Linux

Linux Kernel

12162 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.06%
  • Veröffentlicht 18.02.2011 20:00:09
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The ib_uverbs_poll_cq function in drivers/infiniband/core/uverbs_cmd.c in the Linux kernel before 2.6.37 does not initialize a certain response buffer, which allows local users to obtain potentially sensitive information from kernel memory via vector...

  • EPSS 0.11%
  • Veröffentlicht 02.02.2011 23:00:32
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The dvb_ca_ioctl function in drivers/media/dvb/ttpci/av7110_ca.c in the Linux kernel before 2.6.38-rc2 does not check the sign of a certain integer field, which allows local users to cause a denial of service (memory corruption) or possibly have unsp...

  • EPSS 0.06%
  • Veröffentlicht 25.01.2011 19:00:03
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The pipe_fcntl function in fs/pipe.c in the Linux kernel before 2.6.37 does not properly determine whether a file is a named pipe, which allows local users to cause a denial of service via an F_SETPIPE_SZ fcntl call.

Exploit
  • EPSS 0.18%
  • Veröffentlicht 22.01.2011 22:00:04
  • Zuletzt bearbeitet 11.04.2025 00:51:21

fs/exec.c in the Linux kernel before 2.6.37 does not enable the OOM Killer to assess use of stack memory by arrays representing the (1) arguments and (2) environment, which allows local users to cause a denial of service (memory consumption) via a cr...

Exploit
  • EPSS 5.08%
  • Veröffentlicht 18.01.2011 18:03:07
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The igb_receive_skb function in drivers/net/igb/igb_main.c in the Intel Gigabit Ethernet (aka igb) subsystem in the Linux kernel before 2.6.34, when Single Root I/O Virtualization (SR-IOV) and promiscuous mode are enabled but no VLANs are registered,...

Exploit
  • EPSS 0.06%
  • Veröffentlicht 14.01.2011 23:00:44
  • Zuletzt bearbeitet 11.04.2025 00:51:21

include/asm-x86/futex.h in the Linux kernel before 2.6.25 does not properly implement exception fixup, which allows local users to cause a denial of service (panic) via an invalid application that triggers a page fault.

Exploit
  • EPSS 0.05%
  • Veröffentlicht 13.01.2011 19:00:04
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The load_mixer_volumes function in sound/oss/soundcard.c in the OSS sound subsystem in the Linux kernel before 2.6.37 incorrectly expects that a certain name field ends with a '\0' character, which allows local users to conduct buffer overflow attack...

  • EPSS 0.05%
  • Veröffentlicht 13.01.2011 19:00:04
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Integer underflow in the irda_getsockopt function in net/irda/af_irda.c in the Linux kernel before 2.6.37 on platforms other than x86 allows local users to obtain potentially sensitive information from kernel heap memory via an IRLMP_ENUMDEVICES gets...

  • EPSS 0.11%
  • Veröffentlicht 11.01.2011 03:00:04
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Linux kernel 2.6.33 and 2.6.34.y does not initialize the kvm_vcpu_events->interrupt.pad structure member, which allows local users to obtain potentially sensitive information from kernel stack memory via unspecified vectors.

  • EPSS 2.06%
  • Veröffentlicht 11.01.2011 03:00:04
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Race condition in the sctp_icmp_proto_unreachable function in net/sctp/input.c in Linux kernel 2.6.11-rc2 through 2.6.33 allows remote attackers to cause a denial of service (panic) via an ICMP unreachable message to a socket that is already locked b...