CVE-2008-7256
- EPSS 0.11%
- Published 03.06.2010 14:30:01
- Last modified 11.04.2025 00:51:21
mm/shmem.c in the Linux kernel before 2.6.28-rc8, when strict overcommit is enabled and CONFIG_SECURITY is disabled, does not properly handle the export of shmemfs objects by knfsd, which allows attackers to cause a denial of service (NULL pointer de...
CVE-2010-1643
- EPSS 0.09%
- Published 03.06.2010 14:30:01
- Last modified 11.04.2025 00:51:21
mm/shmem.c in the Linux kernel before 2.6.28-rc3, when strict overcommit is enabled, does not properly handle the export of shmemfs objects by knfsd, which allows attackers to cause a denial of service (NULL pointer dereference and knfsd crash) or po...
CVE-2010-1641
- EPSS 0.07%
- Published 01.06.2010 20:30:02
- Last modified 11.04.2025 00:51:21
The do_gfs2_set_flags function in fs/gfs2/file.c in the Linux kernel before 2.6.34-git10 does not verify the ownership of a file, which allows local users to bypass intended access restrictions via a SETFLAGS ioctl request.
CVE-2010-1436
- EPSS 0.07%
- Published 21.05.2010 17:30:01
- Last modified 11.04.2025 00:51:21
gfs2 in the Linux kernel 2.6.18, and possibly other versions, does not properly handle when the gfs2_quota struct occupies two separate pages, which allows local users to cause a denial of service (kernel panic) via certain manipulations that cause a...
CVE-2010-1446
- EPSS 0.06%
- Published 21.05.2010 17:30:01
- Last modified 11.04.2025 00:51:21
arch/powerpc/mm/fsl_booke_mmu.c in KGDB in the Linux kernel 2.6.30 and other versions before 2.6.33, when running on PowerPC, does not properly perform a security check for access to a kernel page, which allows local users to overwrite arbitrary kern...
CVE-2010-1173
- EPSS 11.43%
- Published 07.05.2010 18:30:01
- Last modified 11.04.2025 00:51:21
The sctp_process_unk_param function in net/sctp/sm_make_chunk.c in the Linux kernel 2.6.33.3 and earlier, when SCTP is enabled, allows remote attackers to cause a denial of service (system crash) via an SCTPChunkInit packet containing multiple invali...
- EPSS 0.24%
- Published 07.05.2010 18:30:01
- Last modified 11.04.2025 00:51:21
Race condition in the find_keyring_by_name function in security/keys/keyring.c in the Linux kernel 2.6.34-rc5 and earlier allows local users to cause a denial of service (memory corruption and system crash) or possibly have unspecified other impact v...
CVE-2010-1451
- EPSS 0.1%
- Published 07.05.2010 18:30:01
- Last modified 11.04.2025 00:51:21
The TSB I-TLB load implementation in arch/sparc/kernel/tsb.S in the Linux kernel before 2.6.33 on the SPARC platform does not properly obtain the value of a certain _PAGE_EXEC_4U bit and consequently does not properly implement a non-executable stack...
CVE-2010-1162
- EPSS 0.06%
- Published 20.04.2010 15:30:00
- Last modified 11.04.2025 00:51:21
The release_one_tty function in drivers/char/tty_io.c in the Linux kernel before 2.6.34-rc4 omits certain required calls to the put_pid function, which has unspecified impact and local attack vectors.
CVE-2010-1488
- EPSS 0.15%
- Published 20.04.2010 15:30:00
- Last modified 11.04.2025 00:51:21
The proc_oom_score function in fs/proc/base.c in the Linux kernel before 2.6.34-rc4 uses inappropriate data structures during selection of a candidate for the OOM killer, which might allow local users to cause a denial of service via unspecified patt...