Linux

Linux Kernel

16599 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.39%
  • Veröffentlicht 15.01.2008 20:00:00
  • Zuletzt bearbeitet 16.06.2026 22:48:43

VFS in the Linux kernel before 2.6.22.16, and 2.6.23.x before 2.6.23.14, performs tests of access mode by using the flag variable instead of the acc_mode variable, which might allow local users to bypass intended permissions and remove directories.

  • EPSS 14.34%
  • Veröffentlicht 21.12.2007 00:46:00
  • Zuletzt bearbeitet 16.06.2026 22:44:20

The ipv6_hop_jumbo function in net/ipv6/exthdrs.c in the Linux kernel before 2.6.22 does not properly validate the hop-by-hop IPv6 extended header, which allows remote attackers to cause a denial of service (NULL pointer dereference and kernel panic)...

  • EPSS 0.48%
  • Veröffentlicht 20.12.2007 00:46:00
  • Zuletzt bearbeitet 16.06.2026 22:47:08

Integer overflow in the hrtimer_start function in kernel/hrtimer.c in the Linux kernel before 2.6.23.10 allows local users to execute arbitrary code or cause a denial of service (panic) via a large relative timeout value. NOTE: some of these details...

Exploit
  • EPSS 0.44%
  • Veröffentlicht 18.12.2007 20:46:00
  • Zuletzt bearbeitet 16.06.2026 22:48:04

Linux kernel 2.6.23 allows local users to create low pages in virtual userspace memory and bypass mmap_min_addr protection via a crafted executable file that calls the do_brk function.

  • EPSS 0.39%
  • Veröffentlicht 18.12.2007 00:46:00
  • Zuletzt bearbeitet 16.06.2026 22:48:01

The shmem_getpage function (mm/shmem.c) in Linux kernel 2.6.11 through 2.6.23 does not properly clear allocated memory in some rare circumstances related to tmpfs, which might allow local users to read sensitive kernel data or cause a denial of servi...

  • EPSS 0.56%
  • Veröffentlicht 15.12.2007 01:46:00
  • Zuletzt bearbeitet 16.06.2026 22:47:30

The isdn_ioctl function in isdn_common.c in Linux kernel 2.6.23 allows local users to cause a denial of service via a crafted ioctl struct in which iocts is not null terminated, which triggers a buffer overflow.

  • EPSS 0.43%
  • Veröffentlicht 04.12.2007 00:46:00
  • Zuletzt bearbeitet 16.06.2026 22:47:36

The do_coredump function in fs/exec.c in Linux kernel 2.4.x and 2.6.x up to 2.6.24-rc3, and possibly other versions, does not change the UID of a core dump file if it exists before a root process creates a core dump in the same location, which might ...

  • EPSS 0.37%
  • Veröffentlicht 21.11.2007 00:46:00
  • Zuletzt bearbeitet 16.06.2026 22:47:21

Buffer overflow in the isdn_net_setcfg function in isdn_net.c in Linux kernel 2.6.23 allows local users to have an unknown impact via a crafted argument to the isdn_ioctl function.

  • EPSS 0.4%
  • Veröffentlicht 20.11.2007 02:46:00
  • Zuletzt bearbeitet 16.06.2026 22:46:16

The wait_task_stopped function in the Linux kernel before 2.6.23.8 checks a TASK_TRACED bit instead of an exit_state value, which allows local users to cause a denial of service (machine crash) via unspecified vectors. NOTE: some of these details ar...

  • EPSS 3.82%
  • Veröffentlicht 15.11.2007 20:46:00
  • Zuletzt bearbeitet 16.06.2026 22:46:16

The tcp_sacktag_write_queue function in net/ipv4/tcp_input.c in Linux kernel 2.6.21 through 2.6.23.7, and 2.6.24-rc through 2.6.24-rc2, allows remote attackers to cause a denial of service (crash) via crafted ACK responses that trigger a NULL pointer...