- EPSS 3.04%
- Veröffentlicht 15.03.2006 17:06:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The ip_push_pending_frames function in Linux 2.4.x and 2.6.x before 2.6.16 increments the IP ID field when sending a RST after receiving unsolicited TCP SYN-ACK packets, which allows remote attackers to conduct an Idle Scan (nmap -sI) attack, which b...
CVE-2006-0457
- EPSS 1.5%
- Veröffentlicht 14.03.2006 02:02:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Race condition in the (1) add_key, (2) request_key, and (3) keyctl functions in Linux kernel 2.6.x allows local users to cause a denial of service (crash) or read sensitive kernel memory by modifying the length of a string argument between the time t...
CVE-2006-0557
- EPSS 0.08%
- Veröffentlicht 12.03.2006 21:02:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
sys_mbind in mempolicy.c in Linux kernel 2.6.16 and earlier does not sanity check the maxnod variable before making certain computations for the get_nodes function, which has unknown impact and attack vectors.
CVE-2006-0742
- EPSS 0.06%
- Veröffentlicht 09.03.2006 13:06:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The die_if_kernel function in arch/ia64/kernel/unaligned.c in Linux kernel 2.6.x before 2.6.15.6, possibly when compiled with certain versions of gcc, has the "noreturn" attribute set, which allows local users to cause a denial of service by causing ...
CVE-2006-0554
- EPSS 0.11%
- Veröffentlicht 07.03.2006 02:02:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Linux kernel 2.6 before 2.6.15.5 allows local users to obtain sensitive information via a crafted XFS ftruncate call, which may return stale data.
CVE-2006-0555
- EPSS 0.1%
- Veröffentlicht 07.03.2006 02:02:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The Linux Kernel before 2.6.15.5 allows local users to cause a denial of service (NFS client panic) via unknown attack vectors related to the use of O_DIRECT (direct I/O).
CVE-2006-0741
- EPSS 0.09%
- Veröffentlicht 07.03.2006 02:02:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Linux kernel before 2.6.15.5, when running on Intel processors, allows local users to cause a denial of service ("endless recursive fault") via unknown attack vectors related to a "bad elf entry address."
- EPSS 6.37%
- Veröffentlicht 07.02.2006 18:06:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Linux kernel before 2.6.15.3 down to 2.6.12, while constructing an ICMP response in icmp_send, does not properly handle when the ip_options_echo function in icmp.c fails, which allows remote attackers to cause a denial of service (crash) via vectors ...
CVE-2006-0482
- EPSS 0.07%
- Veröffentlicht 31.01.2006 19:03:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Linux kernel 2.6.15.1 and earlier, when running on SPARC architectures, allows local users to cause a denial of service (hang) via a "date -s" command, which causes invalid sign extended arguments to be provided to the get_compat_timespec function ca...
CVE-2006-0036
- EPSS 1.22%
- Veröffentlicht 23.01.2006 22:03:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
ip_nat_pptp in the PPTP NAT helper (netfilter/ip_nat_helper_pptp.c) in Linux kernel 2.6.14, and other versions, allows remote attackers to cause a denial of service (memory corruption or crash) via an inbound PPTP_IN_CALL_REQUEST packet that causes a...