- EPSS 0.89%
- Veröffentlicht 29.05.2007 20:30:00
- Zuletzt bearbeitet 23.04.2026 00:35:47
Unspecified vulnerability in drivers/crypto/geode-aes.c in GEODE-AES in the Linux kernel before 2.6.21.3 allows attackers to obtain sensitive information via unspecified vectors.
CVE-2007-2878
- EPSS 0.25%
- Veröffentlicht 29.05.2007 20:30:00
- Zuletzt bearbeitet 23.04.2026 00:35:47
The VFAT compat ioctls in the Linux kernel before 2.6.21.2, when run on a 64-bit system, allow local users to corrupt a kernel_dirent struct and cause a denial of service (system crash) via unknown vectors.
CVE-2007-2764
- EPSS 1.06%
- Veröffentlicht 18.05.2007 22:30:00
- Zuletzt bearbeitet 23.04.2026 00:35:47
The embedded Linux kernel in certain Sun-Brocade SilkWorm switches before 20070516 does not properly handle a situation in which a non-root user creates a kernel process, which allows attackers to cause a denial of service (oops and device reboot) vi...
- EPSS 0.09%
- Veröffentlicht 14.05.2007 17:19:00
- Zuletzt bearbeitet 23.04.2026 00:35:47
The compat_sys_mount function in fs/compat.c in Linux kernel 2.6.20 and earlier allows local users to cause a denial of service (NULL pointer dereference and oops) by mounting a smbfs file system in compatibility mode ("mount -t smbfs").
CVE-2007-2525
- EPSS 0.11%
- Veröffentlicht 08.05.2007 23:19:00
- Zuletzt bearbeitet 23.04.2026 00:35:47
Memory leak in the PPP over Ethernet (PPPoE) socket implementation in the Linux kernel before 2.6.21-git8 allows local users to cause a denial of service (memory consumption) by creating a socket using connect, and releasing it before the PPPIOCGCHAN...
CVE-2007-1861
- EPSS 1.95%
- Veröffentlicht 07.05.2007 19:19:00
- Zuletzt bearbeitet 23.04.2026 00:35:47
The nl_fib_lookup function in net/ipv4/fib_frontend.c in Linux Kernel before 2.6.20.8 allows attackers to cause a denial of service (kernel panic) via NETLINK_FIB_LOOKUP replies, which trigger infinite recursion and a stack overflow.
CVE-2007-2480
- EPSS 0.06%
- Veröffentlicht 03.05.2007 17:19:00
- Zuletzt bearbeitet 23.04.2026 00:35:47
The _udp_lib_get_port function in net/ipv4/udp.c in Linux kernel 2.6.21 and earlier does not prevent a bind to a port with a local address when there is already a bind to that port with a wildcard local address, which might allow local users to inter...
CVE-2007-0771
- EPSS 0.06%
- Veröffentlicht 02.05.2007 22:19:00
- Zuletzt bearbeitet 23.04.2026 00:35:47
The utrace support in Linux kernel 2.6.18, and other versions, allows local users to cause a denial of service (system hang) related to "MT exec + utrace_attach spin failure mode," as demonstrated by ptrace-thrash.c.
CVE-2007-1353
- EPSS 0.1%
- Veröffentlicht 24.04.2007 16:19:00
- Zuletzt bearbeitet 23.04.2026 00:35:47
The setsockopt function in the L2CAP and HCI Bluetooth support in the Linux kernel before 2.4.34.3 allows context-dependent attackers to read kernel memory and obtain sensitive information via unspecified vectors involving the copy_from_user function...
CVE-2007-2172
- EPSS 0.07%
- Veröffentlicht 22.04.2007 19:19:00
- Zuletzt bearbeitet 23.04.2026 00:35:47
A typo in Linux kernel 2.6 before 2.6.21-rc6 and 2.4 before 2.4.35 causes RTA_MAX to be used as an array size instead of RTN_MAX, which leads to an "out of bound access" by the (1) dn_fib_props (dn_fib.c, DECNet) and (2) fib_props (fib_semantics.c, I...