- EPSS 12.95%
- Veröffentlicht 23.08.2005 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
inflate.c in the zlib routines in the Linux kernel before 2.6.12.5 allows remote attackers to cause a denial of service (kernel crash) via a compressed file with "improper tables".
- EPSS 5.31%
- Veröffentlicht 23.08.2005 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The huft_build function in inflate.c in the zlib routines in the Linux kernel before 2.6.12.5 returns the wrong value, which allows remote attackers to cause a denial of service (kernel crash) via a certain compressed file that leads to a null pointe...
CVE-2005-2617
- EPSS 0.06%
- Veröffentlicht 17.08.2005 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The syscall32_setup_pages function in syscall32.c for Linux kernel 2.6.12 and later, on the 64-bit x86 platform, does not check the return value of the insert_vm_struct function, which allows local users to trigger a memory leak via a 32-bit applicat...
CVE-2005-2555
- EPSS 0.09%
- Veröffentlicht 16.08.2005 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Linux kernel 2.6.x does not properly restrict socket policy access to users with the CAP_NET_ADMIN capability, which could allow local users to conduct unauthorized activities via (1) ipv4/ip_sockglue.c and (2) ipv6/ipv6_sockglue.c.
- EPSS 1.84%
- Veröffentlicht 12.08.2005 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
vlan_dev.c in the VLAN code for Linux kernel 2.6.8 allows remote attackers to cause a denial of service (kernel oops from null dereference) via certain UDP packets that lead to a function call with the wrong argument, as demonstrated using snmpwalk o...
CVE-2005-2553
- EPSS 0.09%
- Veröffentlicht 12.08.2005 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The find_target function in ptrace32.c in the Linux kernel 2.4.x before 2.4.29 does not properly handle a NULL return value from another function, which allows local users to cause a denial of service (kernel crash/oops) by running a 32-bit ltrace pr...
CVE-2005-2500
- EPSS 2.58%
- Veröffentlicht 08.08.2005 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Buffer overflow in the xdr_xcode_array2 function in xdr.c in Linux kernel 2.6.12, as used in SuSE Linux Enterprise Server 9, might allow remote attackers to cause a denial of service and possibly execute arbitrary code via crafted XDR data for the nf...
CVE-2005-2456
- EPSS 0.12%
- Veröffentlicht 04.08.2005 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Array index overflow in the xfrm_sk_policy_insert function in xfrm_user.c in Linux kernel 2.6 allows local users to cause a denial of service (oops or deadlock) and possibly execute arbitrary code via a p->dir value that is larger than XFRM_POLICY_OU...
CVE-2005-1762
- EPSS 0.06%
- Veröffentlicht 02.08.2005 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The ptrace call in the Linux kernel 2.6.8.1 and 2.6.10 for the AMD64 platform allows local users to cause a denial of service (kernel crash) via a "non-canonical" address.
CVE-2005-1768
- EPSS 0.11%
- Veröffentlicht 11.07.2005 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Race condition in the ia32 compatibility code for the execve system call in Linux kernel 2.4 before 2.4.31 and 2.6 before 2.6.6 allows local users to cause a denial of service (kernel panic) and possibly execute arbitrary code via a concurrent thread...