CVE-2007-0958
- EPSS 0.07%
- Veröffentlicht 15.02.2007 18:28:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Linux kernel 2.6.x before 2.6.20 allows local users to read unreadable binaries by using the interpreter (PT_INTERP) functionality and triggering a core dump, a variant of CVE-2004-1073.
CVE-2007-0822
- EPSS 0.06%
- Veröffentlicht 07.02.2007 20:28:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
umount, when running with the Linux 2.6.15 kernel on Slackware Linux 10.2, allows local users to trigger a NULL dereference and application crash by invoking the program with a pathname for a USB pen drive that was mounted and then physically removed...
CVE-2007-0006
- EPSS 0.09%
- Veröffentlicht 06.02.2007 19:28:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The key serial number collision avoidance code in the key_alloc_serial function in Linux kernel 2.6.9 up to 2.6.20 allows local users to cause a denial of service (crash) via vectors that trigger a null dereference, as originally reported as "spinloc...
CVE-2006-5753
- EPSS 0.08%
- Veröffentlicht 30.01.2007 19:28:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Unspecified vulnerability in the listxattr system call in Linux kernel, when a "bad inode" is present, allows local users to cause a denial of service (data corruption) and possibly gain privileges via unknown vectors.
CVE-2006-5754
- EPSS 0.05%
- Veröffentlicht 30.01.2007 19:28:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The aio_setup_ring function in Linux kernel does not properly initialize a variable, which allows local users to cause a denial of service (crash) via an unspecified error path that causes an incorrect free operation.
CVE-2006-6535
- EPSS 1.15%
- Veröffentlicht 30.01.2007 19:28:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The dev_queue_xmit function in Linux kernel 2.6 can fail before calling the local_bh_disable function, which could lead to data corruption and "node lockups." NOTE: it is not clear whether this issue is exploitable.
CVE-2006-6921
- EPSS 0.06%
- Veröffentlicht 12.01.2007 23:28:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Unspecified versions of the Linux kernel allow local users to cause a denial of service (unrecoverable zombie process) via a program with certain instructions that prevent init from properly reaping a child whose parent has died.
CVE-2006-5749
- EPSS 0.08%
- Veröffentlicht 31.12.2006 05:00:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The isdn_ppp_ccp_reset_alloc_state function in drivers/isdn/isdn_ppp.c in the Linux 2.4 kernel before 2.4.34-rc4 does not call the init_timer function for the ISDN PPP CCP reset state timer, which has unknown attack vectors and results in a system cr...
CVE-2006-5755
- EPSS 0.05%
- Veröffentlicht 31.12.2006 05:00:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Linux kernel before 2.6.18, when running on x86_64 systems, does not properly save or restore EFLAGS during a context switch, which allows local users to cause a denial of service (crash) by causing SYSENTER to set an NT flag, which can trigger a cra...
CVE-2006-4814
- EPSS 0.09%
- Veröffentlicht 20.12.2006 02:28:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The mincore function in the Linux kernel before 2.4.33.6 does not properly lock access to user space, which has unspecified impact and attack vectors, possibly related to a deadlock.