Linux

Linux Kernel

12162 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.25%
  • Veröffentlicht 02.02.2012 17:55:00
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The Linux kernel, when using IPv6, allows remote attackers to determine whether a host is sniffing the network by sending an ICMPv6 Echo Request to a multicast address and determining whether an Echo Reply is sent, as demonstrated by thcping.

Exploit
  • EPSS 0.75%
  • Veröffentlicht 02.02.2012 04:09:47
  • Zuletzt bearbeitet 11.04.2025 00:51:21

net/sctp/sm_make_chunk.c in the Linux kernel before 2.6.34, when addip_enable and auth_enable are used, does not consider the amount of zero padding during calculation of chunk lengths for (1) INIT and (2) INIT ACK chunks, which allows remote attacke...

  • EPSS 0.1%
  • Veröffentlicht 02.02.2012 04:09:47
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The qdisc_notify function in net/sched/sch_api.c in the Linux kernel before 2.6.35 does not prevent tc_fill_qdisc function calls referencing builtin (aka CQ_F_BUILTIN) Qdisc structures, which allows local users to cause a denial of service (NULL poin...

Exploit
  • EPSS 0.31%
  • Veröffentlicht 27.01.2012 15:55:04
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Buffer overflow in the xfs_readlink function in fs/xfs/xfs_vnodeops.c in XFS in the Linux kernel 2.6, when CONFIG_XFS_DEBUG is disabled, allows local users to cause a denial of service (memory corruption and crash) and possibly execute arbitrary code...

Exploit
  • EPSS 0.14%
  • Veröffentlicht 27.01.2012 15:55:04
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The user_update function in security/keys/user_defined.c in the Linux kernel 2.6 allows local users to cause a denial of service (NULL pointer dereference and kernel oops) via vectors related to a user-defined key and "updating a negative key into a ...

Exploit
  • EPSS 0.13%
  • Veröffentlicht 27.01.2012 15:55:04
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The cleanup_journal_tail function in the Journaling Block Device (JBD) functionality in the Linux kernel 2.6 allows local users to cause a denial of service (assertion error and kernel oops) via an ext3 or ext4 image with an "invalid log first block ...

  • EPSS 0.2%
  • Veröffentlicht 27.01.2012 15:55:04
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The NFS implementation in Linux kernel before 2.6.31-rc6 calls certain functions without properly initializing certain data, which allows local users to cause a denial of service (NULL pointer dereference and O_DIRECT oops), as demonstrated using dio...

  • EPSS 0.22%
  • Veröffentlicht 27.01.2012 15:55:04
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Stack-based buffer overflow in the hfs_mac2asc function in fs/hfs/trans.c in the Linux kernel 2.6 allows local users to cause a denial of service (crash) and possibly execute arbitrary code via an HFS image with a crafted len field.

  • EPSS 78.07%
  • Veröffentlicht 27.01.2012 15:55:04
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The mem_write function in the Linux kernel before 3.2.2, when ASLR is disabled, does not properly check permissions when writing to /proc/<pid>/mem, which allows local users to gain privileges by modifying process memory, as demonstrated by Mempodipp...

  • EPSS 0.12%
  • Veröffentlicht 27.01.2012 15:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The tpm_read function in the Linux kernel 2.6 does not properly clear memory, which might allow local users to read the results of the previous TPM command.