Linux

Linux Kernel

13879 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 8.97%
  • Veröffentlicht 21.10.2005 01:02:00
  • Zuletzt bearbeitet 03.04.2025 01:03:51

The NAT code (1) ip_nat_proto_tcp.c and (2) ip_nat_proto_udp.c in Linux kernel 2.6 before 2.6.13 and 2.4 before 2.4.32-rc1 incorrectly declares a variable to be static, which allows remote attackers to cause a denial of service (memory corruption) by...

  • EPSS 0.11%
  • Veröffentlicht 21.10.2005 01:02:00
  • Zuletzt bearbeitet 03.04.2025 01:03:51

The sys_get_thread_area function in process.c in Linux 2.6 before 2.6.12.4 and 2.6.13 does not clear a data structure before copying it to userspace, which might allow a user process to obtain sensitive information.

Exploit
  • EPSS 0.39%
  • Veröffentlicht 18.10.2005 22:02:00
  • Zuletzt bearbeitet 03.04.2025 01:03:51

The VT implementation (vt_ioctl.c) in Linux kernel 2.6.12, and possibly other versions including 2.6.14.4, allows local users to use the KDSKBSENT ioctl on terminals of other users and gain privileges, as demonstrated by modifying key bindings using ...

  • EPSS 1.78%
  • Veröffentlicht 12.10.2005 13:04:00
  • Zuletzt bearbeitet 03.04.2025 01:03:51

The Orinoco driver (orinoco.c) in Linux kernel 2.6.13 and earlier does not properly clear memory from a previously used packet whose length is increased, which allows remote attackers to obtain sensitive information.

  • EPSS 0.17%
  • Veröffentlicht 12.10.2005 13:04:00
  • Zuletzt bearbeitet 03.04.2025 01:03:51

The audit system in Linux kernel 2.6.6, and other versions before 2.6.13.4, when CONFIG_AUDITSYSCALL is enabled, uses an incorrect function to free names_cache memory, which prevents the memory from being tracked by AUDITSYSCALL code and leads to a m...

  • EPSS 0.11%
  • Veröffentlicht 12.10.2005 13:03:00
  • Zuletzt bearbeitet 03.04.2025 01:03:51

Memory leak in the request_key_auth_destroy function in request_key_auth in Linux kernel 2.6.10 up to 2.6.13 allows local users to cause a denial of service (memory consumption) via a large number of authorization token keys.

  • EPSS 0.06%
  • Veröffentlicht 12.10.2005 13:03:00
  • Zuletzt bearbeitet 03.04.2025 01:03:51

drm.c in Linux kernel 2.6.10 to 2.6.13 creates a debug file in sysfs with world-readable and world-writable permissions, which allows local users to enable DRM debugging and obtain sensitive information.

  • EPSS 0.06%
  • Veröffentlicht 07.10.2005 18:02:00
  • Zuletzt bearbeitet 03.04.2025 01:03:51

Linux 2.6.11 on 64-bit x86 (x86_64) platforms does not use a guard page for the 47-bit address page to protect against an AMD K8 bug, which allows local users to cause a denial of service.

Exploit
  • EPSS 0.07%
  • Veröffentlicht 30.09.2005 10:05:00
  • Zuletzt bearbeitet 03.04.2025 01:03:51

The mprotect code (mprotect.c) in Linux 2.6 on Itanium IA64 Montecito processors does not properly maintain cache coherency as required by the architecture, which allows local users to cause a denial of service and possibly corrupt data by modifying ...

  • EPSS 0.08%
  • Veröffentlicht 30.09.2005 10:05:00
  • Zuletzt bearbeitet 03.04.2025 01:03:51

Race condition in Linux 2.6, when threads are sharing memory mapping via CLONE_VM (such as linuxthreads and vfork), might allow local users to cause a denial of service (deadlock) by triggering a core dump while waiting for a thread that has just per...