3846",{"_key":29},"CVE-2019-9503",{"_key":31},"UBUNTU-CVE-2018-5383",{"_key":33},"UBUNTU-CVE-2019-10126",{"_key":35},"UBUNTU-CVE-2019-1125",{"_key":37},"UBUNTU-CVE-2019-11599",{"_key":39},"UBUNTU-CVE-2019-12614",{"_key":41},"UBUNTU-CVE-2019-13272",{"_key":43},"UBUNTU-CVE-2019-3846",{"_key":45},"UBUNTU-CVE-2019-9503",[],[],[49,50,51,52,53,54,55,56,57,58,59,60,61,62,63,64],{"_key":29},{"_key":31},{"_key":33},{"_key":35},{"_key":37},{"_key":39},{"_key":41},{"_key":43},{"_key":45},{"_key":15},{"_key":17},{"_key":19},{"_key":21},{"_key":23},{"_key":25},{"_key":27},"2019-08-13T16:19:53Z","2026-09-07T14:06:18.682081439Z",{"cisa_kev":68,"cisa_ransomware":68,"cisa_vendor":9,"epss_severity":9,"epss_score":9,"severity":9,"severity_score":9,"severity_version":9,"severity_source":9,"severity_vector":9,"severity_status":9},false,[70,76,81,85,89,93,97,101,105],{"url":71,"sources":72,"tags":74},"https://ubuntu.com/security/notices/USN-4095-1",[73],"osv_ubuntu",[75],"Advisory",{"url":77,"sources":78,"tags":79},"https://ubuntu.com/security/CVE-2018-5383",[73],[80],"REPORT",{"url":82,"sources":83,"tags":84},"https://ubuntu.com/security/CVE-2019-1125",[73],[80],{"url":86,"sources":87,"tags":88},"https://ubuntu.com/security/CVE-2019-3846",[73],[80],{"url":90,"sources":91,"tags":92},"https://ubuntu.com/security/CVE-2019-9503",[73],[80],{"url":94,"sources":95,"tags":96},"https://ubuntu.com/security/CVE-2019-10126",[73],[80],{"url":98,"sources":99,"tags":100},"https://ubuntu.com/security/CVE-2019-11599",[73],[80],{"url":102,"sources":103,"tags":104},"https://ubuntu.com/security/CVE-2019-12614",[73],[80],{"url":106,"sources":107,"tags":108},"https://ubuntu.com/security/CVE-2019-13272",[73],[80],[],[],[],[113,125,131,137,143],{"ecosystem":114,"name":115,"vendor":116,"product":115,"cpe_part":9,"purl_type":117,"purl_namespace":116,"purl_name":115,"source":9,"versions":118},"Ubuntu","linux","ubuntu","deb",[119],{"version":120,"is_range":121,"range_type":122,"version_start":9,"version_start_type":9,"version_end":123,"version_end_type":124,"fixed_in":9},"lt4_4_0_159_187",true,"ecosystem","4.4.0-159.187","excluding",{"ecosystem":114,"name":126,"vendor":116,"product":126,"cpe_part":9,"purl_type":117,"purl_namespace":116,"purl_name":126,"source":9,"versions":127},"linux-aws",[128],{"version":129,"is_range":121,"range_type":122,"version_start":9,"version_start_type":9,"version_end":130,"version_end_type":124,"fixed_in":9},"lt4_4_0_1090_101","4.4.0-1090.101",{"ecosystem":114,"name":132,"vendor":116,"product":132,"cpe_part":9,"purl_type":117,"purl_namespace":116,"purl_name":132,"source":9,"versions":133},"linux-kvm",[134],{"version":135,"is_range":121,"range_type":122,"version_start":9,"version_start_type":9,"version_end":136,"version_end_type":124,"fixed_in":9},"lt4_4_0_1054_61","4.4.0-1054.61",{"ecosystem":114,"name":138,"vendor":116,"product":138,"cpe_part":9,"purl_type":117,"purl_namespace":116,"purl_name":138,"source":9,"versions":139},"linux-raspi2",[140],{"version":141,"is_range":121,"range_type":122,"version_start":9,"version_start_type":9,"version_end":142,"version_end_type":124,"fixed_in":9},"lt4_4_0_1118_127","4.4.0-1118.127",{"ecosystem":114,"name":144,"vendor":116,"product":144,"cpe_part":9,"purl_type":117,"purl_namespace":116,"purl_name":144,"source":9,"versions":145},"linux-snapdragon",[146],{"version":147,"is_range":121,"range_type":122,"version_start":9,"version_start_type":9,"version_end":148,"version_end_type":124,"fixed_in":9},"lt4_4_0_1122_128","4.4.0-1122.128"]