CVE-2010-4529
- EPSS 0.4%
- Veröffentlicht 13.01.2011 19:00:04
- Zuletzt bearbeitet 16.06.2026 23:24:59
Integer underflow in the irda_getsockopt function in net/irda/af_irda.c in the Linux kernel before 2.6.37 on platforms other than x86 allows local users to obtain potentially sensitive information from kernel heap memory via an IRLMP_ENUMDEVICES gets...
CVE-2010-4525
- EPSS 0.34%
- Veröffentlicht 11.01.2011 03:00:04
- Zuletzt bearbeitet 16.06.2026 23:24:58
Linux kernel 2.6.33 and 2.6.34.y does not initialize the kvm_vcpu_events->interrupt.pad structure member, which allows local users to obtain potentially sensitive information from kernel stack memory via unspecified vectors.
CVE-2010-4526
- EPSS 2.52%
- Veröffentlicht 11.01.2011 03:00:04
- Zuletzt bearbeitet 16.06.2026 23:24:58
Race condition in the sctp_icmp_proto_unreachable function in net/sctp/input.c in Linux kernel 2.6.11-rc2 through 2.6.33 allows remote attackers to cause a denial of service (panic) via an ICMP unreachable message to a socket that is already locked b...
- EPSS 0.46%
- Veröffentlicht 11.01.2011 03:00:03
- Zuletzt bearbeitet 16.06.2026 23:24:25
The hci_uart_tty_open function in the HCI UART driver (drivers/bluetooth/hci_ldisc.c) in the Linux kernel 2.6.36, and possibly other versions, does not verify whether the tty has a write operation, which allows local users to cause a denial of servic...
CVE-2010-3865
- EPSS 0.56%
- Veröffentlicht 11.01.2011 03:00:02
- Zuletzt bearbeitet 16.06.2026 23:23:42
Integer overflow in the rds_rdma_pages function in net/rds/rdma.c in the Linux kernel allows local users to cause a denial of service (crash) and possibly execute arbitrary code via a crafted iovec struct in a Reliable Datagram Sockets (RDS) request,...
CVE-2010-4175
- EPSS 0.39%
- Veröffentlicht 11.01.2011 03:00:02
- Zuletzt bearbeitet 16.06.2026 23:24:17
Integer overflow in the rds_cmsg_rdma_args function (net/rds/rdma.c) in Linux kernel 2.6.35 allows local users to cause a denial of service (crash) and possibly trigger memory corruption via a crafted Reliable Datagram Sockets (RDS) request, a differ...
CVE-2010-4160
- EPSS 0.53%
- Veröffentlicht 07.01.2011 12:00:48
- Zuletzt bearbeitet 16.06.2026 23:24:14
Multiple integer overflows in the (1) pppol2tp_sendmsg function in net/l2tp/l2tp_ppp.c, and the (2) l2tp_ip_sendmsg function in net/l2tp/l2tp_ip.c, in the PPPoL2TP and IPoL2TP implementations in the Linux kernel before 2.6.36.2 allow local users to c...
CVE-2010-4668
- EPSS 0.41%
- Veröffentlicht 03.01.2011 20:00:43
- Zuletzt bearbeitet 16.06.2026 23:25:16
The blk_rq_map_user_iov function in block/blk-map.c in the Linux kernel before 2.6.37-rc7 allows local users to cause a denial of service (panic) via a zero-length I/O request in a device ioctl to a SCSI device, related to an unaligned map. NOTE: th...
CVE-2010-3875
- EPSS 0.39%
- Veröffentlicht 03.01.2011 20:00:42
- Zuletzt bearbeitet 16.06.2026 23:23:44
The ax25_getname function in net/ax25/af_ax25.c in the Linux kernel before 2.6.37-rc2 does not initialize a certain structure, which allows local users to obtain potentially sensitive information from kernel stack memory by reading a copy of this str...
CVE-2010-3876
- EPSS 0.38%
- Veröffentlicht 03.01.2011 20:00:42
- Zuletzt bearbeitet 16.06.2026 23:23:44
net/packet/af_packet.c in the Linux kernel before 2.6.37-rc2 does not properly initialize certain structure members, which allows local users to obtain potentially sensitive information from kernel stack memory by leveraging the CAP_NET_RAW capabilit...