CVE-2006-0558
- EPSS 0.05%
- Veröffentlicht 14.04.2006 21:02:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
perfmon (perfmon.c) in Linux kernel on IA64 architectures allows local users to cause a denial of service (crash) by interrupting a task while another process is accessing the mm_struct, which triggers a BUG_ON action in the put_page_testzero functio...
- EPSS 0.61%
- Veröffentlicht 12.04.2006 23:02:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The __group_complete_signal function in the RCU signal handling (signal.c) in Linux kernel 2.6.16, and possibly other versions, has unknown impact and attack vectors related to improper use of BUG_ON.
CVE-2006-1522
- EPSS 0.07%
- Veröffentlicht 10.04.2006 20:02:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The sys_add_key function in the keyring code in Linux kernel 2.6.16.1 and 2.6.17-rc1, and possibly earlier versions, allows local users to cause a denial of service (OOPS) via keyctl requests that add a key to a user key instead of a keyring key, whi...
CVE-2006-1055
- EPSS 0.06%
- Veröffentlicht 05.04.2006 17:04:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The fill_write_buffer function in sysfs/file.c in Linux kernel 2.6.12 up to versions before 2.6.17-rc1 does not zero terminate a buffer when a length of PAGE_SIZE or more is requested, which might allow local users to cause a denial of service (crash...
CVE-2006-1624
- EPSS 0.85%
- Veröffentlicht 05.04.2006 10:04:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The default configuration of syslogd in the Linux sysklogd package does not enable the -x (disable name lookups) option, which allows remote attackers to cause a denial of service (traffic amplification) via messages with spoofed source IP addresses.
CVE-2006-1066
- EPSS 0.06%
- Veröffentlicht 27.03.2006 00:02:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Linux kernel 2.6.16-rc2 and earlier, when running on x86_64 systems with preemption enabled, allows local users to cause a denial of service (oops) via multiple ptrace tasks that perform single steps, which can cause corruption of the DEBUG_STACK sta...
- EPSS 3.1%
- Veröffentlicht 23.03.2006 23:06:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Buffer overflow in the USB Gadget RNDIS implementation in the Linux kernel before 2.6.16 allows remote attackers to cause a denial of service (kmalloc'd memory corruption) via a remote NDIS response to OID_GEN_SUPPORTED_LIST, which causes memory to b...
CVE-2006-0038
- EPSS 0.09%
- Veröffentlicht 22.03.2006 20:06:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Integer overflow in the do_replace function in netfilter for Linux before 2.6.16-rc3, when using "virtualization solutions" such as OpenVZ, allows local users with CAP_NET_ADMIN rights to cause a buffer overflow in the copy_from_user function.
CVE-2006-1342
- EPSS 0.17%
- Veröffentlicht 21.03.2006 18:02:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
net/ipv4/af_inet.c in Linux kernel 2.4 does not clear sockaddr_in.sin_zero before returning IPv4 socket names from the (1) getsockname, (2) getpeername, and (3) accept functions, which allows local users to obtain portions of potentially sensitive me...
CVE-2006-1343
- EPSS 0.1%
- Veröffentlicht 21.03.2006 18:02:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
net/ipv4/netfilter/ip_conntrack_core.c in Linux kernel 2.4 and 2.6, and possibly net/ipv4/netfilter/nf_conntrack_l3proto_ipv4.c in 2.6, does not clear sockaddr_in.sin_zero before returning IPv4 socket names from the getsockopt function with SO_ORIGIN...