Linux

Linux Kernel

13879 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.11%
  • Veröffentlicht 12.05.2006 01:02:00
  • Zuletzt bearbeitet 03.04.2025 01:03:51

lease_init in fs/locks.c in Linux kernel before 2.6.16.16 allows attackers to cause a denial of service (fcntl_setlease lockup) via actions that cause lease_init to free a lock that might not have been allocated on the stack.

  • EPSS 0.05%
  • Veröffentlicht 05.05.2006 12:46:00
  • Zuletzt bearbeitet 03.04.2025 01:03:51

The selinux_ptrace logic in hooks.c in SELinux for Linux 2.6.6 allows local users with ptrace permissions to change the tracer SID to an SID of another process.

  • EPSS 9.3%
  • Veröffentlicht 03.05.2006 22:02:00
  • Zuletzt bearbeitet 03.04.2025 01:03:51

The SCTP-netfilter code in Linux kernel before 2.6.16.13 allows remote attackers to trigger a denial of service (infinite loop) via unknown vectors that cause an invalid SCTP chunk size to be processed by the for_each_sctp_chunk function.

  • EPSS 0.11%
  • Veröffentlicht 27.04.2006 17:06:00
  • Zuletzt bearbeitet 03.04.2025 01:03:51

Linux kernel 2.4.x and 2.6.x up to 2.6.16 allows local users to bypass IPC permissions and modify a readonly attachment of shared memory by using mprotect to give write permission to the attachment. NOTE: some original raw sources combined this issu...

Exploit
  • EPSS 0.3%
  • Veröffentlicht 26.04.2006 18:06:00
  • Zuletzt bearbeitet 03.04.2025 01:03:51

Directory traversal vulnerability in smbfs in Linux 2.6.16 and earlier allows local users to escape chroot restrictions for an SMB-mounted filesystem via "..\\" sequences, a similar vulnerability to CVE-2006-1863.

Exploit
  • EPSS 0.17%
  • Veröffentlicht 25.04.2006 22:02:00
  • Zuletzt bearbeitet 03.04.2025 01:03:51

Directory traversal vulnerability in CIFS in Linux 2.6.16 and earlier allows local users to escape chroot restrictions for an SMB-mounted filesystem via "..\\" sequences, a similar vulnerability to CVE-2006-1864.

  • EPSS 0.07%
  • Veröffentlicht 20.04.2006 10:02:00
  • Zuletzt bearbeitet 03.04.2025 01:03:51

The Linux kernel before 2.6.16.9 and the FreeBSD kernel, when running on AMD64 and other 7th and 8th generation AuthenticAMD processors, only save/restore the FOP, FIP, and FDP x87 registers in FXSAVE/FXRSTOR when an exception is pending, which allow...

  • EPSS 0.07%
  • Veröffentlicht 19.04.2006 18:18:00
  • Zuletzt bearbeitet 03.04.2025 01:03:51

madvise_remove in Linux kernel 2.6.16 up to 2.6.16.6 does not follow file and mmap restrictions, which allows local users to bypass IPC permissions and replace portions of readonly tmpfs files with zeroes, aka the MADV_REMOVE vulnerability. NOTE: th...

  • EPSS 0.09%
  • Veröffentlicht 19.04.2006 18:18:00
  • Zuletzt bearbeitet 03.04.2025 01:03:51

ip_route_input in Linux kernel 2.6 before 2.6.16.8 allows local users to cause a denial of service (panic) via a request for a route for a multicast IP address, which triggers a null dereference.

  • EPSS 0.11%
  • Veröffentlicht 18.04.2006 10:02:00
  • Zuletzt bearbeitet 03.04.2025 01:03:51

Linux kernel before 2.6.16.5 does not properly handle uncanonical return addresses on Intel EM64T CPUs, which reports an exception in the SYSRET instead of the next instruction, which causes the kernel exception handler to run on the user stack with ...