CVE-2012-2390
- EPSS 0.52%
- Veröffentlicht 13.06.2012 10:24:56
- Zuletzt bearbeitet 16.06.2026 23:41:28
Memory leak in mm/hugetlb.c in the Linux kernel before 3.4.2 allows local users to cause a denial of service (memory consumption or system crash) via invalid MAP_HUGETLB mmap operations.
CVE-2011-2494
- EPSS 0.35%
- Veröffentlicht 13.06.2012 10:24:55
- Zuletzt bearbeitet 16.06.2026 23:31:26
kernel/taskstats.c in the Linux kernel before 3.1 allows local users to obtain sensitive I/O statistics by sending taskstats commands to a netlink socket, as demonstrated by discovering the length of another user's password.
CVE-2011-2495
- EPSS 0.48%
- Veröffentlicht 13.06.2012 10:24:55
- Zuletzt bearbeitet 16.06.2026 23:31:27
fs/proc/base.c in the Linux kernel before 2.6.39.4 does not properly restrict access to /proc/#####/io files, which allows local users to obtain sensitive I/O statistics by polling a file, as demonstrated by discovering the length of another user's p...
CVE-2011-2496
- EPSS 0.49%
- Veröffentlicht 13.06.2012 10:24:55
- Zuletzt bearbeitet 16.06.2026 23:31:27
Integer overflow in the vma_to_resize function in mm/mremap.c in the Linux kernel before 2.6.39 allows local users to cause a denial of service (BUG_ON and system crash) via a crafted mremap system call that expands a memory mapping.
CVE-2012-2313
- EPSS 0.56%
- Veröffentlicht 13.06.2012 10:24:55
- Zuletzt bearbeitet 16.06.2026 23:41:20
The rio_ioctl function in drivers/net/ethernet/dlink/dl2k.c in the Linux kernel before 3.3.7 does not restrict access to the SIOCSMIIREG command, which allows local users to write data to an Ethernet adapter via an ioctl call.
CVE-2012-2375
- EPSS 0.98%
- Veröffentlicht 13.06.2012 10:24:55
- Zuletzt bearbeitet 16.06.2026 23:41:26
The __nfs4_get_acl_uncached function in fs/nfs/nfs4proc.c in the NFSv4 implementation in the Linux kernel before 3.3.2 uses an incorrect length variable during a copy operation, which allows remote NFS servers to cause a denial of service (OOPS) by s...
CVE-2011-1767
- EPSS 2.83%
- Veröffentlicht 13.06.2012 10:24:54
- Zuletzt bearbeitet 16.06.2026 23:29:59
net/ipv4/ip_gre.c in the Linux kernel before 2.6.34, when ip_gre is configured as a module, allows remote attackers to cause a denial of service (OOPS) by sending a packet during module loading.
CVE-2011-1768
- EPSS 2.15%
- Veröffentlicht 13.06.2012 10:24:54
- Zuletzt bearbeitet 16.06.2026 23:29:59
The tunnels implementation in the Linux kernel before 2.6.34, when tunnel functionality is configured as a module, allows remote attackers to cause a denial of service (OOPS) by sending a packet during module loading.
- EPSS 2.59%
- Veröffentlicht 13.06.2012 10:24:54
- Zuletzt bearbeitet 16.06.2026 23:30:24
The ip_expire function in net/ipv4/ip_fragment.c in the Linux kernel before 2.6.39 does not properly construct ICMP_TIME_EXCEEDED packets after a timeout, which allows remote attackers to cause a denial of service (invalid pointer dereference) via cr...
CVE-2011-2182
- EPSS 0.4%
- Veröffentlicht 13.06.2012 10:24:54
- Zuletzt bearbeitet 16.06.2026 23:30:52
The ldm_frag_add function in fs/partitions/ldm.c in the Linux kernel before 2.6.39.1 does not properly handle memory allocation for non-initial fragments, which might allow local users to conduct buffer overflow attacks, and gain privileges or obtain...