CVE-2010-3875
- EPSS 0.07%
- Veröffentlicht 03.01.2011 20:00:42
- Zuletzt bearbeitet 29.04.2026 01:13:23
The ax25_getname function in net/ax25/af_ax25.c in the Linux kernel before 2.6.37-rc2 does not initialize a certain structure, which allows local users to obtain potentially sensitive information from kernel stack memory by reading a copy of this str...
CVE-2010-3876
- EPSS 0.06%
- Veröffentlicht 03.01.2011 20:00:42
- Zuletzt bearbeitet 29.04.2026 01:13:23
net/packet/af_packet.c in the Linux kernel before 2.6.37-rc2 does not properly initialize certain structure members, which allows local users to obtain potentially sensitive information from kernel stack memory by leveraging the CAP_NET_RAW capabilit...
CVE-2010-3877
- EPSS 0.11%
- Veröffentlicht 03.01.2011 20:00:42
- Zuletzt bearbeitet 29.04.2026 01:13:23
The get_name function in net/tipc/socket.c in the Linux kernel before 2.6.37-rc2 does not initialize a certain structure, which allows local users to obtain potentially sensitive information from kernel stack memory by reading a copy of this structur...
CVE-2010-4164
- EPSS 2%
- Veröffentlicht 03.01.2011 20:00:42
- Zuletzt bearbeitet 29.04.2026 01:13:23
Multiple integer underflows in the x25_parse_facilities function in net/x25/x25_facilities.c in the Linux kernel before 2.6.36.2 allow remote attackers to cause a denial of service (system crash) via malformed X.25 (1) X25_FAC_CLASS_A, (2) X25_FAC_CL...
- EPSS 3.37%
- Veröffentlicht 03.01.2011 20:00:41
- Zuletzt bearbeitet 29.04.2026 01:13:23
The X.25 implementation in the Linux kernel before 2.6.36.2 does not properly parse facilities, which allows remote attackers to cause a denial of service (heap memory corruption and panic) or possibly have unspecified other impact via malformed (1) ...
CVE-2010-3848
- EPSS 0.15%
- Veröffentlicht 30.12.2010 19:00:03
- Zuletzt bearbeitet 29.04.2026 01:13:23
Stack-based buffer overflow in the econet_sendmsg function in net/econet/af_econet.c in the Linux kernel before 2.6.36.2, when an econet address is configured, allows local users to gain privileges by providing a large number of iovec structures.
CVE-2010-3849
- EPSS 0.18%
- Veröffentlicht 30.12.2010 19:00:03
- Zuletzt bearbeitet 29.04.2026 01:13:23
The econet_sendmsg function in net/econet/af_econet.c in the Linux kernel before 2.6.36.2, when an econet address is configured, allows local users to cause a denial of service (NULL pointer dereference and OOPS) via a sendmsg call that specifies a N...
CVE-2010-3850
- EPSS 0.09%
- Veröffentlicht 30.12.2010 19:00:03
- Zuletzt bearbeitet 29.04.2026 01:13:23
The ec_dev_ioctl function in net/econet/af_econet.c in the Linux kernel before 2.6.36.2 does not require the CAP_NET_ADMIN capability, which allows local users to bypass intended access restrictions and configure econet addresses via an SIOCSIFADDR i...
CVE-2010-3859
- EPSS 0.15%
- Veröffentlicht 29.12.2010 18:00:02
- Zuletzt bearbeitet 29.04.2026 01:13:23
Multiple integer signedness errors in the TIPC implementation in the Linux kernel before 2.6.36.2 allow local users to gain privileges via a crafted sendmsg call that triggers a heap-based buffer overflow, related to the tipc_msg_build function in ne...
- EPSS 0.1%
- Veröffentlicht 29.12.2010 18:00:02
- Zuletzt bearbeitet 29.04.2026 01:13:23
Heap-based buffer overflow in the bcm_connect function in net/can/bcm.c (aka the Broadcast Manager) in the Controller Area Network (CAN) implementation in the Linux kernel before 2.6.36.2 on 64-bit platforms might allow local users to cause a denial ...