Linux

Linux Kernel

12152 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.06%
  • Published 14.08.2009 15:16:27
  • Last modified 09.04.2025 00:30:58

The mm_for_maps function in fs/proc/base.c in the Linux kernel 2.6.30.4 and earlier allows local users to read (1) maps and (2) smaps files under proc/ via vectors related to ELF loading, a setuid process, and a race condition.

Exploit
  • EPSS 18.38%
  • Published 14.08.2009 15:16:27
  • Last modified 09.04.2025 00:30:58

The Linux kernel 2.6.0 through 2.6.30.4, and 2.4.4 through 2.4.37.4, does not initialize all function pointers for socket operations in proto_ops structures, which allows local users to trigger a NULL pointer dereference and gain privileges by using ...

  • EPSS 0.13%
  • Published 14.08.2009 15:16:27
  • Last modified 09.04.2025 00:30:58

The init_posix_timers function in kernel/posix-timers.c in the Linux kernel before 2.6.31-rc6 allows local users to cause a denial of service (OOPS) or possibly gain privileges via a CLOCK_MONOTONIC_RAW clock_nanosleep call that triggers a NULL point...

  • EPSS 0.09%
  • Published 14.08.2009 15:16:27
  • Last modified 09.04.2025 00:30:58

The load_flat_shared_library function in fs/binfmt_flat.c in the flat subsystem in the Linux kernel before 2.6.31-rc6 allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impac...

Exploit
  • EPSS 0.25%
  • Published 31.07.2009 19:00:01
  • Last modified 09.04.2025 00:30:58

Stack-based buffer overflow in the parse_tag_11_packet function in fs/ecryptfs/keystore.c in the eCryptfs subsystem in the Linux kernel before 2.6.30.4 allows local users to cause a denial of service (system crash) or possibly gain privileges via vec...

Exploit
  • EPSS 0.28%
  • Published 31.07.2009 19:00:01
  • Last modified 09.04.2025 00:30:58

Heap-based buffer overflow in the parse_tag_3_packet function in fs/ecryptfs/keystore.c in the eCryptfs subsystem in the Linux kernel before 2.6.30.4 allows local users to cause a denial of service (system crash) or possibly gain privileges via vecto...

Exploit
  • EPSS 0.07%
  • Published 23.07.2009 20:30:00
  • Last modified 09.04.2025 00:30:58

Off-by-one error in the options_write function in drivers/misc/sgi-gru/gruprocfs.c in the SGI GRU driver in the Linux kernel 2.6.30.2 and earlier on ia64 and x86 platforms might allow local users to overwrite arbitrary memory locations and gain privi...

Exploit
  • EPSS 2.92%
  • Published 20.07.2009 17:30:54
  • Last modified 09.04.2025 00:30:58

The tun_chr_poll function in drivers/net/tun.c in the tun subsystem in the Linux kernel 2.6.30 and 2.6.30.1, when the -fno-delete-null-pointer-checks gcc option is omitted, allows local users to gain privileges via vectors involving a NULL pointer de...

  • EPSS 0.06%
  • Published 16.07.2009 15:30:00
  • Last modified 09.04.2025 00:30:58

The personality subsystem in the Linux kernel before 2.6.31-rc3 has a PER_CLEAR_ON_SETID setting that does not clear the ADDR_COMPAT_LAYOUT and MMAP_PAGE_ZERO flags when executing a setuid or setgid program, which makes it easier for local users to l...

  • EPSS 0.06%
  • Published 05.07.2009 16:30:00
  • Last modified 09.04.2025 00:30:58

The ptrace_start function in kernel/ptrace.c in the Linux kernel 2.6.18 does not properly handle simultaneous execution of the do_coredump function, which allows local users to cause a denial of service (deadlock) via vectors involving the ptrace sys...