CVE-2007-6063
- EPSS 0.09%
- Published 21.11.2007 00:46:00
- Last modified 09.04.2025 00:30:58
Buffer overflow in the isdn_net_setcfg function in isdn_net.c in Linux kernel 2.6.23 allows local users to have an unknown impact via a crafted argument to the isdn_ioctl function.
CVE-2007-5500
- EPSS 0.08%
- Published 20.11.2007 02:46:00
- Last modified 09.04.2025 00:30:58
The wait_task_stopped function in the Linux kernel before 2.6.23.8 checks a TASK_TRACED bit instead of an exit_state value, which allows local users to cause a denial of service (machine crash) via unspecified vectors. NOTE: some of these details ar...
CVE-2007-5501
- EPSS 6.64%
- Published 15.11.2007 20:46:00
- Last modified 09.04.2025 00:30:58
The tcp_sacktag_write_queue function in net/ipv4/tcp_input.c in Linux kernel 2.6.21 through 2.6.23.7, and 2.6.24-rc through 2.6.24-rc2, allows remote attackers to cause a denial of service (crash) via crafted ACK responses that trigger a NULL pointer...
CVE-2007-5904
- EPSS 1.97%
- Published 09.11.2007 18:46:00
- Last modified 09.04.2025 00:30:58
Multiple buffer overflows in CIFS VFS in Linux kernel 2.6.23 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via long SMB responses that trigger the overflows in the SendReceive function.
CVE-2007-4997
- EPSS 4.57%
- Published 06.11.2007 19:46:00
- Last modified 09.04.2025 00:30:58
Integer underflow in the ieee80211_rx function in net/ieee80211/ieee80211_rx.c in the Linux kernel 2.6.x before 2.6.23 allows remote attackers to cause a denial of service (crash) via a crafted SKB length value in a runt IEEE 802.11 frame when the IE...
CVE-2007-3850
- EPSS 0.06%
- Published 23.10.2007 10:46:00
- Last modified 09.04.2025 00:30:58
The eHCA driver in Linux kernel 2.6 before 2.6.22, when running on PowerPC, does not properly map userspace resources, which allows local users to read portions of physical address space.
CVE-2007-4133
- EPSS 0.05%
- Published 04.10.2007 23:17:00
- Last modified 09.04.2025 00:30:58
The (1) hugetlb_vmtruncate_list and (2) hugetlb_vmtruncate functions in fs/hugetlbfs/inode.c in the Linux kernel before 2.6.19-rc4 perform certain prio_tree calculations using HPAGE_SIZE instead of PAGE_SIZE units, which allows local users to cause a...
- EPSS 0.08%
- Published 26.09.2007 21:17:00
- Last modified 09.04.2025 00:30:58
The disconnect method in the Philips USB Webcam (pwc) driver in Linux kernel 2.6.x before 2.6.22.6 "relies on user space to close the device," which allows user-assisted local attackers to cause a denial of service (USB subsystem hang and CPU consump...
CVE-2007-4571
- EPSS 0.13%
- Published 26.09.2007 10:17:00
- Last modified 09.04.2025 00:30:58
The snd_mem_proc_read function in sound/core/memalloc.c in the Advanced Linux Sound Architecture (ALSA) in the Linux kernel before 2.6.22.8 does not return the correct write size, which allows local users to obtain sensitive information (kernel memor...
CVE-2007-5087
- EPSS 0.11%
- Published 26.09.2007 10:17:00
- Last modified 09.04.2025 00:30:58
The ATM module in the Linux kernel before 2.4.35.3, when CLIP support is enabled, allows local users to cause a denial of service (kernel panic) by reading /proc/net/atm/arp before the CLIP module has been loaded.