CVE-2009-4536
- EPSS 1.59%
- Veröffentlicht 12.01.2010 17:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
drivers/net/e1000/e1000_main.c in the e1000 driver in the Linux kernel 2.6.32.3 and earlier handles Ethernet frames that exceed the MTU by processing certain trailing payload data as if it were a complete frame, which allows remote attackers to bypas...
CVE-2009-4537
- EPSS 3.72%
- Veröffentlicht 12.01.2010 17:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
drivers/net/r8169.c in the r8169 driver in the Linux kernel 2.6.32.3 and earlier does not properly check the size of an Ethernet frame that exceeds the MTU, which allows remote attackers to (1) cause a denial of service (temporary network outage) via...
- EPSS 2.68%
- Veröffentlicht 12.01.2010 17:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
drivers/net/e1000e/netdev.c in the e1000e driver in the Linux kernel 2.6.32.3 and earlier does not properly check the size of an Ethernet frame that exceeds the MTU, which allows remote attackers to have an unspecified impact via crafted packets, a r...
CVE-2009-4410
- EPSS 0.07%
- Veröffentlicht 24.12.2009 16:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The fuse_ioctl_copy_user function in the ioctl handler in fs/fuse/file.c in the Linux kernel 2.6.29-rc1 through 2.6.30.y uses the wrong variable in an argument to the kunmap function, which allows local users to cause a denial of service (panic) via ...
CVE-2009-4138
- EPSS 0.08%
- Veröffentlicht 16.12.2009 19:30:01
- Zuletzt bearbeitet 09.04.2025 00:30:58
drivers/firewire/ohci.c in the Linux kernel before 2.6.32-git9, when packet-per-buffer mode is used, allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unknown other impact via an unspecified ...
CVE-2009-4131
- EPSS 0.09%
- Veröffentlicht 13.12.2009 01:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The EXT4_IOC_MOVE_EXT (aka move extents) ioctl implementation in the ext4 filesystem in the Linux kernel before 2.6.32-git6 allows local users to overwrite arbitrary files via a crafted request, related to insufficient checks for file permissions.
CVE-2009-4306
- EPSS 0.05%
- Veröffentlicht 13.12.2009 01:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Unspecified vulnerability in the EXT4_IOC_MOVE_EXT (aka move extents) ioctl implementation in the ext4 filesystem in the Linux kernel 2.6.32-git6 and earlier allows local users to cause a denial of service (filesystem corruption) via unknown vectors,...
CVE-2009-4307
- EPSS 3.36%
- Veröffentlicht 13.12.2009 01:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The ext4_fill_flex_info function in fs/ext4/super.c in the Linux kernel before 2.6.32-git6 allows user-assisted remote attackers to cause a denial of service (divide-by-zero error and panic) via a malformed ext4 filesystem containing a super block wi...
CVE-2009-4308
- EPSS 3.87%
- Veröffentlicht 13.12.2009 01:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The ext4_decode_error function in fs/ext4/super.c in the ext4 filesystem in the Linux kernel before 2.6.32 allows user-assisted remote attackers to cause a denial of service (NULL pointer dereference), and possibly have unspecified other impact, via ...
CVE-2009-1298
- EPSS 2.32%
- Veröffentlicht 08.12.2009 23:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The ip_frag_reasm function in net/ipv4/ip_fragment.c in the Linux kernel 2.6.32-rc8, and 2.6.29 and later versions before 2.6.32, calls IP_INC_STATS_BH with an incorrect argument, which allows remote attackers to cause a denial of service (NULL point...