Linux

Linux Kernel

12152 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 5.51%
  • Published 19.10.2009 20:00:00
  • Last modified 09.04.2025 00:30:58

The swiotlb functionality in the r8169 driver in drivers/net/r8169.c in the Linux kernel before 2.6.27.22 allows remote attackers to cause a denial of service (IOMMU space exhaustion and system crash) by using jumbo frames for a large amount of netwo...

  • EPSS 2.22%
  • Published 13.10.2009 10:30:00
  • Last modified 09.04.2025 00:30:58

The d_delete function in fs/ecryptfs/inode.c in eCryptfs in the Linux kernel 2.6.31 allows local users to cause a denial of service (kernel OOPS) and possibly execute arbitrary code via unspecified vectors that cause a "negative dentry" and trigger a...

  • EPSS 0.1%
  • Published 22.09.2009 10:30:00
  • Last modified 09.04.2025 00:30:58

NFSv4 in the Linux kernel 2.6.18, and possibly other versions, does not properly clean up an inode when an O_EXCL create fails, which causes files to be created with insecure settings such as setuid bits, and possibly allows local users to gain privi...

Exploit
  • EPSS 0.08%
  • Published 22.09.2009 10:30:00
  • Last modified 09.04.2025 00:30:58

The sg_build_indirect function in drivers/scsi/sg.c in Linux kernel 2.6.28-rc1 through 2.6.31-rc8 uses an incorrect variable when accessing an array, which allows local users to cause a denial of service (kernel OOPS and NULL pointer dereference), as...

  • EPSS 0.05%
  • Published 22.09.2009 10:30:00
  • Last modified 09.04.2025 00:30:58

The kvm_emulate_hypercall function in arch/x86/kvm/x86.c in KVM in the Linux kernel 2.6.25-rc1, and other versions before 2.6.31, when running on x86 systems, does not prevent access to MMU hypercalls from ring 0, which allows local guest OS users to...

  • EPSS 1.82%
  • Published 21.09.2009 19:30:00
  • Last modified 09.04.2025 00:30:58

Integer signedness error in the find_ie function in net/wireless/scan.c in the cfg80211 subsystem in the Linux kernel before 2.6.31.1-rc1 allows remote attackers to cause a denial of service (soft lockup) via malformed packets.

Exploit
  • EPSS 0.24%
  • Published 18.09.2009 10:30:01
  • Last modified 09.04.2025 00:30:58

The get_random_int function in drivers/char/random.c in the Linux kernel before 2.6.30 produces insufficiently random numbers, which allows attackers to predict the return value, and possibly defeat protection mechanisms based on randomization, via v...

  • EPSS 0.08%
  • Published 18.09.2009 10:30:00
  • Last modified 09.04.2025 00:30:58

The z90crypt_unlocked_ioctl function in the z90crypt driver in the Linux kernel 2.6.9 does not perform a capability check for the Z90QUIESCE operation, which allows local users to leverage euid 0 privileges to force a driver outage.

Exploit
  • EPSS 0.97%
  • Published 17.09.2009 10:30:01
  • Last modified 09.04.2025 00:30:58

Buffer overflow in the perf_copy_attr function in kernel/perf_counter.c in the Linux kernel 2.6.31-rc1 allows local users to cause a denial of service (crash) and execute arbitrary code via a "big size data" to the perf_counter_open system call.

  • EPSS 3.77%
  • Published 15.09.2009 22:30:00
  • Last modified 09.04.2025 00:30:58

Memory leak in the appletalk subsystem in the Linux kernel 2.4.x through 2.4.37.6 and 2.6.x through 2.6.31, when the appletalk and ipddp modules are loaded but the ipddp"N" device is not found, allows remote attackers to cause a denial of service (me...