CVE-2012-6638
- EPSS 1.1%
- Veröffentlicht 15.02.2014 14:57:07
- Zuletzt bearbeitet 29.04.2026 01:13:23
The tcp_rcv_state_process function in net/ipv4/tcp_input.c in the Linux kernel before 3.2.24 allows remote attackers to cause a denial of service (kernel resource consumption) via a flood of SYN+FIN TCP packets, a different vulnerability than CVE-201...
CVE-2014-0038
- EPSS 51.52%
- Veröffentlicht 06.02.2014 22:55:03
- Zuletzt bearbeitet 29.04.2026 01:13:23
The compat_sys_recvmmsg function in net/compat.c in the Linux kernel before 3.13.2, when CONFIG_X86_X32 is enabled, allows local users to gain privileges via a recvmmsg system call with a crafted timeout pointer parameter.
CVE-2014-1438
- EPSS 0.04%
- Veröffentlicht 18.01.2014 22:55:03
- Zuletzt bearbeitet 29.04.2026 01:13:23
The restore_fpu_checking function in arch/x86/include/asm/fpu-internal.h in the Linux kernel before 3.12.8 on the AMD K7 and K8 platforms does not clear pending exceptions before proceeding to an EMMS instruction, which allows local users to cause a ...
CVE-2014-1444
- EPSS 0.07%
- Veröffentlicht 18.01.2014 22:55:03
- Zuletzt bearbeitet 29.04.2026 01:13:23
The fst_get_iface function in drivers/net/wan/farsync.c in the Linux kernel before 3.11.7 does not properly initialize a certain data structure, which allows local users to obtain sensitive information from kernel memory by leveraging the CAP_NET_ADM...
CVE-2014-1445
- EPSS 0.04%
- Veröffentlicht 18.01.2014 22:55:03
- Zuletzt bearbeitet 29.04.2026 01:13:23
The wanxl_ioctl function in drivers/net/wan/wanxl.c in the Linux kernel before 3.11.7 does not properly initialize a certain data structure, which allows local users to obtain sensitive information from kernel memory via an ioctl call.
CVE-2014-1446
- EPSS 0.15%
- Veröffentlicht 18.01.2014 22:55:03
- Zuletzt bearbeitet 29.04.2026 01:13:23
The yam_ioctl function in drivers/net/hamradio/yam.c in the Linux kernel before 3.12.8 does not initialize a certain structure member, which allows local users to obtain sensitive information from kernel memory by leveraging the CAP_NET_ADMIN capabil...
CVE-2013-7281
- EPSS 0.03%
- Veröffentlicht 08.01.2014 16:55:07
- Zuletzt bearbeitet 29.04.2026 01:13:23
The dgram_recvmsg function in net/ieee802154/dgram.c in the Linux kernel before 3.12.4 updates a certain length value without ensuring that an associated data structure has been initialized, which allows local users to obtain sensitive information fr...
CVE-2013-7263
- EPSS 0.05%
- Veröffentlicht 06.01.2014 16:55:09
- Zuletzt bearbeitet 29.04.2026 01:13:23
The Linux kernel before 3.12.4 updates certain length values before ensuring that associated data structures have been initialized, which allows local users to obtain sensitive information from kernel stack memory via a (1) recvfrom, (2) recvmmsg, or...
CVE-2013-7264
- EPSS 0.04%
- Veröffentlicht 06.01.2014 16:55:09
- Zuletzt bearbeitet 29.04.2026 01:13:23
The l2tp_ip_recvmsg function in net/l2tp/l2tp_ip.c in the Linux kernel before 3.12.4 updates a certain length value before ensuring that an associated data structure has been initialized, which allows local users to obtain sensitive information from ...
CVE-2013-7265
- EPSS 0.04%
- Veröffentlicht 06.01.2014 16:55:09
- Zuletzt bearbeitet 29.04.2026 01:13:23
The pn_recvmsg function in net/phonet/datagram.c in the Linux kernel before 3.12.4 updates a certain length value before ensuring that an associated data structure has been initialized, which allows local users to obtain sensitive information from ke...