Redhat

Enterprise Linux Server

1890 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.18%
  • Veröffentlicht 04.04.2011 12:27:57
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The epoll implementation in the Linux kernel 2.6.37.2 and earlier does not properly traverse a tree of epoll file descriptors, which allows local users to cause a denial of service (CPU consumption) via a crafted application that makes epoll_create a...

Exploit
  • EPSS 0.44%
  • Veröffentlicht 15.03.2011 17:55:04
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Race condition in the cm_work_handler function in the InfiniBand driver (drivers/infiniband/core/cma.c) in Linux kernel 2.6.x allows remote attackers to cause a denial of service (panic) by sending an InfiniBand request while other request handlers a...

  • EPSS 0.06%
  • Veröffentlicht 01.03.2011 23:00:02
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The xfs_fs_geometry function in fs/xfs/xfs_fsops.c in the Linux kernel before 2.6.38-rc6-git3 does not initialize a certain structure member, which allows local users to obtain potentially sensitive information from kernel stack memory via an FSGEOME...

  • EPSS 0.07%
  • Veröffentlicht 18.02.2011 20:00:09
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Integer overflow in the ib_uverbs_poll_cq function in drivers/infiniband/core/uverbs_cmd.c in the Linux kernel before 2.6.37 allows local users to cause a denial of service (memory corruption) or possibly have unspecified other impact via a large val...

  • EPSS 0.06%
  • Veröffentlicht 18.02.2011 20:00:09
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The ib_uverbs_poll_cq function in drivers/infiniband/core/uverbs_cmd.c in the Linux kernel before 2.6.37 does not initialize a certain response buffer, which allows local users to obtain potentially sensitive information from kernel memory via vector...

  • EPSS 0.07%
  • Veröffentlicht 23.12.2010 18:00:02
  • Zuletzt bearbeitet 11.04.2025 00:51:21

arch/x86/kvm/x86.c in the Linux kernel before 2.6.36.2 does not initialize certain structure members, which allows local users to obtain potentially sensitive information from kernel stack memory via read operations on the /dev/kvm device.

Exploit
  • EPSS 1.62%
  • Veröffentlicht 07.12.2010 21:00:09
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Double free vulnerability in libxml2 2.7.8 and other versions, as used in Google Chrome before 8.0.552.215 and other products, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to XPath...

Exploit
  • EPSS 0.57%
  • Veröffentlicht 17.11.2010 01:00:02
  • Zuletzt bearbeitet 11.04.2025 00:51:21

libxml2 before 2.7.8, as used in Google Chrome before 7.0.517.44, Apple Safari 5.0.2 and earlier, and other products, reads from invalid memory locations during processing of malformed XPath expressions, which allows context-dependent attackers to ca...

Exploit
  • EPSS 8.12%
  • Veröffentlicht 06.11.2010 00:00:03
  • Zuletzt bearbeitet 11.04.2025 00:51:21

WebM libvpx (aka the VP8 Codec SDK) before 0.9.5, as used in Google Chrome before 7.0.517.44, allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via invalid frames.

  • EPSS 3.86%
  • Veröffentlicht 05.11.2010 18:00:05
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The Gfx::getPos function in the PDF parser in xpdf before 3.02pl5, poppler 0.8.7 and possibly other versions up to 0.15.1, CUPS, kdegraphics, and possibly other products allows context-dependent attackers to cause a denial of service (crash) via unkn...