CVE-2009-4307
- EPSS 3.36%
- Veröffentlicht 13.12.2009 01:30:00
- Zuletzt bearbeitet 23.04.2026 00:35:47
The ext4_fill_flex_info function in fs/ext4/super.c in the Linux kernel before 2.6.32-git6 allows user-assisted remote attackers to cause a denial of service (divide-by-zero error and panic) via a malformed ext4 filesystem containing a super block wi...
CVE-2009-4308
- EPSS 3.87%
- Veröffentlicht 13.12.2009 01:30:00
- Zuletzt bearbeitet 23.04.2026 00:35:47
The ext4_decode_error function in fs/ext4/super.c in the ext4 filesystem in the Linux kernel before 2.6.32 allows user-assisted remote attackers to cause a denial of service (NULL pointer dereference), and possibly have unspecified other impact, via ...
CVE-2009-1298
- EPSS 2.32%
- Veröffentlicht 08.12.2009 23:30:00
- Zuletzt bearbeitet 23.04.2026 00:35:47
The ip_frag_reasm function in net/ipv4/ip_fragment.c in the Linux kernel 2.6.32-rc8, and 2.6.29 and later versions before 2.6.32, calls IP_INC_STATS_BH with an incorrect argument, which allows remote attackers to cause a denial of service (NULL point...
CVE-2009-4020
- EPSS 3.81%
- Veröffentlicht 04.12.2009 21:30:00
- Zuletzt bearbeitet 23.04.2026 00:35:47
Stack-based buffer overflow in the hfs subsystem in the Linux kernel 2.6.32 allows remote attackers to have an unspecified impact via a crafted Hierarchical File System (HFS) filesystem, related to the hfs_readdir function in fs/hfs/dir.c.
CVE-2009-4026
- EPSS 1.22%
- Veröffentlicht 02.12.2009 16:30:00
- Zuletzt bearbeitet 23.04.2026 00:35:47
The mac80211 subsystem in the Linux kernel before 2.6.32-rc8-next-20091201 allows remote attackers to cause a denial of service (panic) via a crafted Delete Block ACK (aka DELBA) packet, related to an erroneous "code shuffling patch."
CVE-2009-4027
- EPSS 1.14%
- Veröffentlicht 02.12.2009 16:30:00
- Zuletzt bearbeitet 23.04.2026 00:35:47
Race condition in the mac80211 subsystem in the Linux kernel before 2.6.32-rc8-next-20091201 allows remote attackers to cause a denial of service (system crash) via a Delete Block ACK (aka DELBA) packet that triggers a certain state change in the abs...
CVE-2009-4031
- EPSS 2.11%
- Veröffentlicht 29.11.2009 13:07:32
- Zuletzt bearbeitet 23.04.2026 00:35:47
The do_insn_fetch function in arch/x86/kvm/emulate.c in the x86 emulator in the KVM subsystem in the Linux kernel before 2.6.32-rc8-next-20091125 tries to interpret instructions that contain too many bytes to be valid, which allows guest OS users to ...
CVE-2009-4021
- EPSS 0.05%
- Veröffentlicht 25.11.2009 16:30:00
- Zuletzt bearbeitet 23.04.2026 00:35:47
The fuse_direct_io function in fs/fuse/file.c in the fuse subsystem in the Linux kernel before 2.6.32-rc7 might allow attackers to cause a denial of service (invalid pointer dereference and OOPS) via vectors possibly related to a memory-consumption a...
CVE-2009-3080
- EPSS 0.07%
- Veröffentlicht 20.11.2009 17:30:00
- Zuletzt bearbeitet 23.04.2026 00:35:47
Array index error in the gdth_read_event function in drivers/scsi/gdth.c in the Linux kernel before 2.6.32-rc8 allows local users to cause a denial of service or possibly gain privileges via a negative event index in an IOCTL request.
CVE-2009-4005
- EPSS 0.05%
- Veröffentlicht 20.11.2009 02:30:01
- Zuletzt bearbeitet 23.04.2026 00:35:47
The collect_rx_frame function in drivers/isdn/hisax/hfc_usb.c in the Linux kernel before 2.6.32-rc7 allows attackers to have an unspecified impact via a crafted HDLC packet that arrives over ISDN and triggers a buffer under-read.