CVE-2011-2210
- EPSS 0.15%
- Published 13.06.2012 10:24:54
- Last modified 11.04.2025 00:51:21
The osf_getsysinfo function in arch/alpha/kernel/osf_sys.c in the Linux kernel before 2.6.39.4 on the Alpha platform does not properly restrict the data size for GSI_GET_HWRPB operations, which allows local users to obtain sensitive information from ...
CVE-2011-2211
- EPSS 0.05%
- Published 13.06.2012 10:24:54
- Last modified 11.04.2025 00:51:21
The osf_wait4 function in arch/alpha/kernel/osf_sys.c in the Linux kernel before 2.6.39.4 on the Alpha platform uses an incorrect pointer, which allows local users to gain privileges by writing a certain integer value to kernel memory.
CVE-2011-2493
- EPSS 0.06%
- Published 13.06.2012 10:24:54
- Last modified 11.04.2025 00:51:21
The ext4_fill_super function in fs/ext4/super.c in the Linux kernel before 2.6.39 does not properly initialize a certain error-report data structure, which allows local users to cause a denial of service (OOPS) by attempting to mount a crafted ext4 f...
CVE-2011-1759
- EPSS 0.18%
- Published 13.06.2012 10:24:53
- Last modified 11.04.2025 00:51:21
Integer overflow in the sys_oabi_semtimedop function in arch/arm/kernel/sys_oabi-compat.c in the Linux kernel before 2.6.39 on the ARM platform, when CONFIG_OABI_COMPAT is enabled, allows local users to gain privileges or cause a denial of service (h...
- EPSS 0.1%
- Published 24.05.2012 23:55:02
- Last modified 11.04.2025 00:51:21
The ptrace_setxregs function in arch/xtensa/kernel/ptrace.c in the Linux kernel before 3.1 does not validate user-space pointers, which allows local users to obtain sensitive information from kernel memory locations via a crafted PTRACE_SETXTREGS req...
CVE-2011-2898
- EPSS 0.08%
- Published 24.05.2012 23:55:02
- Last modified 11.04.2025 00:51:21
net/packet/af_packet.c in the Linux kernel before 2.6.39.3 does not properly restrict user-space access to certain packet data structures associated with VLAN Tag Control Information, which allows local users to obtain potentially sensitive informati...
CVE-2011-2906
- EPSS 0.06%
- Published 24.05.2012 23:55:02
- Last modified 11.04.2025 00:51:21
Integer signedness error in the pmcraid_ioctl_passthrough function in drivers/scsi/pmcraid.c in the Linux kernel before 3.1 might allow local users to cause a denial of service (memory consumption or memory corruption) via a negative size value in an...
CVE-2011-2918
- EPSS 0.08%
- Published 24.05.2012 23:55:02
- Last modified 11.04.2025 00:51:21
The Performance Events subsystem in the Linux kernel before 3.1 does not properly handle event overflows associated with PERF_COUNT_SW_CPU_CLOCK events, which allows local users to cause a denial of service (system hang) via a crafted application.
CVE-2011-3188
- EPSS 2.3%
- Published 24.05.2012 23:55:02
- Last modified 11.04.2025 00:51:21
The (1) IPv4 and (2) IPv6 implementations in the Linux kernel before 3.1 use a modified MD4 algorithm to generate sequence numbers and Fragment Identification values, which makes it easier for remote attackers to cause a denial of service (disrupted ...
CVE-2011-3191
- EPSS 0.19%
- Published 24.05.2012 23:55:02
- Last modified 11.04.2025 00:51:21
Integer signedness error in the CIFSFindNext function in fs/cifs/cifssmb.c in the Linux kernel before 3.1 allows remote CIFS servers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a large length value i...