Suse

Linux Enterprise Server

472 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.12%
  • Veröffentlicht 26.11.2010 19:00:06
  • Zuletzt bearbeitet 11.04.2025 00:51:21

drivers/gpu/drm/i915/i915_gem.c in the Graphics Execution Manager (GEM) in the Intel i915 driver in the Direct Rendering Manager (DRM) subsystem in the Linux kernel before 2.6.36 does not properly validate pointers to blocks of memory, which allows l...

Exploit
  • EPSS 0.05%
  • Veröffentlicht 26.11.2010 19:00:06
  • Zuletzt bearbeitet 11.04.2025 00:51:21

drivers/media/video/v4l2-compat-ioctl32.c in the Video4Linux (V4L) implementation in the Linux kernel before 2.6.36 on 64-bit platforms does not validate the destination of a memory copy operation, which allows local users to write to arbitrary kerne...

Exploit
  • EPSS 0.27%
  • Veröffentlicht 22.11.2010 13:00:19
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The do_tcp_setsockopt function in net/ipv4/tcp.c in the Linux kernel before 2.6.37-rc2 does not properly restrict TCP_MAXSEG (aka MSS) values, which allows local users to cause a denial of service (OOPS) via a setsockopt call that specifies a small v...

  • EPSS 0.05%
  • Veröffentlicht 22.11.2010 13:00:19
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Use-after-free vulnerability in mm/mprotect.c in the Linux kernel before 2.6.37-rc2 allows local users to cause a denial of service via vectors involving an mprotect system call.

  • EPSS 3.86%
  • Veröffentlicht 05.11.2010 18:00:05
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The Gfx::getPos function in the PDF parser in xpdf before 3.02pl5, poppler 0.8.7 and possibly other versions up to 0.15.1, CUPS, kdegraphics, and possibly other products allows context-dependent attackers to cause a denial of service (crash) via unkn...

  • EPSS 27.69%
  • Veröffentlicht 05.11.2010 17:00:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

ipp.c in cupsd in CUPS 1.4.4 and earlier does not properly allocate memory for attribute values with invalid string data types, which allows remote attackers to cause a denial of service (use-after-free and application crash) or possibly execute arbi...

Exploit
  • EPSS 1.83%
  • Veröffentlicht 04.10.2010 21:00:04
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Integer signedness error in the pkt_find_dev_from_minor function in drivers/block/pktcdvd.c in the Linux kernel before 2.6.36-rc6 allows local users to obtain sensitive information from kernel memory or cause a denial of service (invalid pointer dere...

  • EPSS 0.17%
  • Veröffentlicht 04.10.2010 21:00:04
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Multiple integer overflows in the snd_ctl_new function in sound/core/control.c in the Linux kernel before 2.6.36-rc5-next-20100929 allow local users to cause a denial of service (heap memory corruption) or possibly have unspecified other impact via a...

  • EPSS 0.12%
  • Veröffentlicht 30.09.2010 15:00:02
  • Zuletzt bearbeitet 11.04.2025 00:51:21

kernel/trace/ftrace.c in the Linux kernel before 2.6.35.5, when debugfs is enabled, does not properly handle interaction between mutex possession and llseek operations, which allows local users to cause a denial of service (NULL pointer dereference a...

  • EPSS 0.1%
  • Veröffentlicht 30.09.2010 15:00:02
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The cxgb_extension_ioctl function in drivers/net/cxgb3/cxgb3_main.c in the Linux kernel before 2.6.36-rc5 does not properly initialize a certain structure member, which allows local users to obtain potentially sensitive information from kernel stack ...