CVE-2007-6283
- EPSS 0.11%
- Veröffentlicht 18.12.2007 01:46:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Red Hat Enterprise Linux 5 and Fedora install the Bind /etc/rndc.key file with world-readable permissions, which allows local users to perform unauthorized named commands, such as causing a denial of service by stopping named.
CVE-2007-5964
- EPSS 0.17%
- Veröffentlicht 13.12.2007 18:46:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The default configuration of autofs 5 in some Linux distributions, such as Red Hat Enterprise Linux (RHEL) 5, omits the nosuid option for the hosts (/net filesystem) map, which allows local users to gain privileges via a setuid program on a remote NF...
CVE-2006-7226
- EPSS 1.53%
- Veröffentlicht 03.12.2007 20:46:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Perl-Compatible Regular Expression (PCRE) library before 6.7 does not properly calculate the compiled memory allocation for regular expressions that involve a quantified "subpattern containing a named recursion or subroutine reference," which allows ...
CVE-2007-5494
- EPSS 0.09%
- Veröffentlicht 30.11.2007 02:46:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Memory leak in the Red Hat Content Accelerator kernel patch in Red Hat Enterprise Linux (RHEL) 4 and 5 allows local users to cause a denial of service (memory consumption) via a large number of open requests involving O_ATOMICLOOKUP.
CVE-2007-5116
- EPSS 11.41%
- Veröffentlicht 07.11.2007 23:46:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Buffer overflow in the polymorphic opcode support in the Regular Expression Engine (regcomp.c) in Perl 5.8 allows context-dependent attackers to execute arbitrary code by switching from byte to Unicode (UTF) characters in a regular expression.
CVE-2007-4574
- EPSS 0.11%
- Veröffentlicht 23.10.2007 10:46:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Unspecified vulnerability in the "stack unwinder fixes" in kernel in Red Hat Enterprise Linux 5, when running on AMD64 and Intel 64, allows local users to cause a denial of service via unknown vectors.
CVE-2007-5365
- EPSS 43.51%
- Veröffentlicht 11.10.2007 10:17:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Stack-based buffer overflow in the cons_options function in options.c in dhcpd in OpenBSD 4.0 through 4.2, and some other dhcpd implementations based on ISC dhcp-2, allows remote attackers to execute arbitrary code or cause a denial of service (daemo...
CVE-2007-0004
- EPSS 0.05%
- Veröffentlicht 18.09.2007 19:17:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The NFS client implementation in the kernel in Red Hat Enterprise Linux (RHEL) 3, when a filesystem is mounted with the noacl option, checks permissions for the open system call via vfs_permission (mode bits) data rather than an NFS ACCESS call to th...
CVE-2007-1865
- EPSS 0.06%
- Veröffentlicht 18.09.2007 19:17:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The ipv6_getsockopt_sticky function in the kernel in Red Hat Enterprise Linux (RHEL) Beta 5.1.0 allows local users to obtain sensitive information (kernel memory contents) via a negative value of the len parameter. NOTE: this issue has been disputed...
CVE-2007-3379
- EPSS 0.06%
- Veröffentlicht 17.09.2007 17:17:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Unspecified vulnerability in the kernel in Red Hat Enterprise Linux (RHEL) 4 on the x86_64 platform allows local users to cause a denial of service (OOPS) via unspecified vectors related to the get_gate_vma function and the fuser command.