Linux

Linux Kernel

13879 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.08%
  • Veröffentlicht 22.04.2009 15:30:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The kill_something_info function in kernel/signal.c in the Linux kernel before 2.6.28 does not consider PID namespaces when processing signals directed to PID -1, which allows local users to bypass the intended namespace isolation, and send arbitrary...

Exploit
  • EPSS 1.77%
  • Veröffentlicht 22.04.2009 15:30:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The __inet6_check_established function in net/ipv6/inet6_hashtables.c in the Linux kernel before 2.6.29, when Network Namespace Support (aka NET_NS) is enabled, allows remote attackers to cause a denial of service (NULL pointer dereference and system...

Exploit
  • EPSS 2.34%
  • Veröffentlicht 08.04.2009 01:30:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Integer overflow in rose_sendmsg (sys/net/af_rose.c) in the Linux kernel 2.6.24.4, and other versions before 2.6.30-rc1, might allow remote attackers to obtain sensitive information via a large length value, which causes "garbage" memory to be sent.

  • EPSS 0.07%
  • Veröffentlicht 06.04.2009 14:30:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The vmx_set_msr function in arch/x86/kvm/vmx.c in the VMX implementation in the KVM subsystem in the Linux kernel before 2.6.29.1 on the i386 platform allows guest OS users to cause a denial of service (OOPS) by setting the EFER_LME (aka "Long mode e...

  • EPSS 0.07%
  • Veröffentlicht 06.04.2009 14:30:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

net/ipv4/udp.c in the Linux kernel before 2.6.29.1 performs an unlocking step in certain incorrect circumstances, which allows local users to cause a denial of service (panic) by reading zero bytes from the /proc/net/udp file and unspecified other fi...

  • EPSS 0.06%
  • Veröffentlicht 25.03.2009 01:30:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The ecryptfs_write_metadata_to_contents function in the eCryptfs functionality in the Linux kernel 2.6.28 before 2.6.28.9 uses an incorrect size when writing kernel memory to an eCryptfs file header, which triggers an out-of-bounds read and allows lo...

  • EPSS 0.59%
  • Veröffentlicht 25.03.2009 01:30:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

nfsd in the Linux kernel before 2.6.28.9 does not drop the CAP_MKNOD capability before handling a user request in a thread, which allows local users to create device nodes, as demonstrated on a filesystem that has been exported with the root_squash o...

  • EPSS 0.28%
  • Veröffentlicht 23.03.2009 16:30:01
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The console selection feature in the Linux kernel 2.6.28 before 2.6.28.4, 2.6.25, and possibly earlier versions, when the UTF-8 console is used, allows physically proximate attackers to cause a denial of service (memory corruption) by selecting a sma...

  • EPSS 0.07%
  • Veröffentlicht 18.03.2009 02:00:08
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The inotify_read function in the Linux kernel 2.6.27 to 2.6.27.13, 2.6.28 to 2.6.28.2, and 2.6.29-rc3 allows local users to cause a denial of service (OOPS) via a read with an invalid address to an inotify instance, which causes the device's event li...

Exploit
  • EPSS 1.48%
  • Veröffentlicht 12.03.2009 15:20:49
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The icmp_send function in net/ipv4/icmp.c in the Linux kernel before 2.6.25, when configured as a router with a REJECT route, does not properly manage the Protocol Independent Destination Cache (aka DST) in some situations involving transmission of a...