Redhat

Enterprise Linux

1709 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.08%
  • Published 15.03.2013 20:55:07
  • Last modified 11.04.2025 00:51:21

net/xfrm/xfrm_user.c in the Linux kernel before 3.6 does not initialize certain structures, which allows local users to obtain sensitive information from kernel memory by leveraging the CAP_NET_ADMIN capability.

  • EPSS 0.06%
  • Published 15.03.2013 20:55:07
  • Last modified 11.04.2025 00:51:21

The copy_to_user_auth function in net/xfrm/xfrm_user.c in the Linux kernel before 3.6 uses an incorrect C library function for copying a string, which allows local users to obtain sensitive information from kernel heap memory by leveraging the CAP_NE...

  • EPSS 0.09%
  • Published 15.03.2013 20:55:07
  • Last modified 11.04.2025 00:51:21

The llc_ui_getname function in net/llc/af_llc.c in the Linux kernel before 3.6 has an incorrect return value in certain circumstances, which allows local users to obtain sensitive information from kernel stack memory via a crafted application that le...

  • EPSS 0.08%
  • Published 15.03.2013 20:55:07
  • Last modified 11.04.2025 00:51:21

The Bluetooth protocol stack in the Linux kernel before 3.6 does not properly initialize certain structures, which allows local users to obtain sensitive information from kernel stack memory via a crafted application that targets the (1) L2CAP or (2)...

  • EPSS 0.08%
  • Published 15.03.2013 20:55:07
  • Last modified 11.04.2025 00:51:21

The Bluetooth RFCOMM implementation in the Linux kernel before 3.6 does not properly initialize certain structures, which allows local users to obtain sensitive information from kernel memory via a crafted application.

  • EPSS 0.01%
  • Published 15.03.2013 20:55:07
  • Last modified 11.04.2025 00:51:21

The ATM implementation in the Linux kernel before 3.6 does not initialize certain structures, which allows local users to obtain sensitive information from kernel stack memory via a crafted application.

  • EPSS 0.03%
  • Published 15.03.2013 20:55:07
  • Last modified 11.04.2025 00:51:21

The udf_encode_fh function in fs/udf/namei.c in the Linux kernel before 3.6 does not initialize a certain structure member, which allows local users to obtain sensitive information from kernel heap memory via a crafted application.

  • EPSS 0.06%
  • Published 06.03.2013 20:55:01
  • Last modified 11.04.2025 00:51:21

HP Linux Imaging and Printing (HPLIP) through 3.12.4 allows local users to overwrite arbitrary files via a symlink attack on the (1) /tmp/hpcupsfilterc_#.bmp, (2) /tmp/hpcupsfilterk_#.bmp, (3) /tmp/hpcups_job#.out, (4) /tmp/hpijs_#####.out, or (5) /t...

Exploit
  • EPSS 0.06%
  • Published 01.03.2013 12:37:53
  • Last modified 11.04.2025 00:51:21

kernel/signal.c in the Linux kernel before 2.6.39 allows local users to spoof the uid and pid of a signal sender via a sigqueueinfo system call.

  • EPSS 0.05%
  • Published 01.03.2013 05:40:15
  • Last modified 11.04.2025 00:51:21

The ExecShield feature in a certain Red Hat patch for the Linux kernel in Red Hat Enterprise Linux (RHEL) 5 and 6 and Fedora 15 and 16 does not properly handle use of many shared libraries by a 32-bit executable file, which makes it easier for contex...