CVE-2006-3468
- EPSS 26.77%
- Veröffentlicht 21.07.2006 14:03:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Linux kernel 2.6.x, when using both NFS and EXT3, allows remote attackers to cause a denial of service (file system panic) via a crafted UDP packet with a V2 lookup procedure that specifies a bad file handle (inode number), which triggers an error an...
CVE-2006-3626
- EPSS 0.08%
- Veröffentlicht 18.07.2006 15:46:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Race condition in Linux kernel 2.6.17.4 and earlier allows local users to gain root privileges by using prctl with PR_SET_DUMPABLE in a way that causes /proc/self/environ to become setuid root.
CVE-2006-2936
- EPSS 10.18%
- Veröffentlicht 10.07.2006 19:05:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The ftdi_sio driver (usb/serial/ftdi_sio.c) in Linux kernel 2.6.x up to 2.6.17, and possibly later versions, allows local users to cause a denial of service (memory consumption) by writing more data to the serial port than the hardware can handle, wh...
CVE-2006-2451
- EPSS 6.76%
- Veröffentlicht 07.07.2006 18:05:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The suid_dumpable support in Linux kernel 2.6.13 up to versions before 2.6.17.4, and 2.6.16 before 2.6.16.24, allows a local user to cause a denial of service (disk consumption) and possibly gain privileges via the PR_SET_DUMPABLE argument of the prc...
CVE-2006-2935
- EPSS 0.22%
- Veröffentlicht 05.07.2006 18:05:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The dvd_read_bca function in the DVD handling code in drivers/cdrom/cdrom.c in Linux kernel 2.2.16, and later versions, assigns the wrong value to a length variable, which allows local users to execute arbitrary code via a crafted USB Storage device ...
- EPSS 23.28%
- Veröffentlicht 30.06.2006 21:05:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
SCTP conntrack (ip_conntrack_proto_sctp.c) in netfilter for Linux kernel 2.6.17 before 2.6.17.3 and 2.6.16 before 2.6.16.23 allows remote attackers to cause a denial of service (crash) via a packet without any chunks, which causes a variable to conta...
CVE-2006-0456
- EPSS 0.09%
- Veröffentlicht 27.06.2006 23:05:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The strnlen_user function in Linux kernel before 2.6.16 on IBM S/390 can return an incorrect value, which allows local users to cause a denial of service via unknown vectors.
- EPSS 0.09%
- Veröffentlicht 23.06.2006 10:02:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Race condition in run_posix_cpu_timers in Linux kernel before 2.6.16.21 allows local users to cause a denial of service (BUG_ON crash) by causing one CPU to attach a timer to a process that is exiting.
CVE-2006-2448
- EPSS 0.09%
- Veröffentlicht 23.06.2006 10:02:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Linux kernel before 2.6.16.21 and 2.6.17, when running on PowerPC, does not perform certain required access_ok checks, which allows local users to read arbitrary kernel memory on 64-bit systems (signal_64.c) and cause a denial of service (crash) and ...
CVE-2006-3085
- EPSS 2.47%
- Veröffentlicht 23.06.2006 10:02:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
xt_sctp in netfilter for Linux kernel before 2.6.17.1 allows attackers to cause a denial of service (infinite loop) via an SCTP chunk with a 0 length.