CVE-2009-2287
- EPSS 0.06%
- Veröffentlicht 01.07.2009 13:00:01
- Zuletzt bearbeitet 09.04.2025 00:30:58
The kvm_arch_vcpu_ioctl_set_sregs function in the KVM in Linux kernel 2.6 before 2.6.30, when running on x86 systems, does not validate the page table root in a KVM_SET_SREGS call, which allows local users to cause a denial of service (crash or hang)...
CVE-2009-1389
- EPSS 5.52%
- Veröffentlicht 16.06.2009 23:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Buffer overflow in the RTL8169 NIC driver (drivers/net/r8169.c) in the Linux kernel before 2.6.30 allows remote attackers to cause a denial of service (kernel memory corruption and crash) via a long packet.
CVE-2009-1961
- EPSS 0.13%
- Veröffentlicht 08.06.2009 01:00:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The inode double locking code in fs/ocfs2/file.c in the Linux kernel 2.6.30 before 2.6.30-rc3, 2.6.27 before 2.6.27.24, 2.6.29 before 2.6.29.4, and possibly other versions down to 2.6.19 allows local users to cause a denial of service (prevention of ...
CVE-2009-1385
- EPSS 10.76%
- Veröffentlicht 04.06.2009 16:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Integer underflow in the e1000_clean_rx_irq function in drivers/net/e1000/e1000_main.c in the e1000 driver in the Linux kernel before 2.6.30-rc8, the e1000e driver in the Linux kernel, and Intel Wired Ethernet (aka e1000) before 7.5.5 allows remote a...
CVE-2009-1914
- EPSS 0.08%
- Veröffentlicht 04.06.2009 16:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The pci_register_iommu_region function in arch/sparc/kernel/pci_common.c in the Linux kernel before 2.6.29 on the sparc64 platform allows local users to cause a denial of service (system crash) by reading the /proc/iomem file, related to uninitialize...
CVE-2009-1633
- EPSS 1.84%
- Veröffentlicht 28.05.2009 20:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Multiple buffer overflows in the cifs subsystem in the Linux kernel before 2.6.29.4 allow remote CIFS servers to cause a denial of service (memory corruption) and possibly have unspecified other impact via (1) a malformed Unicode string, related to U...
CVE-2009-1630
- EPSS 0.11%
- Veröffentlicht 14.05.2009 17:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The nfs_permission function in fs/nfs/dir.c in the NFS client implementation in the Linux kernel 2.6.29.3 and earlier, when atomic_open is available, does not check execute (aka EXEC or MAY_EXEC) permission bits, which allows local users to bypass pe...
CVE-2009-1184
- EPSS 0.06%
- Veröffentlicht 05.05.2009 20:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The selinux_ip_postroute_iptables_compat function in security/selinux/hooks.c in the SELinux subsystem in the Linux kernel before 2.6.27.22, and 2.6.28.x before 2.6.28.10, when compat_net is enabled, omits calls to avc_has_perm for the (1) node and (...
CVE-2009-1527
- EPSS 0.06%
- Veröffentlicht 05.05.2009 20:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Race condition in the ptrace_attach function in kernel/ptrace.c in the Linux kernel before 2.6.30-rc4 allows local users to gain privileges via a PTRACE_ATTACH ptrace call during an exec system call that is launching a setuid application, related to ...
CVE-2009-1439
- EPSS 2.34%
- Veröffentlicht 27.04.2009 18:00:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Buffer overflow in fs/cifs/connect.c in CIFS in the Linux kernel 2.6.29 and earlier allows remote attackers to cause a denial of service (crash) via a long nativeFileSystem field in a Tree Connect response to an SMB mount request.