CVE-2010-3705
- EPSS 2.02%
- Veröffentlicht 26.11.2010 20:00:02
- Zuletzt bearbeitet 16.06.2026 23:23:22
The sctp_auth_asoc_get_hmac function in net/sctp/auth.c in the Linux kernel before 2.6.36 does not properly validate the hmac_ids array of an SCTP peer, which allows remote attackers to cause a denial of service (memory corruption and panic) via a cr...
CVE-2010-3698
- EPSS 0.42%
- Veröffentlicht 26.11.2010 19:00:07
- Zuletzt bearbeitet 16.06.2026 23:23:21
The KVM implementation in the Linux kernel before 2.6.36 does not properly reload the FS and GS segment registers, which allows host OS users to cause a denial of service (host OS crash) via a KVM_RUN ioctl call in conjunction with a modified Local D...
CVE-2010-2962
- EPSS 0.48%
- Veröffentlicht 26.11.2010 19:00:06
- Zuletzt bearbeitet 16.06.2026 23:21:50
drivers/gpu/drm/i915/i915_gem.c in the Graphics Execution Manager (GEM) in the Intel i915 driver in the Direct Rendering Manager (DRM) subsystem in the Linux kernel before 2.6.36 does not properly validate pointers to blocks of memory, which allows l...
CVE-2010-2963
- EPSS 0.82%
- Veröffentlicht 26.11.2010 19:00:06
- Zuletzt bearbeitet 16.06.2026 23:21:50
drivers/media/video/v4l2-compat-ioctl32.c in the Video4Linux (V4L) implementation in the Linux kernel before 2.6.36 on 64-bit platforms does not validate the destination of a memory copy operation, which allows local users to write to arbitrary kerne...
CVE-2010-4165
- EPSS 1.48%
- Veröffentlicht 22.11.2010 13:00:19
- Zuletzt bearbeitet 16.06.2026 23:24:14
The do_tcp_setsockopt function in net/ipv4/tcp.c in the Linux kernel before 2.6.37-rc2 does not properly restrict TCP_MAXSEG (aka MSS) values, which allows local users to cause a denial of service (OOPS) via a setsockopt call that specifies a small v...
CVE-2010-4169
- EPSS 0.43%
- Veröffentlicht 22.11.2010 13:00:19
- Zuletzt bearbeitet 16.06.2026 23:24:16
Use-after-free vulnerability in mm/mprotect.c in the Linux kernel before 2.6.37-rc2 allows local users to cause a denial of service via vectors involving an mprotect system call.
CVE-2010-3432
- EPSS 5.54%
- Veröffentlicht 22.11.2010 13:00:02
- Zuletzt bearbeitet 16.06.2026 23:22:45
The sctp_packet_config function in net/sctp/output.c in the Linux kernel before 2.6.35.6 performs extraneous initializations of packet data structures, which allows remote attackers to cause a denial of service (panic) via a certain sequence of SCTP ...
CVE-2010-2938
- EPSS 0.35%
- Veröffentlicht 08.10.2010 21:00:02
- Zuletzt bearbeitet 16.06.2026 23:21:47
arch/x86/hvm/vmx/vmcs.c in the virtual-machine control structure (VMCS) implementation in the Linux kernel 2.6.18 on Red Hat Enterprise Linux (RHEL) 5, when an Intel platform without Extended Page Tables (EPT) functionality is used, accesses VMCS fie...
CVE-2010-2653
- EPSS 0.38%
- Veröffentlicht 05.10.2010 18:00:16
- Zuletzt bearbeitet 16.06.2026 23:21:09
Race condition in the hvc_close function in drivers/char/hvc_console.c in the Linux kernel before 2.6.34 allows local users to cause a denial of service or possibly have unspecified other impact by closing a Hypervisor Virtual Console device, related...
CVE-2010-3437
- EPSS 2.4%
- Veröffentlicht 04.10.2010 21:00:04
- Zuletzt bearbeitet 16.06.2026 23:22:46
Integer signedness error in the pkt_find_dev_from_minor function in drivers/block/pktcdvd.c in the Linux kernel before 2.6.36-rc6 allows local users to obtain sensitive information from kernel memory or cause a denial of service (invalid pointer dere...