CVE-2011-1083
- EPSS 0.18%
- Published 04.04.2011 12:27:57
- Last modified 11.04.2025 00:51:21
The epoll implementation in the Linux kernel 2.6.37.2 and earlier does not properly traverse a tree of epoll file descriptors, which allows local users to cause a denial of service (CPU consumption) via a crafted application that makes epoll_create a...
CVE-2010-4160
- EPSS 0.16%
- Published 07.01.2011 12:00:48
- Last modified 11.04.2025 00:51:21
Multiple integer overflows in the (1) pppol2tp_sendmsg function in net/l2tp/l2tp_ppp.c, and the (2) l2tp_ip_sendmsg function in net/l2tp/l2tp_ip.c, in the PPPoL2TP and IPoL2TP implementations in the Linux kernel before 2.6.36.2 allow local users to c...
CVE-2010-3876
- EPSS 0.06%
- Published 03.01.2011 20:00:42
- Last modified 11.04.2025 00:51:21
net/packet/af_packet.c in the Linux kernel before 2.6.37-rc2 does not properly initialize certain structure members, which allows local users to obtain potentially sensitive information from kernel stack memory by leveraging the CAP_NET_RAW capabilit...
CVE-2010-4162
- EPSS 0.08%
- Published 03.01.2011 20:00:42
- Last modified 11.04.2025 00:51:21
Multiple integer overflows in fs/bio.c in the Linux kernel before 2.6.36.2 allow local users to cause a denial of service (system crash) via a crafted device ioctl to a SCSI device.
CVE-2010-4163
- EPSS 0.08%
- Published 03.01.2011 20:00:42
- Last modified 11.04.2025 00:51:21
The blk_rq_map_user_iov function in block/blk-map.c in the Linux kernel before 2.6.36.2 allows local users to cause a denial of service (panic) via a zero-length I/O request in a device ioctl to a SCSI device.
CVE-2010-4164
- EPSS 2%
- Published 03.01.2011 20:00:42
- Last modified 11.04.2025 00:51:21
Multiple integer underflows in the x25_parse_facilities function in net/x25/x25_facilities.c in the Linux kernel before 2.6.36.2 allow remote attackers to cause a denial of service (system crash) via malformed X.25 (1) X25_FAC_CLASS_A, (2) X25_FAC_CL...
CVE-2010-4258
- EPSS 2.52%
- Published 30.12.2010 19:00:04
- Last modified 11.04.2025 00:51:21
The do_exit function in kernel/exit.c in the Linux kernel before 2.6.36.2 does not properly handle a KERNEL_DS get_fs value, which allows local users to bypass intended access_ok restrictions, overwrite arbitrary kernel memory locations, and gain pri...
CVE-2010-3848
- EPSS 0.15%
- Published 30.12.2010 19:00:03
- Last modified 11.04.2025 00:51:21
Stack-based buffer overflow in the econet_sendmsg function in net/econet/af_econet.c in the Linux kernel before 2.6.36.2, when an econet address is configured, allows local users to gain privileges by providing a large number of iovec structures.
CVE-2010-3849
- EPSS 0.18%
- Published 30.12.2010 19:00:03
- Last modified 11.04.2025 00:51:21
The econet_sendmsg function in net/econet/af_econet.c in the Linux kernel before 2.6.36.2, when an econet address is configured, allows local users to cause a denial of service (NULL pointer dereference and OOPS) via a sendmsg call that specifies a N...
CVE-2010-3850
- EPSS 0.1%
- Published 30.12.2010 19:00:03
- Last modified 11.04.2025 00:51:21
The ec_dev_ioctl function in net/econet/af_econet.c in the Linux kernel before 2.6.36.2 does not require the CAP_NET_ADMIN capability, which allows local users to bypass intended access restrictions and configure econet addresses via an SIOCSIFADDR i...