CVE-2010-3067
- EPSS 0.08%
- Published 21.09.2010 18:00:05
- Last modified 11.04.2025 00:51:21
Integer overflow in the do_io_submit function in fs/aio.c in the Linux kernel before 2.6.36-rc4-next-20100915 allows local users to cause a denial of service or possibly have unspecified other impact via crafted use of the io_submit system call.
CVE-2010-3078
- EPSS 0.05%
- Published 21.09.2010 18:00:05
- Last modified 11.04.2025 00:51:21
The xfs_ioc_fsgetxattr function in fs/xfs/linux-2.6/xfs_ioctl.c in the Linux kernel before 2.6.36-rc4 does not initialize a certain structure member, which allows local users to obtain potentially sensitive information from kernel stack memory via an...
CVE-2010-2942
- EPSS 0.06%
- Published 21.09.2010 18:00:02
- Last modified 11.04.2025 00:51:21
The actions implementation in the network queueing functionality in the Linux kernel before 2.6.36-rc2 does not properly initialize certain structure members when performing dump operations, which allows local users to obtain potentially sensitive in...
CVE-2010-2955
- EPSS 0.1%
- Published 08.09.2010 20:00:03
- Last modified 11.04.2025 00:51:21
The cfg80211_wext_giwessid function in net/wireless/wext-compat.c in the Linux kernel before 2.6.36-rc3-next-20100831 does not properly initialize certain structure members, which allows local users to leverage an off-by-one error in the ioctl_standa...
CVE-2010-2959
- EPSS 0.23%
- Published 08.09.2010 20:00:03
- Last modified 11.04.2025 00:51:21
Integer overflow in net/can/bcm.c in the Controller Area Network (CAN) implementation in the Linux kernel before 2.6.27.53, 2.6.32.x before 2.6.32.21, 2.6.34.x before 2.6.34.6, and 2.6.35.x before 2.6.35.4 allows attackers to execute arbitrary code o...
CVE-2010-2798
- EPSS 0.05%
- Published 08.09.2010 20:00:02
- Last modified 11.04.2025 00:51:21
The gfs2_dirent_find_space function in fs/gfs2/dir.c in the Linux kernel before 2.6.35 uses an incorrect size value in calculations associated with sentinel directory entries, which allows local users to cause a denial of service (NULL pointer derefe...
CVE-2010-2803
- EPSS 0.08%
- Published 08.09.2010 20:00:02
- Last modified 11.04.2025 00:51:21
The drm_ioctl function in drivers/gpu/drm/drm_drv.c in the Direct Rendering Manager (DRM) subsystem in the Linux kernel before 2.6.27.53, 2.6.32.x before 2.6.32.21, 2.6.34.x before 2.6.34.6, and 2.6.35.x before 2.6.35.4 allows local users to obtain p...
CVE-2010-2954
- EPSS 0.13%
- Published 03.09.2010 20:00:04
- Last modified 11.04.2025 00:51:21
The irda_bind function in net/irda/af_irda.c in the Linux kernel before 2.6.36-rc3-next-20100901 does not properly handle failure of the irda_open_tsap function, which allows local users to cause a denial of service (NULL pointer dereference and pani...
CVE-2010-2532
- EPSS 0.12%
- Published 03.09.2010 20:00:03
- Last modified 11.04.2025 00:51:21
lxsession-logout in lxsession in LXDE, as used on SUSE openSUSE 11.3 and other platforms, does not lock the screen when the Suspend or Hibernate button is pressed, which might make it easier for physically proximate attackers to access an unattended ...
CVE-2010-2753
- EPSS 4.09%
- Published 30.07.2010 20:30:02
- Last modified 11.04.2025 00:51:21
Integer overflow in Mozilla Firefox 3.5.x before 3.5.11 and 3.6.x before 3.6.7, Thunderbird 3.0.x before 3.0.6 and 3.1.x before 3.1.1, and SeaMonkey before 2.0.6 allows remote attackers to execute arbitrary code via a large selection attribute in a X...