CVE-2010-3437
- EPSS 2.07%
- Veröffentlicht 04.10.2010 21:00:04
- Zuletzt bearbeitet 11.04.2025 00:51:21
Integer signedness error in the pkt_find_dev_from_minor function in drivers/block/pktcdvd.c in the Linux kernel before 2.6.36-rc6 allows local users to obtain sensitive information from kernel memory or cause a denial of service (invalid pointer dere...
CVE-2010-3442
- EPSS 0.18%
- Veröffentlicht 04.10.2010 21:00:04
- Zuletzt bearbeitet 11.04.2025 00:51:21
Multiple integer overflows in the snd_ctl_new function in sound/core/control.c in the Linux kernel before 2.6.36-rc5-next-20100929 allow local users to cause a denial of service (heap memory corruption) or possibly have unspecified other impact via a...
CVE-2010-3296
- EPSS 0.1%
- Veröffentlicht 30.09.2010 15:00:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
The cxgb_extension_ioctl function in drivers/net/cxgb3/cxgb3_main.c in the Linux kernel before 2.6.36-rc5 does not properly initialize a certain structure member, which allows local users to obtain potentially sensitive information from kernel stack ...
CVE-2010-3297
- EPSS 0.1%
- Veröffentlicht 30.09.2010 15:00:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
The eql_g_master_cfg function in drivers/net/eql.c in the Linux kernel before 2.6.36-rc5 does not properly initialize a certain structure member, which allows local users to obtain potentially sensitive information from kernel stack memory via an EQL...
CVE-2010-3298
- EPSS 0.07%
- Veröffentlicht 30.09.2010 15:00:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
The hso_get_count function in drivers/net/usb/hso.c in the Linux kernel before 2.6.36-rc5 does not properly initialize a certain structure member, which allows local users to obtain potentially sensitive information from kernel stack memory via a TIO...
CVE-2010-3310
- EPSS 0.13%
- Veröffentlicht 29.09.2010 17:00:04
- Zuletzt bearbeitet 11.04.2025 00:51:21
Multiple integer signedness errors in net/rose/af_rose.c in the Linux kernel before 2.6.36-rc5-next-20100923 allow local users to cause a denial of service (heap memory corruption) or possibly have unspecified other impact via a rose_getname function...
CVE-2010-3477
- EPSS 0.08%
- Veröffentlicht 21.09.2010 20:00:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
The tcf_act_police_dump function in net/sched/act_police.c in the actions implementation in the network queueing functionality in the Linux kernel before 2.6.36-rc4 does not properly initialize certain structure members, which allows local users to o...
CVE-2010-3067
- EPSS 0.15%
- Veröffentlicht 21.09.2010 18:00:05
- Zuletzt bearbeitet 11.04.2025 00:51:21
Integer overflow in the do_io_submit function in fs/aio.c in the Linux kernel before 2.6.36-rc4-next-20100915 allows local users to cause a denial of service or possibly have unspecified other impact via crafted use of the io_submit system call.
CVE-2010-2959
- EPSS 0.35%
- Veröffentlicht 08.09.2010 20:00:03
- Zuletzt bearbeitet 11.04.2025 00:51:21
Integer overflow in net/can/bcm.c in the Controller Area Network (CAN) implementation in the Linux kernel before 2.6.27.53, 2.6.32.x before 2.6.32.21, 2.6.34.x before 2.6.34.6, and 2.6.35.x before 2.6.35.4 allows attackers to execute arbitrary code o...
CVE-2009-4895
- EPSS 0.06%
- Veröffentlicht 08.09.2010 20:00:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
Race condition in the tty_fasync function in drivers/char/tty_io.c in the Linux kernel before 2.6.32.6 allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact via unknown v...