Linux

Linux Kernel

12162 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.06%
  • Published 18.02.2011 20:00:09
  • Last modified 11.04.2025 00:51:21

The ib_uverbs_poll_cq function in drivers/infiniband/core/uverbs_cmd.c in the Linux kernel before 2.6.37 does not initialize a certain response buffer, which allows local users to obtain potentially sensitive information from kernel memory via vector...

  • EPSS 0.11%
  • Published 02.02.2011 23:00:32
  • Last modified 11.04.2025 00:51:21

The dvb_ca_ioctl function in drivers/media/dvb/ttpci/av7110_ca.c in the Linux kernel before 2.6.38-rc2 does not check the sign of a certain integer field, which allows local users to cause a denial of service (memory corruption) or possibly have unsp...

  • EPSS 0.06%
  • Published 25.01.2011 19:00:03
  • Last modified 11.04.2025 00:51:21

The pipe_fcntl function in fs/pipe.c in the Linux kernel before 2.6.37 does not properly determine whether a file is a named pipe, which allows local users to cause a denial of service via an F_SETPIPE_SZ fcntl call.

Exploit
  • EPSS 0.18%
  • Published 22.01.2011 22:00:04
  • Last modified 11.04.2025 00:51:21

fs/exec.c in the Linux kernel before 2.6.37 does not enable the OOM Killer to assess use of stack memory by arrays representing the (1) arguments and (2) environment, which allows local users to cause a denial of service (memory consumption) via a cr...

Exploit
  • EPSS 5.08%
  • Published 18.01.2011 18:03:07
  • Last modified 11.04.2025 00:51:21

The igb_receive_skb function in drivers/net/igb/igb_main.c in the Intel Gigabit Ethernet (aka igb) subsystem in the Linux kernel before 2.6.34, when Single Root I/O Virtualization (SR-IOV) and promiscuous mode are enabled but no VLANs are registered,...

Exploit
  • EPSS 0.06%
  • Published 14.01.2011 23:00:44
  • Last modified 11.04.2025 00:51:21

include/asm-x86/futex.h in the Linux kernel before 2.6.25 does not properly implement exception fixup, which allows local users to cause a denial of service (panic) via an invalid application that triggers a page fault.

Exploit
  • EPSS 0.05%
  • Published 13.01.2011 19:00:04
  • Last modified 11.04.2025 00:51:21

The load_mixer_volumes function in sound/oss/soundcard.c in the OSS sound subsystem in the Linux kernel before 2.6.37 incorrectly expects that a certain name field ends with a '\0' character, which allows local users to conduct buffer overflow attack...

  • EPSS 0.05%
  • Published 13.01.2011 19:00:04
  • Last modified 11.04.2025 00:51:21

Integer underflow in the irda_getsockopt function in net/irda/af_irda.c in the Linux kernel before 2.6.37 on platforms other than x86 allows local users to obtain potentially sensitive information from kernel heap memory via an IRLMP_ENUMDEVICES gets...

  • EPSS 0.11%
  • Published 11.01.2011 03:00:04
  • Last modified 11.04.2025 00:51:21

Linux kernel 2.6.33 and 2.6.34.y does not initialize the kvm_vcpu_events->interrupt.pad structure member, which allows local users to obtain potentially sensitive information from kernel stack memory via unspecified vectors.

  • EPSS 2.06%
  • Published 11.01.2011 03:00:04
  • Last modified 11.04.2025 00:51:21

Race condition in the sctp_icmp_proto_unreachable function in net/sctp/input.c in Linux kernel 2.6.11-rc2 through 2.6.33 allows remote attackers to cause a denial of service (panic) via an ICMP unreachable message to a socket that is already locked b...