CVE-2012-6541
- EPSS 0.08%
- Veröffentlicht 15.03.2013 20:55:07
- Zuletzt bearbeitet 11.04.2025 00:51:21
The ccid3_hc_tx_getsockopt function in net/dccp/ccids/ccid3.c in the Linux kernel before 3.6 does not initialize a certain structure, which allows local users to obtain sensitive information from kernel stack memory via a crafted application.
CVE-2012-6542
- EPSS 0.12%
- Veröffentlicht 15.03.2013 20:55:07
- Zuletzt bearbeitet 11.04.2025 00:51:21
The llc_ui_getname function in net/llc/af_llc.c in the Linux kernel before 3.6 has an incorrect return value in certain circumstances, which allows local users to obtain sensitive information from kernel stack memory via a crafted application that le...
CVE-2012-6543
- EPSS 0.08%
- Veröffentlicht 15.03.2013 20:55:07
- Zuletzt bearbeitet 11.04.2025 00:51:21
The l2tp_ip6_getname function in net/l2tp/l2tp_ip6.c in the Linux kernel before 3.6 does not initialize a certain structure member, which allows local users to obtain sensitive information from kernel stack memory via a crafted application.
CVE-2012-6544
- EPSS 0.1%
- Veröffentlicht 15.03.2013 20:55:07
- Zuletzt bearbeitet 11.04.2025 00:51:21
The Bluetooth protocol stack in the Linux kernel before 3.6 does not properly initialize certain structures, which allows local users to obtain sensitive information from kernel stack memory via a crafted application that targets the (1) L2CAP or (2)...
CVE-2012-6545
- EPSS 0.1%
- Veröffentlicht 15.03.2013 20:55:07
- Zuletzt bearbeitet 11.04.2025 00:51:21
The Bluetooth RFCOMM implementation in the Linux kernel before 3.6 does not properly initialize certain structures, which allows local users to obtain sensitive information from kernel memory via a crafted application.
CVE-2012-6546
- EPSS 0.02%
- Veröffentlicht 15.03.2013 20:55:07
- Zuletzt bearbeitet 11.04.2025 00:51:21
The ATM implementation in the Linux kernel before 3.6 does not initialize certain structures, which allows local users to obtain sensitive information from kernel stack memory via a crafted application.
CVE-2012-6547
- EPSS 0.02%
- Veröffentlicht 15.03.2013 20:55:07
- Zuletzt bearbeitet 11.04.2025 00:51:21
The __tun_chr_ioctl function in drivers/net/tun.c in the Linux kernel before 3.6 does not initialize a certain structure, which allows local users to obtain sensitive information from kernel stack memory via a crafted application.
CVE-2012-6548
- EPSS 0.04%
- Veröffentlicht 15.03.2013 20:55:07
- Zuletzt bearbeitet 11.04.2025 00:51:21
The udf_encode_fh function in fs/udf/namei.c in the Linux kernel before 3.6 does not initialize a certain structure member, which allows local users to obtain sensitive information from kernel heap memory via a crafted application.
CVE-2012-6536
- EPSS 0.07%
- Veröffentlicht 15.03.2013 20:55:05
- Zuletzt bearbeitet 11.04.2025 00:51:21
net/xfrm/xfrm_user.c in the Linux kernel before 3.6 does not verify that the actual Netlink message length is consistent with a certain header field, which allows local users to obtain sensitive information from kernel heap memory by leveraging the C...
CVE-2013-1819
- EPSS 0.05%
- Veröffentlicht 06.03.2013 22:55:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
The _xfs_buf_find function in fs/xfs/xfs_buf.c in the Linux kernel before 3.7.6 does not validate block numbers, which allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impa...