Omar Sandoval

2 exploits Active since Nov 2016
CVE-2016-7911 WRITEUP HIGH WRITEUP
Linux Kernel < 3.2.85 - Race Condition
Race condition in the get_task_ioprio function in block/ioprio.c in the Linux kernel before 4.6.6 allows local users to gain privileges or cause a denial of service (use-after-free) via a crafted ioprio_get system call.
CVSS 7.8
CVE-2017-8067 WRITEUP HIGH WRITEUP
Linux Kernel < 4.9.24 - Out-of-Bounds Write
drivers/char/virtio_console.c in the Linux kernel 4.9.x and 4.10.x before 4.10.12 interacts incorrectly with the CONFIG_VMAP_STACK option, which allows local users to cause a denial of service (system crash or memory corruption) or possibly have unspecified other impact by leveraging use of more than one virtual page for a DMA scatterlist.
CVSS 7.8