CVE-2008-3247
- EPSS 0.09%
- Veröffentlicht 24.07.2008 15:41:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The LDT implementation in the Linux kernel 2.6.25.x before 2.6.25.11 on x86_64 platforms uses an incorrect size for ldt_desc, which allows local users to cause a denial of service (system crash) or possibly gain privileges via unspecified vectors.
CVE-2008-2931
- EPSS 0.03%
- Veröffentlicht 09.07.2008 18:41:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The do_change_type function in fs/namespace.c in the Linux kernel before 2.6.22 does not verify that the caller has the CAP_SYS_ADMIN capability, which allows local users to gain privileges or cause a denial of service by modifying the properties of ...
CVE-2008-2812
- EPSS 0.1%
- Veröffentlicht 09.07.2008 00:41:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The Linux kernel before 2.6.25.10 does not properly perform tty operations, which allows local users to cause a denial of service (system crash) or possibly gain privileges via vectors involving NULL pointer dereference of function pointers in (1) ha...
CVE-2008-3077
- EPSS 0.07%
- Veröffentlicht 09.07.2008 00:41:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
arch/x86/kernel/ptrace.c in the Linux kernel before 2.6.25.10 on the x86_64 platform leaks task_struct references into the sys32_ptrace function, which allows local users to cause a denial of service (system crash) or have unspecified other impact vi...
CVE-2008-2372
- EPSS 0.05%
- Veröffentlicht 02.07.2008 16:41:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The Linux kernel 2.6.24 and 2.6.25 before 2.6.25.9 allows local users to cause a denial of service (memory consumption) via a large number of calls to the get_user_pages function, which lacks a ZERO_PAGE optimization and results in allocation of "use...
CVE-2008-2826
- EPSS 0.15%
- Veröffentlicht 02.07.2008 16:41:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Integer overflow in the sctp_getsockopt_local_addrs_old function in net/sctp/socket.c in the Stream Control Transmission Protocol (sctp) functionality in the Linux kernel before 2.6.25.9 allows local users to cause a denial of service (resource consu...
CVE-2008-0598
- EPSS 0.08%
- Veröffentlicht 30.06.2008 22:41:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Unspecified vulnerability in the 32-bit and 64-bit emulation in the Linux kernel 2.6.9, 2.6.18, and probably other versions allows local users to read uninitialized memory via unknown vectors involving a crafted binary.
CVE-2008-2729
- EPSS 0.06%
- Veröffentlicht 30.06.2008 22:41:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
arch/x86_64/lib/copy_user.S in the Linux kernel before 2.6.19 on some AMD64 systems does not erase destination memory locations after an exception during kernel memory copy, which allows local users to obtain sensitive information.
CVE-2008-2365
- EPSS 0.71%
- Veröffentlicht 30.06.2008 21:41:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Race condition in the ptrace and utrace support in the Linux kernel 2.6.9 through 2.6.25, as used in Red Hat Enterprise Linux (RHEL) 4, allows local users to cause a denial of service (oops) via a long series of PTRACE_ATTACH ptrace calls to another ...
CVE-2008-2944
- EPSS 0.06%
- Veröffentlicht 30.06.2008 21:41:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Double free vulnerability in the utrace support in the Linux kernel, probably 2.6.18, in Red Hat Enterprise Linux (RHEL) 5 and Fedora Core 6 (FC6) allows local users to cause a denial of service (oops), as demonstrated by a crash when running the GNU...