CVE-2014-1738
- EPSS 0.02%
- Veröffentlicht 11.05.2014 21:55:05
- Zuletzt bearbeitet 06.05.2026 22:30:45
The raw_cmd_copyout function in drivers/block/floppy.c in the Linux kernel through 3.14.3 does not properly restrict access to certain pointers during processing of an FDRAWCMD ioctl call, which allows local users to obtain sensitive information from...
CVE-2014-0196
- EPSS 39.36%
- Veröffentlicht 07.05.2014 10:55:04
- Zuletzt bearbeitet 21.04.2026 20:07:27
The n_tty_write function in drivers/tty/n_tty.c in the Linux kernel through 3.14.3 does not properly manage tty driver access in the "LECHO & !OPOST" case, which allows local users to cause a denial of service (memory corruption and system crash) or ...
- EPSS 65.04%
- Veröffentlicht 15.04.2014 10:55:11
- Zuletzt bearbeitet 06.05.2026 22:30:45
The mod_headers module in the Apache HTTP Server 2.2.22 allows remote attackers to bypass "RequestHeader unset" directives by placing a header in the trailer portion of data sent with chunked transfer coding. NOTE: the vendor states "this is not a s...
CVE-2014-2706
- EPSS 3.06%
- Veröffentlicht 14.04.2014 23:55:07
- Zuletzt bearbeitet 06.05.2026 22:30:45
Race condition in the mac80211 subsystem in the Linux kernel before 3.13.7 allows remote attackers to cause a denial of service (system crash) via network traffic that improperly interacts with the WLAN_STA_PS_STA state (aka power-save mode), related...
CVE-2014-2678
- EPSS 0.09%
- Veröffentlicht 01.04.2014 06:35:53
- Zuletzt bearbeitet 06.05.2026 22:30:45
The rds_iw_laddr_check function in net/rds/iw.c in the Linux kernel through 3.14 allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact via a bind system call for an RDS s...
- EPSS 92.14%
- Veröffentlicht 02.01.2014 14:59:03
- Zuletzt bearbeitet 29.04.2026 01:13:23
The monlist feature in ntp_request.c in ntpd in NTP before 4.2.7p26 allows remote attackers to cause a denial of service (traffic amplification) via forged (1) REQ_MON_GETLIST or (2) REQ_MON_GETLIST_1 requests, as exploited in the wild in December 20...
CVE-2011-2306
- EPSS 0.15%
- Veröffentlicht 18.10.2011 22:55:01
- Zuletzt bearbeitet 29.04.2026 01:13:23
Unspecified vulnerability in Oracle Linux 4 and 5 allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to "Oracle validated."
CVE-2007-6283
- EPSS 0.13%
- Veröffentlicht 18.12.2007 01:46:00
- Zuletzt bearbeitet 23.04.2026 00:35:47
Red Hat Enterprise Linux 5 and Fedora install the Bind /etc/rndc.key file with world-readable permissions, which allows local users to perform unauthorized named commands, such as causing a denial of service by stopping named.