CVE-2013-4514
- EPSS 0.03%
- Veröffentlicht 12.11.2013 14:35:12
- Zuletzt bearbeitet 29.04.2026 01:13:23
Multiple buffer overflows in drivers/staging/wlags49_h2/wl_priv.c in the Linux kernel before 3.12 allow local users to cause a denial of service or possibly have unspecified other impact by leveraging the CAP_NET_ADMIN capability and providing a long...
CVE-2013-4515
- EPSS 0.03%
- Veröffentlicht 12.11.2013 14:35:12
- Zuletzt bearbeitet 29.04.2026 01:13:23
The bcm_char_ioctl function in drivers/staging/bcm/Bcmchar.c in the Linux kernel before 3.12 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel memory via an IOCTL_BCM_GET_DEVICE_DRIVER_...
CVE-2013-4516
- EPSS 0.03%
- Veröffentlicht 12.11.2013 14:35:12
- Zuletzt bearbeitet 29.04.2026 01:13:23
The mp_get_count function in drivers/staging/sb105x/sb_pci_mp.c in the Linux kernel before 3.12 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel stack memory via a TIOCGICOUNT ioctl ca...
CVE-2013-6763
- EPSS 0.05%
- Veröffentlicht 12.11.2013 14:35:12
- Zuletzt bearbeitet 29.04.2026 01:13:23
The uio_mmap_physical function in drivers/uio/uio.c in the Linux kernel before 3.12 does not validate the size of a memory block, which allows local users to cause a denial of service (memory corruption) or possibly gain privileges via crafted mmap o...
CVE-2013-2058
- EPSS 0.04%
- Veröffentlicht 04.11.2013 15:55:05
- Zuletzt bearbeitet 29.04.2026 01:13:23
The host_start function in drivers/usb/chipidea/host.c in the Linux kernel before 3.7.4 does not properly support a certain non-streaming option, which allows local users to cause a denial of service (system crash) by sending a large amount of networ...
CVE-2013-4348
- EPSS 4.97%
- Veröffentlicht 04.11.2013 15:55:05
- Zuletzt bearbeitet 29.04.2026 01:13:23
The skb_flow_dissect function in net/core/flow_dissector.c in the Linux kernel through 3.12 allows remote attackers to cause a denial of service (infinite loop) via a small value in the IHL field of a packet with IPIP encapsulation.
CVE-2013-4470
- EPSS 0.12%
- Veröffentlicht 04.11.2013 15:55:05
- Zuletzt bearbeitet 29.04.2026 01:13:23
The Linux kernel before 3.12, when UDP Fragmentation Offload (UFO) is enabled, does not properly initialize certain data structures, which allows local users to cause a denial of service (memory corruption and system crash) or possibly gain privilege...
CVE-2013-4483
- EPSS 0.09%
- Veröffentlicht 04.11.2013 15:55:05
- Zuletzt bearbeitet 29.04.2026 01:13:23
The ipc_rcu_putref function in ipc/util.c in the Linux kernel before 3.10 does not properly manage a reference count, which allows local users to cause a denial of service (memory consumption or system crash) via a crafted application.
- EPSS 0.8%
- Veröffentlicht 24.10.2013 10:53:09
- Zuletzt bearbeitet 29.04.2026 01:13:23
Interpretation conflict in drivers/md/dm-snap-persistent.c in the Linux kernel through 3.11.6 allows remote authenticated users to obtain sensitive information or modify data via a crafted mapping to a snapshot block device.
CVE-2013-4345
- EPSS 0.29%
- Veröffentlicht 10.10.2013 10:55:06
- Zuletzt bearbeitet 29.04.2026 01:13:23
Off-by-one error in the get_prng_bytes function in crypto/ansi_cprng.c in the Linux kernel through 3.11.4 makes it easier for context-dependent attackers to defeat cryptographic protection mechanisms via multiple requests for small amounts of data, l...