CVE-2009-4410
- EPSS 0.36%
- Veröffentlicht 24.12.2009 16:30:00
- Zuletzt bearbeitet 16.06.2026 23:13:36
The fuse_ioctl_copy_user function in the ioctl handler in fs/fuse/file.c in the Linux kernel 2.6.29-rc1 through 2.6.30.y uses the wrong variable in an argument to the kunmap function, which allows local users to cause a denial of service (panic) via ...
CVE-2009-4138
- EPSS 0.36%
- Veröffentlicht 16.12.2009 19:30:01
- Zuletzt bearbeitet 16.06.2026 23:13:06
drivers/firewire/ohci.c in the Linux kernel before 2.6.32-git9, when packet-per-buffer mode is used, allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unknown other impact via an unspecified ...
CVE-2009-4131
- EPSS 0.79%
- Veröffentlicht 13.12.2009 01:30:00
- Zuletzt bearbeitet 16.06.2026 23:13:05
The EXT4_IOC_MOVE_EXT (aka move extents) ioctl implementation in the ext4 filesystem in the Linux kernel before 2.6.32-git6 allows local users to overwrite arbitrary files via a crafted request, related to insufficient checks for file permissions.
CVE-2009-4306
- EPSS 0.38%
- Veröffentlicht 13.12.2009 01:30:00
- Zuletzt bearbeitet 16.06.2026 23:13:24
Unspecified vulnerability in the EXT4_IOC_MOVE_EXT (aka move extents) ioctl implementation in the ext4 filesystem in the Linux kernel 2.6.32-git6 and earlier allows local users to cause a denial of service (filesystem corruption) via unknown vectors,...
CVE-2009-4307
- EPSS 3.43%
- Veröffentlicht 13.12.2009 01:30:00
- Zuletzt bearbeitet 16.06.2026 23:13:24
The ext4_fill_flex_info function in fs/ext4/super.c in the Linux kernel before 2.6.32-git6 allows user-assisted remote attackers to cause a denial of service (divide-by-zero error and panic) via a malformed ext4 filesystem containing a super block wi...
CVE-2009-4308
- EPSS 3.47%
- Veröffentlicht 13.12.2009 01:30:00
- Zuletzt bearbeitet 16.06.2026 23:13:24
The ext4_decode_error function in fs/ext4/super.c in the ext4 filesystem in the Linux kernel before 2.6.32 allows user-assisted remote attackers to cause a denial of service (NULL pointer dereference), and possibly have unspecified other impact, via ...
CVE-2009-1298
- EPSS 3.87%
- Veröffentlicht 08.12.2009 23:30:00
- Zuletzt bearbeitet 16.06.2026 23:06:58
The ip_frag_reasm function in net/ipv4/ip_fragment.c in the Linux kernel 2.6.32-rc8, and 2.6.29 and later versions before 2.6.32, calls IP_INC_STATS_BH with an incorrect argument, which allows remote attackers to cause a denial of service (NULL point...
CVE-2009-4020
- EPSS 4.95%
- Veröffentlicht 04.12.2009 21:30:00
- Zuletzt bearbeitet 16.06.2026 23:12:50
Stack-based buffer overflow in the hfs subsystem in the Linux kernel 2.6.32 allows remote attackers to have an unspecified impact via a crafted Hierarchical File System (HFS) filesystem, related to the hfs_readdir function in fs/hfs/dir.c.
CVE-2009-4026
- EPSS 3.06%
- Veröffentlicht 02.12.2009 16:30:00
- Zuletzt bearbeitet 16.06.2026 23:12:51
The mac80211 subsystem in the Linux kernel before 2.6.32-rc8-next-20091201 allows remote attackers to cause a denial of service (panic) via a crafted Delete Block ACK (aka DELBA) packet, related to an erroneous "code shuffling patch."
CVE-2009-4027
- EPSS 2.29%
- Veröffentlicht 02.12.2009 16:30:00
- Zuletzt bearbeitet 16.06.2026 23:12:51
Race condition in the mac80211 subsystem in the Linux kernel before 2.6.32-rc8-next-20091201 allows remote attackers to cause a denial of service (system crash) via a Delete Block ACK (aka DELBA) packet that triggers a certain state change in the abs...