CVE-2010-3861
- EPSS 0.05%
- Veröffentlicht 10.12.2010 19:00:04
- Zuletzt bearbeitet 11.04.2025 00:51:21
The ethtool_get_rxnfc function in net/core/ethtool.c in the Linux kernel before 2.6.36 does not initialize a certain block of heap memory, which allows local users to obtain potentially sensitive information via an ETHTOOL_GRXCLSRLALL ethtool command...
CVE-2010-4180
- EPSS 5.99%
- Veröffentlicht 06.12.2010 21:05:48
- Zuletzt bearbeitet 11.04.2025 00:51:21
OpenSSL before 0.9.8q, and 1.0.x before 1.0.0c, when SSL_OP_NETSCAPE_REUSE_CIPHER_CHANGE_BUG is enabled, does not properly prevent modification of the ciphersuite in the session cache, which allows remote attackers to force the downgrade to an uninte...
CVE-2010-3904
- EPSS 1.7%
- Veröffentlicht 06.12.2010 20:13:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
The rds_page_copy_user function in net/rds/page.c in the Reliable Datagram Sockets (RDS) protocol implementation in the Linux kernel before 2.6.36 does not properly validate addresses obtained from user space, which allows local users to gain privile...
CVE-2010-4080
- EPSS 0.09%
- Veröffentlicht 30.11.2010 22:14:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
The snd_hdsp_hwdep_ioctl function in sound/pci/rme9652/hdsp.c in the Linux kernel before 2.6.36-rc6 does not initialize a certain structure, which allows local users to obtain potentially sensitive information from kernel stack memory via an SNDRV_HD...
CVE-2010-4081
- EPSS 0.09%
- Veröffentlicht 30.11.2010 22:14:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
The snd_hdspm_hwdep_ioctl function in sound/pci/rme9652/hdspm.c in the Linux kernel before 2.6.36-rc6 does not initialize a certain structure, which allows local users to obtain potentially sensitive information from kernel stack memory via an SNDRV_...
CVE-2010-4082
- EPSS 0.07%
- Veröffentlicht 30.11.2010 22:14:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
The viafb_ioctl_get_viafb_info function in drivers/video/via/ioctl.c in the Linux kernel before 2.6.36-rc5 does not properly initialize a certain structure member, which allows local users to obtain potentially sensitive information from kernel stack...
CVE-2010-4083
- EPSS 0.09%
- Veröffentlicht 30.11.2010 22:14:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
The copy_semid_to_user function in ipc/sem.c in the Linux kernel before 2.6.36 does not initialize a certain structure, which allows local users to obtain potentially sensitive information from kernel stack memory via a (1) IPC_INFO, (2) SEM_INFO, (3...
CVE-2010-4078
- EPSS 0.07%
- Veröffentlicht 29.11.2010 16:00:03
- Zuletzt bearbeitet 11.04.2025 00:51:21
The sisfb_ioctl function in drivers/video/sis/sis_main.c in the Linux kernel before 2.6.36-rc6 does not properly initialize a certain structure member, which allows local users to obtain potentially sensitive information from kernel stack memory via ...
CVE-2010-4072
- EPSS 0.1%
- Veröffentlicht 29.11.2010 16:00:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
The copy_shmid_to_user function in ipc/shm.c in the Linux kernel before 2.6.37-rc1 does not initialize a certain structure, which allows local users to obtain potentially sensitive information from kernel stack memory via vectors related to the shmct...
CVE-2010-4073
- EPSS 0.24%
- Veröffentlicht 29.11.2010 16:00:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
The ipc subsystem in the Linux kernel before 2.6.37-rc1 does not initialize certain structures, which allows local users to obtain potentially sensitive information from kernel stack memory via vectors related to the (1) compat_sys_semctl, (2) compat...