Linux

Linux Kernel

12152 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.05%
  • Veröffentlicht 08.08.2008 19:41:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Off-by-one error in the iov_iter_advance function in mm/filemap.c in the Linux kernel before 2.6.27-rc2 allows local users to cause a denial of service (system crash) via a certain sequence of file I/O operations with readv and writev, as demonstrate...

  • EPSS 0.06%
  • Veröffentlicht 08.08.2008 18:41:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The snd_seq_oss_synth_make_info function in sound/core/seq/oss/seq_oss_synth.c in the sound subsystem in the Linux kernel before 2.6.27-rc2 does not verify that the device number is within the range defined by max_synthdev before returning certain da...

  • EPSS 1.17%
  • Veröffentlicht 06.08.2008 18:41:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Buffer overflow in format descriptor parsing in the uvc_parse_format function in drivers/media/video/uvc/uvc_driver.c in uvcvideo in the video4linux (V4L) implementation in the Linux kernel before 2.6.26.1 has unknown impact and attack vectors.

  • EPSS 0.09%
  • Veröffentlicht 24.07.2008 15:41:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The LDT implementation in the Linux kernel 2.6.25.x before 2.6.25.11 on x86_64 platforms uses an incorrect size for ldt_desc, which allows local users to cause a denial of service (system crash) or possibly gain privileges via unspecified vectors.

  • EPSS 0.02%
  • Veröffentlicht 09.07.2008 18:41:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The do_change_type function in fs/namespace.c in the Linux kernel before 2.6.22 does not verify that the caller has the CAP_SYS_ADMIN capability, which allows local users to gain privileges or cause a denial of service by modifying the properties of ...

  • EPSS 0.05%
  • Veröffentlicht 09.07.2008 00:41:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The Linux kernel before 2.6.25.10 does not properly perform tty operations, which allows local users to cause a denial of service (system crash) or possibly gain privileges via vectors involving NULL pointer dereference of function pointers in (1) ha...

  • EPSS 0.07%
  • Veröffentlicht 09.07.2008 00:41:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

arch/x86/kernel/ptrace.c in the Linux kernel before 2.6.25.10 on the x86_64 platform leaks task_struct references into the sys32_ptrace function, which allows local users to cause a denial of service (system crash) or have unspecified other impact vi...

  • EPSS 0.05%
  • Veröffentlicht 02.07.2008 16:41:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The Linux kernel 2.6.24 and 2.6.25 before 2.6.25.9 allows local users to cause a denial of service (memory consumption) via a large number of calls to the get_user_pages function, which lacks a ZERO_PAGE optimization and results in allocation of "use...

  • EPSS 0.08%
  • Veröffentlicht 02.07.2008 16:41:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Integer overflow in the sctp_getsockopt_local_addrs_old function in net/sctp/socket.c in the Stream Control Transmission Protocol (sctp) functionality in the Linux kernel before 2.6.25.9 allows local users to cause a denial of service (resource consu...

  • EPSS 0.08%
  • Veröffentlicht 30.06.2008 22:41:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Unspecified vulnerability in the 32-bit and 64-bit emulation in the Linux kernel 2.6.9, 2.6.18, and probably other versions allows local users to read uninitialized memory via unknown vectors involving a crafted binary.