Suse

Linux Enterprise Desktop

460 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.21%
  • Veröffentlicht 30.12.2010 19:00:03
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The sk_run_filter function in net/core/filter.c in the Linux kernel before 2.6.36.2 does not check whether a certain memory location has been initialized before executing a (1) BPF_S_LD_MEM or (2) BPF_S_LDX_MEM instruction, which allows local users t...

  • EPSS 0.1%
  • Veröffentlicht 29.12.2010 18:00:02
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Heap-based buffer overflow in the bcm_connect function in net/can/bcm.c (aka the Broadcast Manager) in the Controller Area Network (CAN) implementation in the Linux kernel before 2.6.36.2 on 64-bit platforms might allow local users to cause a denial ...

Exploit
  • EPSS 0.11%
  • Veröffentlicht 10.12.2010 19:00:05
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Integer overflow in the ioc_general function in drivers/scsi/gdth.c in the Linux kernel before 2.6.36.1 on 64-bit platforms allows local users to cause a denial of service (memory corruption) or possibly have unspecified other impact via a large argu...

  • EPSS 0.05%
  • Veröffentlicht 10.12.2010 19:00:04
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The ethtool_get_rxnfc function in net/core/ethtool.c in the Linux kernel before 2.6.36 does not initialize a certain block of heap memory, which allows local users to obtain potentially sensitive information via an ETHTOOL_GRXCLSRLALL ethtool command...

  • EPSS 5.99%
  • Veröffentlicht 06.12.2010 21:05:48
  • Zuletzt bearbeitet 11.04.2025 00:51:21

OpenSSL before 0.9.8q, and 1.0.x before 1.0.0c, when SSL_OP_NETSCAPE_REUSE_CIPHER_CHANGE_BUG is enabled, does not properly prevent modification of the ciphersuite in the session cache, which allows remote attackers to force the downgrade to an uninte...

Warnung Exploit
  • EPSS 1.7%
  • Veröffentlicht 06.12.2010 20:13:00
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The rds_page_copy_user function in net/rds/page.c in the Reliable Datagram Sockets (RDS) protocol implementation in the Linux kernel before 2.6.36 does not properly validate addresses obtained from user space, which allows local users to gain privile...

  • EPSS 0.09%
  • Veröffentlicht 30.11.2010 22:14:00
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The snd_hdsp_hwdep_ioctl function in sound/pci/rme9652/hdsp.c in the Linux kernel before 2.6.36-rc6 does not initialize a certain structure, which allows local users to obtain potentially sensitive information from kernel stack memory via an SNDRV_HD...

  • EPSS 0.09%
  • Veröffentlicht 30.11.2010 22:14:00
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The snd_hdspm_hwdep_ioctl function in sound/pci/rme9652/hdspm.c in the Linux kernel before 2.6.36-rc6 does not initialize a certain structure, which allows local users to obtain potentially sensitive information from kernel stack memory via an SNDRV_...

  • EPSS 0.07%
  • Veröffentlicht 30.11.2010 22:14:00
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The viafb_ioctl_get_viafb_info function in drivers/video/via/ioctl.c in the Linux kernel before 2.6.36-rc5 does not properly initialize a certain structure member, which allows local users to obtain potentially sensitive information from kernel stack...

  • EPSS 0.09%
  • Veröffentlicht 30.11.2010 22:14:00
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The copy_semid_to_user function in ipc/sem.c in the Linux kernel before 2.6.36 does not initialize a certain structure, which allows local users to obtain potentially sensitive information from kernel stack memory via a (1) IPC_INFO, (2) SEM_INFO, (3...