Linux

Linux Kernel

12162 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.09%
  • Published 29.07.2013 13:59:56
  • Last modified 11.04.2025 00:51:21

The ip6_append_data_mtu function in net/ipv6/ip6_output.c in the IPv6 implementation in the Linux kernel through 3.10.3 does not properly maintain information about whether the IPV6_MTU setsockopt option had been specified, which allows local users t...

  • EPSS 0.12%
  • Published 16.07.2013 14:08:50
  • Last modified 11.04.2025 00:51:21

The KVM subsystem in the Linux kernel before 3.0 does not check whether kernel addresses are specified during allocation of memory slots for use in a guest's physical address space, which allows local users to gain privileges or obtain sensitive info...

Exploit
  • EPSS 1.43%
  • Published 15.07.2013 20:55:03
  • Last modified 11.04.2025 00:51:21

The fib6_add_rt2node function in net/ipv6/ip6_fib.c in the IPv6 stack in the Linux kernel through 3.10.1 does not properly handle Router Advertisement (RA) messages in certain circumstances involving three routes that initially qualified for membersh...

  • EPSS 1.79%
  • Published 08.07.2013 17:55:01
  • Last modified 11.04.2025 00:51:21

net/ceph/auth_none.c in the Linux kernel through 3.10 allows remote attackers to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact via an auth_reply message that triggers an attempted buil...

Exploit
  • EPSS 3.21%
  • Published 04.07.2013 21:55:01
  • Last modified 11.04.2025 00:51:21

The sctp_sf_do_5_2_4_dupcook function in net/sctp/sm_statefuns.c in the SCTP implementation in the Linux kernel before 3.8.5 does not properly handle associations during the processing of a duplicate COOKIE ECHO chunk, which allows remote attackers t...

Exploit
  • EPSS 0.09%
  • Published 04.07.2013 21:55:01
  • Last modified 11.04.2025 00:51:21

The ip6_sk_dst_check function in net/ipv6/ip6_output.c in the Linux kernel before 3.10 allows local users to cause a denial of service (system crash) by using an AF_INET6 socket for a connection to an IPv4 interface.

Exploit
  • EPSS 0.08%
  • Published 04.07.2013 21:55:01
  • Last modified 11.04.2025 00:51:21

The (1) key_notify_sa_flush and (2) key_notify_policy_flush functions in net/key/af_key.c in the Linux kernel before 3.10 do not initialize certain structure members, which allows local users to obtain sensitive information from kernel heap memory by...

Exploit
  • EPSS 0.08%
  • Published 04.07.2013 21:55:01
  • Last modified 11.04.2025 00:51:21

The key_notify_policy_flush function in net/key/af_key.c in the Linux kernel before 3.9 does not initialize a certain structure member, which allows local users to obtain sensitive information from kernel heap memory by reading a broadcast message fr...

Exploit
  • EPSS 0.07%
  • Published 04.07.2013 21:55:00
  • Last modified 11.04.2025 00:51:21

The mmc_ioctl_cdrom_read_data function in drivers/cdrom/cdrom.c in the Linux kernel through 3.10 allows local users to obtain sensitive information from kernel memory via a read operation on a malfunctioning CD-ROM drive.

Exploit
  • EPSS 0.05%
  • Published 08.06.2013 13:05:55
  • Last modified 11.04.2025 00:51:21

The cifs_find_smb_ses function in fs/cifs/connect.c in the Linux kernel before 2.6.36 does not properly determine the associations between users and sessions, which allows local users to bypass CIFS share authentication by leveraging a mount of a sha...