CVE-2006-4145
- EPSS 0.12%
- Published 21.08.2006 19:04:00
- Last modified 03.04.2025 01:03:51
The Universal Disk Format (UDF) filesystem driver in Linux kernel 2.6.17 and earlier allows local users to cause a denial of service (hang and crash) via certain operations involving truncated files, as demonstrated via the dd command.
CVE-2006-2446
- EPSS 1.94%
- Published 15.08.2006 22:04:00
- Last modified 03.04.2025 01:03:51
Race condition between the kfree_skb and __skb_unlink functions in the socket buffer handling in Linux kernel 2.6.9, and possibly other versions, allows remote attackers to cause a denial of service (crash), as demonstrated using the TCP stress tests...
CVE-2006-3634
- EPSS 0.05%
- Published 04.08.2006 23:04:00
- Last modified 03.04.2025 01:03:51
The (1) __futex_atomic_op and (2) futex_atomic_cmpxchg_inatomic functions in Linux kernel 2.6.17-rc4 to 2.6.18-rc2 perform the atomic futex operation in the kernel address space instead of the user address space, which allows local users to cause a d...
CVE-2006-3468
- EPSS 22.72%
- Published 21.07.2006 14:03:00
- Last modified 03.04.2025 01:03:51
Linux kernel 2.6.x, when using both NFS and EXT3, allows remote attackers to cause a denial of service (file system panic) via a crafted UDP packet with a V2 lookup procedure that specifies a bad file handle (inode number), which triggers an error an...
CVE-2006-3626
- EPSS 0.08%
- Published 18.07.2006 15:46:00
- Last modified 03.04.2025 01:03:51
Race condition in Linux kernel 2.6.17.4 and earlier allows local users to gain root privileges by using prctl with PR_SET_DUMPABLE in a way that causes /proc/self/environ to become setuid root.
CVE-2006-2936
- EPSS 10.18%
- Published 10.07.2006 19:05:00
- Last modified 03.04.2025 01:03:51
The ftdi_sio driver (usb/serial/ftdi_sio.c) in Linux kernel 2.6.x up to 2.6.17, and possibly later versions, allows local users to cause a denial of service (memory consumption) by writing more data to the serial port than the hardware can handle, wh...
CVE-2006-2451
- EPSS 6.76%
- Published 07.07.2006 18:05:00
- Last modified 03.04.2025 01:03:51
The suid_dumpable support in Linux kernel 2.6.13 up to versions before 2.6.17.4, and 2.6.16 before 2.6.16.24, allows a local user to cause a denial of service (disk consumption) and possibly gain privileges via the PR_SET_DUMPABLE argument of the prc...
CVE-2006-2935
- EPSS 0.22%
- Published 05.07.2006 18:05:00
- Last modified 03.04.2025 01:03:51
The dvd_read_bca function in the DVD handling code in drivers/cdrom/cdrom.c in Linux kernel 2.2.16, and later versions, assigns the wrong value to a length variable, which allows local users to execute arbitrary code via a crafted USB Storage device ...
- EPSS 23.28%
- Published 30.06.2006 21:05:00
- Last modified 03.04.2025 01:03:51
SCTP conntrack (ip_conntrack_proto_sctp.c) in netfilter for Linux kernel 2.6.17 before 2.6.17.3 and 2.6.16 before 2.6.16.23 allows remote attackers to cause a denial of service (crash) via a packet without any chunks, which causes a variable to conta...
CVE-2006-0456
- EPSS 0.09%
- Published 27.06.2006 23:05:00
- Last modified 03.04.2025 01:03:51
The strnlen_user function in Linux kernel before 2.6.16 on IBM S/390 can return an incorrect value, which allows local users to cause a denial of service via unknown vectors.