Linux

Linux Kernel

13879 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.11%
  • Veröffentlicht 08.05.2007 23:19:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Memory leak in the PPP over Ethernet (PPPoE) socket implementation in the Linux kernel before 2.6.21-git8 allows local users to cause a denial of service (memory consumption) by creating a socket using connect, and releasing it before the PPPIOCGCHAN...

  • EPSS 1.89%
  • Veröffentlicht 07.05.2007 19:19:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The nl_fib_lookup function in net/ipv4/fib_frontend.c in Linux Kernel before 2.6.20.8 allows attackers to cause a denial of service (kernel panic) via NETLINK_FIB_LOOKUP replies, which trigger infinite recursion and a stack overflow.

  • EPSS 0.14%
  • Veröffentlicht 03.05.2007 17:19:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The _udp_lib_get_port function in net/ipv4/udp.c in Linux kernel 2.6.21 and earlier does not prevent a bind to a port with a local address when there is already a bind to that port with a wildcard local address, which might allow local users to inter...

  • EPSS 0.13%
  • Veröffentlicht 02.05.2007 22:19:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The utrace support in Linux kernel 2.6.18, and other versions, allows local users to cause a denial of service (system hang) related to "MT exec + utrace_attach spin failure mode," as demonstrated by ptrace-thrash.c.

  • EPSS 0.1%
  • Veröffentlicht 24.04.2007 16:19:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The setsockopt function in the L2CAP and HCI Bluetooth support in the Linux kernel before 2.4.34.3 allows context-dependent attackers to read kernel memory and obtain sensitive information via unspecified vectors involving the copy_from_user function...

  • EPSS 0.07%
  • Veröffentlicht 22.04.2007 19:19:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

A typo in Linux kernel 2.6 before 2.6.21-rc6 and 2.4 before 2.4.35 causes RTA_MAX to be used as an array size instead of RTN_MAX, which leads to an "out of bound access" by the (1) dn_fib_props (dn_fib.c, DECNet) and (2) fib_props (fib_semantics.c, I...

  • EPSS 9.31%
  • Veröffentlicht 11.04.2007 00:19:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The atalk_sum_skb function in AppleTalk for Linux kernel 2.6.x before 2.6.21, and possibly 2.4.x, allows remote attackers to cause a denial of service (crash) via an AppleTalk frame that is shorter than the specified length, which triggers a BUG_ON c...

  • EPSS 0.25%
  • Veröffentlicht 28.03.2007 22:19:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The DCCP support in the do_dccp_getsockopt function in net/dccp/proto.c in Linux kernel 2.6.20 and later does not verify the upper bounds of the optlen value, which allows local users running on certain architectures to read kernel memory or cause a ...

  • EPSS 0.54%
  • Veröffentlicht 28.03.2007 10:19:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Integer signedness error in the DCCP support in the do_dccp_getsockopt function in net/dccp/proto.c in Linux kernel 2.6.20 and later allows local users to read kernel memory or cause a denial of service (oops) via a negative optlen value.

  • EPSS 0.16%
  • Veröffentlicht 22.03.2007 19:19:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

net/ipv6/tcp_ipv6.c in Linux kernel 2.6.x up to 2.6.21-rc3 inadvertently copies the ipv6_fl_socklist from a listening TCP socket to child sockets, which allows local users to cause a denial of service (OOPS) or double free by opening a listening IPv6...