Linux

Linux Kernel

13879 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 2.26%
  • Veröffentlicht 10.07.2007 01:30:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The decode_choice function in net/netfilter/nf_conntrack_h323_asn1.c in the Linux kernel before 2.6.20.15, 2.6.21.x before 2.6.21.6, and before 2.6.22 allows remote attackers to cause a denial of service (crash) via an encoded, out-of-range index val...

  • EPSS 0.13%
  • Veröffentlicht 03.07.2007 10:30:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The lcd_write function in drivers/usb/misc/usblcd.c in the Linux kernel before 2.6.22-rc7 does not limit the amount of memory used by a caller, which allows local users to cause a denial of service (memory consumption).

  • EPSS 0.14%
  • Veröffentlicht 26.06.2007 18:30:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The sysfs_readdir function in the Linux kernel 2.6, as used in Red Hat Enterprise Linux (RHEL) 4.5 and other distributions, allows users to cause a denial of service (kernel OOPS) by dereferencing a null pointer to an inode in a dentry.

  • EPSS 0.11%
  • Veröffentlicht 11.06.2007 23:30:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The random number feature in Linux kernel 2.6 before 2.6.20.13, and 2.6.21.x before 2.6.21.4, (1) does not properly seed pools when there is no entropy, or (2) uses an incorrect cast when extracting entropy, which might cause the random number genera...

  • EPSS 2.67%
  • Veröffentlicht 11.06.2007 23:30:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The sctp_new function in (1) ip_conntrack_proto_sctp.c and (2) nf_conntrack_proto_sctp.c in Netfilter in Linux kernel 2.6 before 2.6.20.13, and 2.6.21.x before 2.6.21.4, allows remote attackers to cause a denial of service by causing certain invalid ...

  • EPSS 0.1%
  • Veröffentlicht 11.06.2007 22:30:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Integer underflow in the cpuset_tasks_read function in the Linux kernel before 2.6.20.13, and 2.6.21.x before 2.6.21.4, when the cpuset filesystem is mounted, allows local users to obtain kernel memory contents by using a large offset when reading th...

  • EPSS 0.89%
  • Veröffentlicht 29.05.2007 20:30:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Unspecified vulnerability in drivers/crypto/geode-aes.c in GEODE-AES in the Linux kernel before 2.6.21.3 allows attackers to obtain sensitive information via unspecified vectors.

Exploit
  • EPSS 0.24%
  • Veröffentlicht 29.05.2007 20:30:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The VFAT compat ioctls in the Linux kernel before 2.6.21.2, when run on a 64-bit system, allow local users to corrupt a kernel_dirent struct and cause a denial of service (system crash) via unknown vectors.

  • EPSS 1.06%
  • Veröffentlicht 18.05.2007 22:30:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The embedded Linux kernel in certain Sun-Brocade SilkWorm switches before 20070516 does not properly handle a situation in which a non-root user creates a kernel process, which allows attackers to cause a denial of service (oops and device reboot) vi...

  • EPSS 0.09%
  • Veröffentlicht 14.05.2007 17:19:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The compat_sys_mount function in fs/compat.c in Linux kernel 2.6.20 and earlier allows local users to cause a denial of service (NULL pointer dereference and oops) by mounting a smbfs file system in compatibility mode ("mount -t smbfs").