Linux

Linux Kernel

15173 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.11%
  • Veröffentlicht 08.02.2008 02:00:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Linux kernel before 2.6.22.17, when using certain drivers that register a fault handler that does not perform range checks, allows local users to access kernel memory via an out-of-range offset.

  • EPSS 0.09%
  • Veröffentlicht 31.01.2008 21:00:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

cp, when running with an option to preserve symlinks on multiple OSes, allows local, user-assisted attackers to overwrite arbitrary files via a symlink attack using crafted directories containing multiple source files that are copied to the same dest...

  • EPSS 1.64%
  • Veröffentlicht 29.01.2008 20:00:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

The chrp_show_cpuinfo function (chrp/setup.c) in Linux kernel 2.4.21 through 2.6.18-53, when running on PowerPC, might allow local users to cause a denial of service (crash) via unknown vectors that cause the of_get_property function to fail, which t...

  • EPSS 5.25%
  • Veröffentlicht 18.01.2008 00:00:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

The Linux kernel 2.6.20 through 2.6.21.1 allows remote attackers to cause a denial of service (panic) via a certain IPv6 packet, possibly involving the Jumbo Payload hop-by-hop option (jumbogram).

  • EPSS 0.04%
  • Veröffentlicht 15.01.2008 20:00:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

VFS in the Linux kernel before 2.6.22.16, and 2.6.23.x before 2.6.23.14, performs tests of access mode by using the flag variable instead of the acc_mode variable, which might allow local users to bypass intended permissions and remove directories.

  • EPSS 5.06%
  • Veröffentlicht 21.12.2007 00:46:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

The ipv6_hop_jumbo function in net/ipv6/exthdrs.c in the Linux kernel before 2.6.22 does not properly validate the hop-by-hop IPv6 extended header, which allows remote attackers to cause a denial of service (NULL pointer dereference and kernel panic)...

  • EPSS 0.09%
  • Veröffentlicht 20.12.2007 00:46:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Integer overflow in the hrtimer_start function in kernel/hrtimer.c in the Linux kernel before 2.6.23.10 allows local users to execute arbitrary code or cause a denial of service (panic) via a large relative timeout value. NOTE: some of these details...

Exploit
  • EPSS 0.06%
  • Veröffentlicht 18.12.2007 20:46:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Linux kernel 2.6.23 allows local users to create low pages in virtual userspace memory and bypass mmap_min_addr protection via a crafted executable file that calls the do_brk function.

  • EPSS 0.05%
  • Veröffentlicht 18.12.2007 00:46:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

The shmem_getpage function (mm/shmem.c) in Linux kernel 2.6.11 through 2.6.23 does not properly clear allocated memory in some rare circumstances related to tmpfs, which might allow local users to read sensitive kernel data or cause a denial of servi...

  • EPSS 0.06%
  • Veröffentlicht 15.12.2007 01:46:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

The isdn_ioctl function in isdn_common.c in Linux kernel 2.6.23 allows local users to cause a denial of service via a crafted ioctl struct in which iocts is not null terminated, which triggers a buffer overflow.