CVE-2012-3400
- EPSS 4.78%
- Veröffentlicht 03.10.2012 11:02:56
- Zuletzt bearbeitet 29.04.2026 01:13:23
Heap-based buffer overflow in the udf_load_logicalvol function in fs/udf/super.c in the Linux kernel before 3.4.5 allows remote attackers to cause a denial of service (system crash) or possibly have unspecified other impact via a crafted UDF filesyst...
CVE-2012-3412
- EPSS 7%
- Veröffentlicht 03.10.2012 11:02:56
- Zuletzt bearbeitet 29.04.2026 01:13:23
The sfc (aka Solarflare Solarstorm) driver in the Linux kernel before 3.2.30 allows remote attackers to cause a denial of service (DMA descriptor consumption and network-controller outage) via crafted TCP packets that trigger a small MSS value.
CVE-2012-3430
- EPSS 0.18%
- Veröffentlicht 03.10.2012 11:02:56
- Zuletzt bearbeitet 29.04.2026 01:13:23
The rds_recvmsg function in net/rds/recv.c in the Linux kernel before 3.0.44 does not initialize a certain structure member, which allows local users to obtain potentially sensitive information from kernel stack memory via a (1) recvfrom or (2) recvm...
CVE-2012-3510
- EPSS 0.12%
- Veröffentlicht 03.10.2012 11:02:56
- Zuletzt bearbeitet 29.04.2026 01:13:23
Use-after-free vulnerability in the xacct_add_tsk function in kernel/tsacct.c in the Linux kernel before 2.6.19 allows local users to obtain potentially sensitive information from kernel memory or cause a denial of service (system crash) via a taskst...
CVE-2012-2745
- EPSS 0.13%
- Veröffentlicht 09.08.2012 10:29:47
- Zuletzt bearbeitet 29.04.2026 01:13:23
The copy_creds function in kernel/cred.c in the Linux kernel before 3.3.2 provides an invalid replacement session keyring to a child process, which allows local users to cause a denial of service (panic) via a crafted application that uses the fork s...
CVE-2012-2136
- EPSS 0.08%
- Veröffentlicht 09.08.2012 10:29:46
- Zuletzt bearbeitet 29.04.2026 01:13:23
The sock_alloc_send_pskb function in net/core/sock.c in the Linux kernel before 3.4.5 does not properly validate a certain length value, which allows local users to cause a denial of service (heap-based buffer overflow and system crash) or possibly g...
CVE-2012-2744
- EPSS 0.62%
- Veröffentlicht 09.08.2012 10:29:46
- Zuletzt bearbeitet 29.04.2026 01:13:23
net/ipv6/netfilter/nf_conntrack_reasm.c in the Linux kernel before 2.6.34, when the nf_conntrack_ipv6 module is enabled, allows remote attackers to cause a denial of service (NULL pointer dereference and system crash) via certain types of fragmented ...
CVE-2012-2390
- EPSS 0.04%
- Veröffentlicht 13.06.2012 10:24:56
- Zuletzt bearbeitet 29.04.2026 01:13:23
Memory leak in mm/hugetlb.c in the Linux kernel before 3.4.2 allows local users to cause a denial of service (memory consumption or system crash) via invalid MAP_HUGETLB mmap operations.
CVE-2012-2313
- EPSS 0.17%
- Veröffentlicht 13.06.2012 10:24:55
- Zuletzt bearbeitet 29.04.2026 01:13:23
The rio_ioctl function in drivers/net/ethernet/dlink/dl2k.c in the Linux kernel before 3.3.7 does not restrict access to the SIOCSMIIREG command, which allows local users to write data to an Ethernet adapter via an ioctl call.
CVE-2012-2375
- EPSS 0.46%
- Veröffentlicht 13.06.2012 10:24:55
- Zuletzt bearbeitet 29.04.2026 01:13:23
The __nfs4_get_acl_uncached function in fs/nfs/nfs4proc.c in the NFSv4 implementation in the Linux kernel before 3.3.2 uses an incorrect length variable during a copy operation, which allows remote NFS servers to cause a denial of service (OOPS) by s...