CVE-2004-0658
- EPSS 0.07%
- Veröffentlicht 06.08.2004 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Integer overflow in the hpsb_alloc_packet function (incorrectly reported as alloc_hpsb_packet) in IEEE 1394 (Firewire) driver 2.4 and 2.6 allows local users to cause a denial of service (crash) and possibly execute arbitrary code via the functions (1...
CVE-2004-0424
- EPSS 0.24%
- Veröffentlicht 07.07.2004 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Integer overflow in the ip_setsockopt function in Linux kernel 2.4.22 through 2.4.25 and 2.6.1 through 2.6.3 allows local users to cause a denial of service (crash) or execute arbitrary code via the MCAST_MSFILTER socket option.
CVE-2004-0427
- EPSS 0.16%
- Veröffentlicht 07.07.2004 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The do_fork function in Linux 2.4.x before 2.4.26, and 2.6.x before 2.6.6, does not properly decrement the mm_count counter when an error occurs after the mm_struct for a child process has been activated, which triggers a memory leak that allows loca...
CVE-2004-0109
- EPSS 0.16%
- Veröffentlicht 01.06.2004 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Buffer overflow in the ISO9660 file system component for Linux kernel 2.4.x, 2.5.x and 2.6.x, allows local users with physical access to overflow kernel memory and execute arbitrary code via a malformed CD containing a long symbolic link entry.
CVE-2004-0133
- EPSS 0.06%
- Veröffentlicht 01.06.2004 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The XFS file system code in Linux 2.4.x has an information leak in which in-memory data is written to the device for the XFS file system, which allows local users to obtain sensitive information by reading the raw device.
- EPSS 1.24%
- Veröffentlicht 01.06.2004 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The ext3 code in Linux 2.4.x before 2.4.26 does not properly initialize journal descriptor blocks, which causes an information leak in which in-memory data is written to the device for the ext3 file system, which allows privileged users to obtain por...
CVE-2004-0178
- EPSS 0.08%
- Veröffentlicht 01.06.2004 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The OSS code for the Sound Blaster (sb16) driver in Linux 2.4.x before 2.4.26, when operating in 16 bit mode, does not properly handle certain sample sizes, which allows local users to cause a denial of service (crash) via a sample with an odd number...
CVE-2004-0181
- EPSS 0.07%
- Veröffentlicht 01.06.2004 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The JFS file system code in Linux 2.4.x has an information leak in which in-memory data is written to the device for the JFS file system, which allows local users to obtain sensitive information by reading the raw device.
CVE-2004-2135
- EPSS 0.46%
- Veröffentlicht 26.05.2004 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
cryptoloop on Linux kernel 2.6.x, when used on certain file systems with a block size 1024 or greater, has certain "IV computation" weaknesses that allow watermarked files to be detected without decryption.
CVE-2003-1040
- EPSS 0.08%
- Veröffentlicht 15.04.2004 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
kmod in the Linux kernel does not set its uid, suid, gid, or sgid to 0, which allows local users to cause a denial of service (crash) by sending certain signals to kmod.