CVE-2013-2237
- EPSS 0.56%
- Veröffentlicht 04.07.2013 21:55:01
- Zuletzt bearbeitet 29.04.2026 01:13:23
The key_notify_policy_flush function in net/key/af_key.c in the Linux kernel before 3.9 does not initialize a certain structure member, which allows local users to obtain sensitive information from kernel heap memory by reading a broadcast message fr...
CVE-2013-2164
- EPSS 0.53%
- Veröffentlicht 04.07.2013 21:55:00
- Zuletzt bearbeitet 29.04.2026 01:13:23
The mmc_ioctl_cdrom_read_data function in drivers/cdrom/cdrom.c in the Linux kernel through 3.10 allows local users to obtain sensitive information from kernel memory via a read operation on a malfunctioning CD-ROM drive.
CVE-2011-1585
- EPSS 0.49%
- Veröffentlicht 08.06.2013 13:05:55
- Zuletzt bearbeitet 29.04.2026 01:13:23
The cifs_find_smb_ses function in fs/cifs/connect.c in the Linux kernel before 2.6.36 does not properly determine the associations between users and sessions, which allows local users to bypass CIFS share authentication by leveraging a mount of a sha...
CVE-2011-2482
- EPSS 3.77%
- Veröffentlicht 08.06.2013 13:05:55
- Zuletzt bearbeitet 29.04.2026 01:13:23
A certain Red Hat patch to the sctp_sock_migrate function in net/sctp/socket.c in the Linux kernel before 2.6.21, as used in Red Hat Enterprise Linux (RHEL) 5, allows remote attackers to cause a denial of service (NULL pointer dereference and OOPS) v...
CVE-2011-2942
- EPSS 1.79%
- Veröffentlicht 08.06.2013 13:05:55
- Zuletzt bearbeitet 29.04.2026 01:13:23
A certain Red Hat patch to the __br_deliver function in net/bridge/br_forward.c in the Linux kernel 2.6.18 on Red Hat Enterprise Linux (RHEL) 5 allows remote attackers to cause a denial of service (NULL pointer dereference and system crash) or possib...
CVE-2011-3593
- EPSS 1.01%
- Veröffentlicht 08.06.2013 13:05:55
- Zuletzt bearbeitet 29.04.2026 01:13:23
A certain Red Hat patch to the vlan_hwaccel_do_receive function in net/8021q/vlan_core.c in the Linux kernel 2.6.32 on Red Hat Enterprise Linux (RHEL) 6 allows remote attackers to cause a denial of service (system crash) via priority-tagged VLAN fram...
CVE-2011-3619
- EPSS 0.47%
- Veröffentlicht 08.06.2013 13:05:55
- Zuletzt bearbeitet 29.04.2026 01:13:23
The apparmor_setprocattr function in security/apparmor/lsm.c in the Linux kernel before 3.0 does not properly handle invalid parameters, which allows local users to cause a denial of service (NULL pointer dereference and OOPS) or possibly have unspec...
CVE-2011-4087
- EPSS 2.67%
- Veröffentlicht 08.06.2013 13:05:55
- Zuletzt bearbeitet 29.04.2026 01:13:23
The br_parse_ip_options function in net/bridge/br_netfilter.c in the Linux kernel before 2.6.39 does not properly initialize a certain data structure, which allows remote attackers to cause a denial of service by leveraging connectivity to a network ...
CVE-2011-4098
- EPSS 0.48%
- Veröffentlicht 08.06.2013 13:05:55
- Zuletzt bearbeitet 29.04.2026 01:13:23
The fallocate implementation in the GFS2 filesystem in the Linux kernel before 3.2 relies on the page cache, which might allow local users to cause a denial of service by preallocating blocks in certain situations involving insufficient memory.
- EPSS 0.37%
- Veröffentlicht 08.06.2013 13:05:55
- Zuletzt bearbeitet 29.04.2026 01:13:23
The kvm_vm_ioctl_assign_device function in virt/kvm/assigned-dev.c in the KVM subsystem in the Linux kernel before 3.1.10 does not verify permission to access PCI configuration space and BAR resources, which allows host OS users to assign PCI devices...