CVE-2013-1943
- EPSS 0.12%
- Veröffentlicht 16.07.2013 14:08:50
- Zuletzt bearbeitet 11.04.2025 00:51:21
The KVM subsystem in the Linux kernel before 3.0 does not check whether kernel addresses are specified during allocation of memory slots for use in a guest's physical address space, which allows local users to gain privileges or obtain sensitive info...
CVE-2013-2188
- EPSS 0.04%
- Veröffentlicht 16.07.2013 14:08:50
- Zuletzt bearbeitet 11.04.2025 00:51:21
A certain Red Hat patch to the do_filp_open function in fs/namei.c in the kernel package before 2.6.32-358.11.1.el6 on Red Hat Enterprise Linux (RHEL) 6 does not properly handle failure to obtain write permissions, which allows local users to cause a...
CVE-2013-1935
- EPSS 0.23%
- Veröffentlicht 16.07.2013 14:08:49
- Zuletzt bearbeitet 11.04.2025 00:51:21
A certain Red Hat patch to the KVM subsystem in the kernel package before 2.6.32-358.11.1.el6 on Red Hat Enterprise Linux (RHEL) 6 does not properly implement the PV EOI feature, which allows guest OS users to cause a denial of service (host OS crash...
CVE-2013-1976
- EPSS 0.03%
- Veröffentlicht 09.07.2013 17:55:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
The (1) tomcat5, (2) tomcat6, and (3) tomcat7 init scripts, as used in the RPM distribution of Tomcat for JBoss Enterprise Web Server 1.0.2 and 2.0.0, and Red Hat Enterprise Linux 5 and 6, allow local users to change the ownership of arbitrary files ...
CVE-2013-2051
- EPSS 0.34%
- Veröffentlicht 09.07.2013 17:55:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
The Tomcat 6 DIGEST authentication functionality as used in Red Hat Enterprise Linux 6 allows remote attackers to bypass intended access restrictions by performing a replay attack after a nonce becomes stale. NOTE: this issue is due to an incomplete...
CVE-2013-2224
- EPSS 0.18%
- Veröffentlicht 04.07.2013 21:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
A certain Red Hat patch for the Linux kernel 2.6.32 on Red Hat Enterprise Linux (RHEL) 6 allows local users to cause a denial of service (invalid free operation and system crash) or possibly gain privileges via a sendmsg system call with the IP_RETOP...
CVE-2013-2164
- EPSS 0.07%
- Veröffentlicht 04.07.2013 21:55:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
The mmc_ioctl_cdrom_read_data function in drivers/cdrom/cdrom.c in the Linux kernel through 3.10 allows local users to obtain sensitive information from kernel memory via a read operation on a malfunctioning CD-ROM drive.
CVE-2011-2693
- EPSS 0.05%
- Veröffentlicht 08.06.2013 13:05:55
- Zuletzt bearbeitet 11.04.2025 00:51:21
The perf subsystem in the kernel package 2.6.32-122.el6.x86_64 in Red Hat Enterprise Linux (RHEL) 6 does not properly handle NMIs, which might allow local users to cause a denial of service (excessive log messages) via unspecified vectors.
CVE-2011-2942
- EPSS 0.32%
- Veröffentlicht 08.06.2013 13:05:55
- Zuletzt bearbeitet 11.04.2025 00:51:21
A certain Red Hat patch to the __br_deliver function in net/bridge/br_forward.c in the Linux kernel 2.6.18 on Red Hat Enterprise Linux (RHEL) 5 allows remote attackers to cause a denial of service (NULL pointer dereference and system crash) or possib...
CVE-2011-3347
- EPSS 0.54%
- Veröffentlicht 08.06.2013 13:05:55
- Zuletzt bearbeitet 11.04.2025 00:51:21
A certain Red Hat patch to the be2net implementation in the kernel package before 2.6.32-218.el6 on Red Hat Enterprise Linux (RHEL) 6, when promiscuous mode is enabled, allows remote attackers to cause a denial of service (system crash) via non-membe...