Suse

Linux Enterprise Software Development Kit

296 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 2.52%
  • Published 30.12.2010 19:00:04
  • Last modified 11.04.2025 00:51:21

The do_exit function in kernel/exit.c in the Linux kernel before 2.6.36.2 does not properly handle a KERNEL_DS get_fs value, which allows local users to bypass intended access_ok restrictions, overwrite arbitrary kernel memory locations, and gain pri...

  • EPSS 0.15%
  • Published 30.12.2010 19:00:03
  • Last modified 11.04.2025 00:51:21

Stack-based buffer overflow in the econet_sendmsg function in net/econet/af_econet.c in the Linux kernel before 2.6.36.2, when an econet address is configured, allows local users to gain privileges by providing a large number of iovec structures.

  • EPSS 0.18%
  • Published 30.12.2010 19:00:03
  • Last modified 11.04.2025 00:51:21

The econet_sendmsg function in net/econet/af_econet.c in the Linux kernel before 2.6.36.2, when an econet address is configured, allows local users to cause a denial of service (NULL pointer dereference and OOPS) via a sendmsg call that specifies a N...

  • EPSS 0.1%
  • Published 30.12.2010 19:00:03
  • Last modified 11.04.2025 00:51:21

The ec_dev_ioctl function in net/econet/af_econet.c in the Linux kernel before 2.6.36.2 does not require the CAP_NET_ADMIN capability, which allows local users to bypass intended access restrictions and configure econet addresses via an SIOCSIFADDR i...

Exploit
  • EPSS 0.21%
  • Published 30.12.2010 19:00:03
  • Last modified 11.04.2025 00:51:21

The sk_run_filter function in net/core/filter.c in the Linux kernel before 2.6.36.2 does not check whether a certain memory location has been initialized before executing a (1) BPF_S_LD_MEM or (2) BPF_S_LDX_MEM instruction, which allows local users t...

Exploit
  • EPSS 0.11%
  • Published 10.12.2010 19:00:05
  • Last modified 11.04.2025 00:51:21

Integer overflow in the ioc_general function in drivers/scsi/gdth.c in the Linux kernel before 2.6.36.1 on 64-bit platforms allows local users to cause a denial of service (memory corruption) or possibly have unspecified other impact via a large argu...

  • EPSS 0.09%
  • Published 30.11.2010 22:14:00
  • Last modified 11.04.2025 00:51:21

The snd_hdsp_hwdep_ioctl function in sound/pci/rme9652/hdsp.c in the Linux kernel before 2.6.36-rc6 does not initialize a certain structure, which allows local users to obtain potentially sensitive information from kernel stack memory via an SNDRV_HD...

  • EPSS 0.09%
  • Published 30.11.2010 22:14:00
  • Last modified 11.04.2025 00:51:21

The snd_hdspm_hwdep_ioctl function in sound/pci/rme9652/hdspm.c in the Linux kernel before 2.6.36-rc6 does not initialize a certain structure, which allows local users to obtain potentially sensitive information from kernel stack memory via an SNDRV_...

  • EPSS 0.09%
  • Published 30.11.2010 22:14:00
  • Last modified 11.04.2025 00:51:21

The copy_semid_to_user function in ipc/sem.c in the Linux kernel before 2.6.36 does not initialize a certain structure, which allows local users to obtain potentially sensitive information from kernel stack memory via a (1) IPC_INFO, (2) SEM_INFO, (3...

  • EPSS 0.07%
  • Published 29.11.2010 16:00:03
  • Last modified 11.04.2025 00:51:21

The sisfb_ioctl function in drivers/video/sis/sis_main.c in the Linux kernel before 2.6.36-rc6 does not properly initialize a certain structure member, which allows local users to obtain potentially sensitive information from kernel stack memory via ...