CVE-2011-1093
- EPSS 1.22%
- Veröffentlicht 18.07.2011 22:55:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
The dccp_rcv_state_process function in net/dccp/input.c in the Datagram Congestion Control Protocol (DCCP) implementation in the Linux kernel before 2.6.38 does not properly handle packets for a CLOSED endpoint, which allows remote attackers to cause...
CVE-2011-1745
- EPSS 0.04%
- Veröffentlicht 09.05.2011 19:55:03
- Zuletzt bearbeitet 11.04.2025 00:51:21
Integer overflow in the agp_generic_insert_memory function in drivers/char/agp/generic.c in the Linux kernel before 2.6.38.5 allows local users to gain privileges or cause a denial of service (system crash) via a crafted AGPIOC_BIND agp_ioctl ioctl c...
CVE-2011-1746
- EPSS 0.04%
- Veröffentlicht 09.05.2011 19:55:03
- Zuletzt bearbeitet 11.04.2025 00:51:21
Multiple integer overflows in the (1) agp_allocate_memory and (2) agp_create_user_memory functions in drivers/char/agp/generic.c in the Linux kernel before 2.6.38.5 allow local users to trigger buffer overflows, and consequently cause a denial of ser...
CVE-2011-2022
- EPSS 0.04%
- Veröffentlicht 09.05.2011 19:55:03
- Zuletzt bearbeitet 11.04.2025 00:51:21
The agp_generic_remove_memory function in drivers/char/agp/generic.c in the Linux kernel before 2.6.38.5 does not validate a certain start parameter, which allows local users to gain privileges or cause a denial of service (system crash) via a crafte...
CVE-2011-1593
- EPSS 0.04%
- Veröffentlicht 03.05.2011 20:55:08
- Zuletzt bearbeitet 11.04.2025 00:51:21
Multiple integer overflows in the next_pidmap function in kernel/pid.c in the Linux kernel before 2.6.38.4 allow local users to cause a denial of service (system crash) via a crafted (1) getdents or (2) readdir system call.
CVE-2011-1163
- EPSS 0.11%
- Veröffentlicht 10.04.2011 02:51:19
- Zuletzt bearbeitet 11.04.2025 00:51:21
The osf_partition function in fs/partitions/osf.c in the Linux kernel before 2.6.38 does not properly handle an invalid number of partitions, which might allow local users to obtain potentially sensitive information from kernel heap memory via vector...
CVE-2011-1083
- EPSS 0.18%
- Veröffentlicht 04.04.2011 12:27:57
- Zuletzt bearbeitet 11.04.2025 00:51:21
The epoll implementation in the Linux kernel 2.6.37.2 and earlier does not properly traverse a tree of epoll file descriptors, which allows local users to cause a denial of service (CPU consumption) via a crafted application that makes epoll_create a...
CVE-2011-0695
- EPSS 0.44%
- Veröffentlicht 15.03.2011 17:55:04
- Zuletzt bearbeitet 11.04.2025 00:51:21
Race condition in the cm_work_handler function in the InfiniBand driver (drivers/infiniband/core/cma.c) in Linux kernel 2.6.x allows remote attackers to cause a denial of service (panic) by sending an InfiniBand request while other request handlers a...
CVE-2011-0711
- EPSS 0.06%
- Veröffentlicht 01.03.2011 23:00:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
The xfs_fs_geometry function in fs/xfs/xfs_fsops.c in the Linux kernel before 2.6.38-rc6-git3 does not initialize a certain structure member, which allows local users to obtain potentially sensitive information from kernel stack memory via an FSGEOME...
CVE-2010-4649
- EPSS 0.07%
- Veröffentlicht 18.02.2011 20:00:09
- Zuletzt bearbeitet 11.04.2025 00:51:21
Integer overflow in the ib_uverbs_poll_cq function in drivers/infiniband/core/uverbs_cmd.c in the Linux kernel before 2.6.37 allows local users to cause a denial of service (memory corruption) or possibly have unspecified other impact via a large val...