CVE-2009-1338
- EPSS 0.08%
- Veröffentlicht 22.04.2009 15:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The kill_something_info function in kernel/signal.c in the Linux kernel before 2.6.28 does not consider PID namespaces when processing signals directed to PID -1, which allows local users to bypass the intended namespace isolation, and send arbitrary...
CVE-2009-1360
- EPSS 1.77%
- Veröffentlicht 22.04.2009 15:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The __inet6_check_established function in net/ipv6/inet6_hashtables.c in the Linux kernel before 2.6.29, when Network Namespace Support (aka NET_NS) is enabled, allows remote attackers to cause a denial of service (NULL pointer dereference and system...
- EPSS 2.34%
- Veröffentlicht 08.04.2009 01:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Integer overflow in rose_sendmsg (sys/net/af_rose.c) in the Linux kernel 2.6.24.4, and other versions before 2.6.30-rc1, might allow remote attackers to obtain sensitive information via a large length value, which causes "garbage" memory to be sent.
CVE-2009-1242
- EPSS 0.07%
- Veröffentlicht 06.04.2009 14:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The vmx_set_msr function in arch/x86/kvm/vmx.c in the VMX implementation in the KVM subsystem in the Linux kernel before 2.6.29.1 on the i386 platform allows guest OS users to cause a denial of service (OOPS) by setting the EFER_LME (aka "Long mode e...
CVE-2009-1243
- EPSS 0.07%
- Veröffentlicht 06.04.2009 14:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
net/ipv4/udp.c in the Linux kernel before 2.6.29.1 performs an unlocking step in certain incorrect circumstances, which allows local users to cause a denial of service (panic) by reading zero bytes from the /proc/net/udp file and unspecified other fi...
CVE-2009-0787
- EPSS 0.06%
- Veröffentlicht 25.03.2009 01:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The ecryptfs_write_metadata_to_contents function in the eCryptfs functionality in the Linux kernel 2.6.28 before 2.6.28.9 uses an incorrect size when writing kernel memory to an eCryptfs file header, which triggers an out-of-bounds read and allows lo...
CVE-2009-1072
- EPSS 0.59%
- Veröffentlicht 25.03.2009 01:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
nfsd in the Linux kernel before 2.6.28.9 does not drop the CAP_MKNOD capability before handling a user request in a thread, which allows local users to create device nodes, as demonstrated on a filesystem that has been exported with the root_squash o...
CVE-2009-1046
- EPSS 0.28%
- Veröffentlicht 23.03.2009 16:30:01
- Zuletzt bearbeitet 09.04.2025 00:30:58
The console selection feature in the Linux kernel 2.6.28 before 2.6.28.4, 2.6.25, and possibly earlier versions, when the UTF-8 console is used, allows physically proximate attackers to cause a denial of service (memory corruption) by selecting a sma...
CVE-2009-0935
- EPSS 0.07%
- Veröffentlicht 18.03.2009 02:00:08
- Zuletzt bearbeitet 09.04.2025 00:30:58
The inotify_read function in the Linux kernel 2.6.27 to 2.6.27.13, 2.6.28 to 2.6.28.2, and 2.6.29-rc3 allows local users to cause a denial of service (OOPS) via a read with an invalid address to an inotify instance, which causes the device's event li...
CVE-2009-0778
- EPSS 1.48%
- Veröffentlicht 12.03.2009 15:20:49
- Zuletzt bearbeitet 09.04.2025 00:30:58
The icmp_send function in net/ipv4/icmp.c in the Linux kernel before 2.6.25, when configured as a router with a REJECT route, does not properly manage the Protocol Independent Destination Cache (aka DST) in some situations involving transmission of a...