CVE-2013-1979
- EPSS 0.05%
- Veröffentlicht 03.05.2013 11:57:45
- Zuletzt bearbeitet 29.04.2026 01:13:23
The scm_set_cred function in include/net/scm.h in the Linux kernel before 3.8.11 uses incorrect uid and gid values during credentials passing, which allows local users to gain privileges via a crafted application.
CVE-2013-2015
- EPSS 0.13%
- Veröffentlicht 29.04.2013 14:55:04
- Zuletzt bearbeitet 29.04.2026 01:13:23
The ext4_orphan_del function in fs/ext4/namei.c in the Linux kernel before 3.7.3 does not properly handle orphan-list entries for non-journal filesystems, which allows physically proximate attackers to cause a denial of service (system hang) via a cr...
CVE-2013-3301
- EPSS 0.51%
- Veröffentlicht 29.04.2013 14:55:04
- Zuletzt bearbeitet 29.04.2026 01:13:23
The ftrace implementation in the Linux kernel before 3.8.8 allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact by leveraging the CAP_SYS_ADMIN capability for write acce...
CVE-2013-3222
- EPSS 0.11%
- Veröffentlicht 22.04.2013 11:41:01
- Zuletzt bearbeitet 29.04.2026 01:13:23
The vcc_recvmsg function in net/atm/common.c in the Linux kernel before 3.9-rc7 does not initialize a certain length variable, which allows local users to obtain sensitive information from kernel stack memory via a crafted recvmsg or recvfrom system ...
CVE-2013-3223
- EPSS 0.07%
- Veröffentlicht 22.04.2013 11:41:01
- Zuletzt bearbeitet 29.04.2026 01:13:23
The ax25_recvmsg function in net/ax25/af_ax25.c in the Linux kernel before 3.9-rc7 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel stack memory via a crafted recvmsg or recvfrom syste...
CVE-2013-3224
- EPSS 0.11%
- Veröffentlicht 22.04.2013 11:41:01
- Zuletzt bearbeitet 29.04.2026 01:13:23
The bt_sock_recvmsg function in net/bluetooth/af_bluetooth.c in the Linux kernel before 3.9-rc7 does not properly initialize a certain length variable, which allows local users to obtain sensitive information from kernel stack memory via a crafted re...
CVE-2013-3225
- EPSS 0.1%
- Veröffentlicht 22.04.2013 11:41:01
- Zuletzt bearbeitet 29.04.2026 01:13:23
The rfcomm_sock_recvmsg function in net/bluetooth/rfcomm/sock.c in the Linux kernel before 3.9-rc7 does not initialize a certain length variable, which allows local users to obtain sensitive information from kernel stack memory via a crafted recvmsg ...
CVE-2013-3227
- EPSS 0.07%
- Veröffentlicht 22.04.2013 11:41:01
- Zuletzt bearbeitet 29.04.2026 01:13:23
The caif_seqpkt_recvmsg function in net/caif/caif_socket.c in the Linux kernel before 3.9-rc7 does not initialize a certain length variable, which allows local users to obtain sensitive information from kernel stack memory via a crafted recvmsg or re...
CVE-2013-3228
- EPSS 0.07%
- Veröffentlicht 22.04.2013 11:41:01
- Zuletzt bearbeitet 29.04.2026 01:13:23
The irda_recvmsg_dgram function in net/irda/af_irda.c in the Linux kernel before 3.9-rc7 does not initialize a certain length variable, which allows local users to obtain sensitive information from kernel stack memory via a crafted recvmsg or recvfro...
CVE-2013-3229
- EPSS 0.07%
- Veröffentlicht 22.04.2013 11:41:01
- Zuletzt bearbeitet 29.04.2026 01:13:23
The iucv_sock_recvmsg function in net/iucv/af_iucv.c in the Linux kernel before 3.9-rc7 does not initialize a certain length variable, which allows local users to obtain sensitive information from kernel stack memory via a crafted recvmsg or recvfrom...