- EPSS 0.08%
- Veröffentlicht 03.07.2012 16:40:32
- Zuletzt bearbeitet 11.04.2025 00:51:21
Use-after-free vulnerability in the Linux kernel before 3.3.6, when huge pages are enabled, allows local users to cause a denial of service (system crash) or possibly gain privileges by interacting with a hugetlbfs filesystem, as demonstrated by a um...
CVE-2011-4086
- EPSS 0.06%
- Veröffentlicht 03.07.2012 16:40:31
- Zuletzt bearbeitet 11.04.2025 00:51:21
The journal_unmap_buffer function in fs/jbd2/transaction.c in the Linux kernel before 3.3.1 does not properly handle the _Delay and _Unwritten buffer head states, which allows local users to cause a denial of service (system crash) by leveraging the ...
CVE-2011-4127
- EPSS 0.04%
- Veröffentlicht 03.07.2012 16:40:31
- Zuletzt bearbeitet 11.04.2025 00:51:21
The Linux kernel before 3.2.2 does not properly restrict SG_IO ioctl calls, which allows local users to bypass intended restrictions on disk read and write operations by sending a SCSI command to (1) a partition block device or (2) an LVM volume.
CVE-2012-0045
- EPSS 0.56%
- Veröffentlicht 03.07.2012 16:40:31
- Zuletzt bearbeitet 11.04.2025 00:51:21
The em_syscall function in arch/x86/kvm/emulate.c in the KVM implementation in the Linux kernel before 3.2.14 does not properly handle the 0f05 (aka syscall) opcode, which allows guest OS users to cause a denial of service (guest OS crash) via a craf...
CVE-2011-1079
- EPSS 0.08%
- Veröffentlicht 21.06.2012 23:55:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
The bnep_sock_ioctl function in net/bluetooth/bnep/sock.c in the Linux kernel before 2.6.39 does not ensure that a certain device field ends with a '\0' character, which allows local users to obtain potentially sensitive information from kernel stack...
CVE-2011-1080
- EPSS 0.08%
- Veröffentlicht 21.06.2012 23:55:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
The do_replace function in net/bridge/netfilter/ebtables.c in the Linux kernel before 2.6.39 does not ensure that a certain name field ends with a '\0' character, which allows local users to obtain potentially sensitive information from kernel stack ...
CVE-2011-1160
- EPSS 0.17%
- Veröffentlicht 21.06.2012 23:55:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
The tpm_open function in drivers/char/tpm/tpm.c in the Linux kernel before 2.6.39 does not initialize a certain buffer, which allows local users to obtain potentially sensitive information from kernel memory via unspecified vectors.
- EPSS 0.18%
- Veröffentlicht 21.06.2012 23:55:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
Integer underflow in the Open Sound System (OSS) subsystem in the Linux kernel before 2.6.39 on unspecified non-x86 platforms allows local users to cause a denial of service (memory corruption) by leveraging write access to /dev/sequencer.
CVE-2011-1477
- EPSS 0.08%
- Veröffentlicht 21.06.2012 23:55:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
Multiple array index errors in sound/oss/opl3.c in the Linux kernel before 2.6.39 allow local users to cause a denial of service (heap memory corruption) or possibly gain privileges by leveraging write access to /dev/sequencer.
CVE-2011-1479
- EPSS 0.11%
- Veröffentlicht 21.06.2012 23:55:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
Double free vulnerability in the inotify subsystem in the Linux kernel before 2.6.39 allows local users to cause a denial of service (system crash) via vectors involving failed attempts to create files. NOTE: this vulnerability exists because of an ...