CVE-2006-6106
- EPSS 3.51%
- Veröffentlicht 19.12.2006 19:28:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Multiple buffer overflows in the cmtp_recv_interopmsg function in the Bluetooth driver (net/bluetooth/cmtp/capi.c) in the Linux kernel 2.4.22 up to 2.4.33.4 and 2.6.2 before 2.6.18.6, and 2.6.19.x, allow remote attackers to cause a denial of service ...
CVE-2006-6304
- EPSS 1.12%
- Veröffentlicht 14.12.2006 20:28:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The do_coredump function in fs/exec.c in the Linux kernel 2.6.19 sets the flag variable to O_EXCL but does not use it, which allows context-dependent attackers to modify arbitrary files via a rewrite attack during a core dump.
CVE-2006-5871
- EPSS 0.07%
- Veröffentlicht 11.12.2006 23:28:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
smbfs in Linux kernel 2.6.8 and other versions, and 2.4.x before 2.4.34, when UNIX extensions are enabled, ignores certain mount options, which could cause clients to use server-specified uid, gid and mode settings.
CVE-2006-6333
- EPSS 2.61%
- Veröffentlicht 06.12.2006 22:28:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The tr_rx function in ibmtr.c for Linux kernel 2.6.19 assigns the wrong flag to the ip_summed field, which allows remote attackers to cause a denial of service (memory corruption) via crafted packets that cause the kernel to interpret another field a...
CVE-2006-5751
- EPSS 0.07%
- Veröffentlicht 02.12.2006 02:28:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Integer overflow in the get_fdb_entries function in net/bridge/br_ioctl.c in the Linux kernel before 2.6.18.4 allows local users to execute arbitrary code via a large maxnum value in an ioctl request.
CVE-2006-6128
- EPSS 0.08%
- Veröffentlicht 27.11.2006 00:07:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The ReiserFS functionality in Linux kernel 2.6.18, and possibly other versions, allows local users to cause a denial of service via a malformed ReiserFS file system that triggers memory corruption when a sync is performed.
CVE-2006-6053
- EPSS 0.06%
- Veröffentlicht 22.11.2006 01:07:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The ext3fs_dirhash function in Linux kernel 2.6.x allows local users to cause a denial of service (crash) via an ext3 stream with malformed data structures.
- EPSS 0.06%
- Veröffentlicht 22.11.2006 01:07:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The ext2 file system code in Linux kernel 2.6.x allows local users to cause a denial of service (crash) via an ext2 stream with malformed data structures that triggers an error in the ext2_check_page due to a length that is smaller than the minimum.
CVE-2006-6056
- EPSS 0.05%
- Veröffentlicht 22.11.2006 01:07:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Linux kernel 2.6.x up to 2.6.18 and possibly other versions, when SELinux hooks are enabled, allows local users to cause a denial of service (crash) via a malformed file stream that triggers a NULL pointer dereference in the superblock_doinit functio...
CVE-2006-6057
- EPSS 0.06%
- Veröffentlicht 22.11.2006 01:07:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The Linux kernel 2.6.x up to 2.6.18, and possibly other versions, on Fedora Core 6 and possibly other operating systems, allows local users to cause a denial of service (crash) via a malformed gfs2 file stream that triggers a NULL pointer dereference...