CVE-2012-2313
- EPSS 0.2%
- Veröffentlicht 13.06.2012 10:24:55
- Zuletzt bearbeitet 29.04.2026 01:13:23
The rio_ioctl function in drivers/net/ethernet/dlink/dl2k.c in the Linux kernel before 3.3.7 does not restrict access to the SIOCSMIIREG command, which allows local users to write data to an Ethernet adapter via an ioctl call.
CVE-2012-2375
- EPSS 0.46%
- Veröffentlicht 13.06.2012 10:24:55
- Zuletzt bearbeitet 29.04.2026 01:13:23
The __nfs4_get_acl_uncached function in fs/nfs/nfs4proc.c in the NFSv4 implementation in the Linux kernel before 3.3.2 uses an incorrect length variable during a copy operation, which allows remote NFS servers to cause a denial of service (OOPS) by s...
CVE-2011-1767
- EPSS 0.6%
- Veröffentlicht 13.06.2012 10:24:54
- Zuletzt bearbeitet 29.04.2026 01:13:23
net/ipv4/ip_gre.c in the Linux kernel before 2.6.34, when ip_gre is configured as a module, allows remote attackers to cause a denial of service (OOPS) by sending a packet during module loading.
CVE-2011-1768
- EPSS 0.46%
- Veröffentlicht 13.06.2012 10:24:54
- Zuletzt bearbeitet 29.04.2026 01:13:23
The tunnels implementation in the Linux kernel before 2.6.34, when tunnel functionality is configured as a module, allows remote attackers to cause a denial of service (OOPS) by sending a packet during module loading.
- EPSS 0.83%
- Veröffentlicht 13.06.2012 10:24:54
- Zuletzt bearbeitet 29.04.2026 01:13:23
The ip_expire function in net/ipv4/ip_fragment.c in the Linux kernel before 2.6.39 does not properly construct ICMP_TIME_EXCEEDED packets after a timeout, which allows remote attackers to cause a denial of service (invalid pointer dereference) via cr...
CVE-2011-2182
- EPSS 0.05%
- Veröffentlicht 13.06.2012 10:24:54
- Zuletzt bearbeitet 29.04.2026 01:13:23
The ldm_frag_add function in fs/partitions/ldm.c in the Linux kernel before 2.6.39.1 does not properly handle memory allocation for non-initial fragments, which might allow local users to conduct buffer overflow attacks, and gain privileges or obtain...
- EPSS 0.12%
- Veröffentlicht 13.06.2012 10:24:54
- Zuletzt bearbeitet 29.04.2026 01:13:23
Race condition in the scan_get_next_rmap_item function in mm/ksm.c in the Linux kernel before 2.6.39.3, when Kernel SamePage Merging (KSM) is enabled, allows local users to cause a denial of service (NULL pointer dereference) or possibly have unspeci...
CVE-2011-2208
- EPSS 0.13%
- Veröffentlicht 13.06.2012 10:24:54
- Zuletzt bearbeitet 29.04.2026 01:13:23
Integer signedness error in the osf_getdomainname function in arch/alpha/kernel/osf_sys.c in the Linux kernel before 2.6.39.4 on the Alpha platform allows local users to obtain sensitive information from kernel memory via a crafted call.
CVE-2011-2209
- EPSS 0.06%
- Veröffentlicht 13.06.2012 10:24:54
- Zuletzt bearbeitet 29.04.2026 01:13:23
Integer signedness error in the osf_sysinfo function in arch/alpha/kernel/osf_sys.c in the Linux kernel before 2.6.39.4 on the Alpha platform allows local users to obtain sensitive information from kernel memory via a crafted call.
CVE-2011-2210
- EPSS 0.17%
- Veröffentlicht 13.06.2012 10:24:54
- Zuletzt bearbeitet 29.04.2026 01:13:23
The osf_getsysinfo function in arch/alpha/kernel/osf_sys.c in the Linux kernel before 2.6.39.4 on the Alpha platform does not properly restrict the data size for GSI_GET_HWRPB operations, which allows local users to obtain sensitive information from ...