Linux

Linux Kernel

12152 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 2.48%
  • Veröffentlicht 30.10.2009 20:30:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The handle_dr function in arch/x86/kvm/vmx.c in the KVM subsystem in the Linux kernel before 2.6.31.1 does not properly verify the Current Privilege Level (CPL) before accessing a debug register, which allows guest OS users to cause a denial of servi...

Exploit
  • EPSS 0.06%
  • Veröffentlicht 29.10.2009 14:30:01
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Integer overflow in the kvm_dev_ioctl_get_supported_cpuid function in arch/x86/kvm/x86.c in the KVM subsystem in the Linux kernel before 2.6.31.4 allows local users to have an unspecified impact via a KVM_GET_SUPPORTED_CPUID request to the kvm_arch_d...

  • EPSS 0.06%
  • Veröffentlicht 29.10.2009 14:30:01
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The update_cr8_intercept function in arch/x86/kvm/x86.c in the KVM subsystem in the Linux kernel before 2.6.32-rc1 does not properly handle the absence of an Advanced Programmable Interrupt Controller (APIC), which allows local users to cause a denia...

  • EPSS 0.07%
  • Veröffentlicht 22.10.2009 16:00:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The ATI Rage 128 (aka r128) driver in the Linux kernel before 2.6.31-git11 does not properly verify Concurrent Command Engine (CCE) state initialization, which allows local users to cause a denial of service (NULL pointer dereference and system crash...

Exploit
  • EPSS 0.04%
  • Veröffentlicht 22.10.2009 16:00:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

net/unix/af_unix.c in the Linux kernel 2.6.31.4 and earlier allows local users to cause a denial of service (system hang) by creating an abstract-namespace AF_UNIX listening socket, performing a shutdown operation on this socket, and then performing ...

  • EPSS 0.05%
  • Veröffentlicht 20.10.2009 17:30:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Integer signedness error in the ax25_setsockopt function in net/ax25/af_ax25.c in the ax25 subsystem in the Linux kernel before 2.6.31.2 allows local users to cause a denial of service (OOPS) via a crafted optlen value in an SO_BINDTODEVICE operation...

  • EPSS 0.05%
  • Veröffentlicht 20.10.2009 17:30:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

arch/x86/ia32/ia32entry.S in the Linux kernel before 2.6.31.4 on the x86_64 platform does not clear certain kernel registers before a return to user mode, which allows local users to read register values from an earlier process by switching an ia32 p...

  • EPSS 0.07%
  • Veröffentlicht 19.10.2009 20:00:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The netlink subsystem in the Linux kernel 2.4.x before 2.4.37.6 and 2.6.x before 2.6.13-rc1 does not initialize certain padding fields in structures, which might allow local users to obtain sensitive information from kernel memory via unspecified vec...

  • EPSS 0.08%
  • Veröffentlicht 19.10.2009 20:00:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The tc_fill_tclass function in net/sched/sch_api.c in the tc subsystem in the Linux kernel 2.4.x before 2.4.37.6 and 2.6.x before 2.6.31-rc9 does not initialize certain (1) tcm__pad1 and (2) tcm__pad2 structure members, which might allow local users ...

  • EPSS 0.07%
  • Veröffentlicht 19.10.2009 20:00:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The tcf_fill_node function in net/sched/cls_api.c in the netlink subsystem in the Linux kernel 2.6.x before 2.6.32-rc5, and 2.4.37.6 and earlier, does not initialize a certain tcm__pad2 structure member, which might allow local users to obtain sensit...