CVE-2012-2372
- EPSS 0.12%
- Veröffentlicht 22.01.2013 23:55:02
- Zuletzt bearbeitet 29.04.2026 01:13:23
The rds_ib_xmit function in net/rds/ib_send.c in the Reliable Datagram Sockets (RDS) protocol implementation in the Linux kernel 3.7.4 and earlier allows local users to cause a denial of service (BUG_ON and kernel panic) by establishing an RDS connec...
- EPSS 1.57%
- Veröffentlicht 22.01.2013 23:55:02
- Zuletzt bearbeitet 29.04.2026 01:13:23
Multiple stack-based buffer overflows in the Near Field Communication Controller Interface (NCI) in the Linux kernel before 3.4.5 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via incoming frames with...
CVE-2012-4461
- EPSS 0.08%
- Veröffentlicht 22.01.2013 23:55:02
- Zuletzt bearbeitet 29.04.2026 01:13:23
The KVM subsystem in the Linux kernel before 3.6.9, when running on hosts that use qemu userspace without XSAVE, allows local users to cause a denial of service (kernel OOPS) by using the KVM_SET_SREGS ioctl to set the X86_CR4_OSXSAVE bit in the gues...
CVE-2012-2119
- EPSS 0.34%
- Veröffentlicht 22.01.2013 23:55:01
- Zuletzt bearbeitet 29.04.2026 01:13:23
Buffer overflow in the macvtap device driver in the Linux kernel before 3.4.5, when running in certain configurations, allows privileged KVM guest users to cause a denial of service (crash) via a long descriptor with a long vector length.
CVE-2012-2669
- EPSS 0.08%
- Veröffentlicht 27.12.2012 11:47:00
- Zuletzt bearbeitet 29.04.2026 01:13:23
The main function in tools/hv/hv_kvp_daemon.c in hypervkvpd, as distributed in the Linux kernel before 3.4.5, does not validate the origin of Netlink messages, which allows local users to spoof Netlink communication via a crafted connector message.
- EPSS 1.26%
- Veröffentlicht 21.12.2012 11:47:36
- Zuletzt bearbeitet 29.04.2026 01:13:23
The ip6_frag_queue function in net/ipv6/reassembly.c in the Linux kernel before 2.6.36 allows remote attackers to bypass intended network restrictions via overlapping IPv6 fragments.
CVE-2012-4508
- EPSS 0.08%
- Veröffentlicht 21.12.2012 11:47:36
- Zuletzt bearbeitet 29.04.2026 01:13:23
Race condition in fs/ext4/extents.c in the Linux kernel before 3.4.16 allows local users to obtain sensitive information from a deleted file by reading an extent that was not properly marked as uninitialized.
CVE-2012-4565
- EPSS 0.06%
- Veröffentlicht 21.12.2012 11:47:36
- Zuletzt bearbeitet 29.04.2026 01:13:23
The tcp_illinois_info function in net/ipv4/tcp_illinois.c in the Linux kernel before 3.4.19, when the net.ipv4.tcp_congestion_control illinois setting is enabled, allows local users to cause a denial of service (divide-by-zero error and OOPS) by read...
- EPSS 0.06%
- Veröffentlicht 21.12.2012 11:47:36
- Zuletzt bearbeitet 29.04.2026 01:13:23
The online_pages function in mm/memory_hotplug.c in the Linux kernel before 3.6 allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact in opportunistic circumstances by us...
CVE-2012-0957
- EPSS 0.5%
- Veröffentlicht 21.12.2012 11:47:35
- Zuletzt bearbeitet 29.04.2026 01:13:23
The override_release function in kernel/sys.c in the Linux kernel before 3.4.16 allows local users to obtain sensitive information from kernel stack memory via a uname system call in conjunction with a UNAME26 personality.