CVE-2012-0056
- EPSS 10.82%
- Veröffentlicht 27.01.2012 15:55:04
- Zuletzt bearbeitet 16.06.2026 23:36:35
The mem_write function in the Linux kernel before 3.2.2, when ASLR is disabled, does not properly check permissions when writing to /proc/<pid>/mem, which allows local users to gain privileges by modifying process memory, as demonstrated by Mempodipp...
CVE-2011-1162
- EPSS 0.36%
- Veröffentlicht 27.01.2012 15:55:01
- Zuletzt bearbeitet 16.06.2026 23:28:50
The tpm_read function in the Linux kernel 2.6 does not properly clear memory, which might allow local users to read the results of the previous TPM command.
CVE-2011-2203
- EPSS 0.45%
- Veröffentlicht 27.01.2012 15:55:01
- Zuletzt bearbeitet 16.06.2026 23:30:55
The hfs_find_init function in the Linux kernel 2.6 allows local users to cause a denial of service (NULL pointer dereference and Oops) by mounting an HFS file system with a malformed MDB extent record.
CVE-2011-2184
- EPSS 0.38%
- Veröffentlicht 06.09.2011 16:55:07
- Zuletzt bearbeitet 16.06.2026 23:30:52
The key_replace_session_keyring function in security/keys/process_keys.c in the Linux kernel before 2.6.39.1 does not initialize a certain structure member, which allows local users to cause a denial of service (NULL pointer dereference and OOPS) or ...
CVE-2011-2700
- EPSS 0.51%
- Veröffentlicht 06.09.2011 15:55:07
- Zuletzt bearbeitet 16.06.2026 23:31:49
Multiple buffer overflows in the si4713_write_econtrol_string function in drivers/media/radio/si4713-i2c.c in the Linux kernel before 2.6.39.4 on the N900 platform might allow local users to cause a denial of service or have unspecified other impact ...
CVE-2011-2213
- EPSS 0.41%
- Veröffentlicht 29.08.2011 18:55:01
- Zuletzt bearbeitet 16.06.2026 23:30:56
The inet_diag_bc_audit function in net/ipv4/inet_diag.c in the Linux kernel before 2.6.39.3 does not properly audit INET_DIAG bytecode, which allows local users to cause a denial of service (kernel infinite loop) via crafted INET_DIAG_REQ_BYTECODE in...
CVE-2011-2497
- EPSS 1.97%
- Veröffentlicht 29.08.2011 18:55:01
- Zuletzt bearbeitet 16.06.2026 23:31:27
Integer underflow in the l2cap_config_req function in net/bluetooth/l2cap_core.c in the Linux kernel before 3.0 allows remote attackers to cause a denial of service (heap memory corruption) or possibly have unspecified other impact via a small comman...
CVE-2011-2689
- EPSS 0.41%
- Veröffentlicht 28.07.2011 22:55:02
- Zuletzt bearbeitet 16.06.2026 23:31:48
The gfs2_fallocate function in fs/gfs2/file.c in the Linux kernel before 3.0-rc1 does not ensure that the size of a chunk allocation is a multiple of the block size, which allows local users to cause a denial of service (BUG and system crash) by arra...
CVE-2011-2695
- EPSS 0.45%
- Veröffentlicht 28.07.2011 22:55:02
- Zuletzt bearbeitet 16.06.2026 23:31:48
Multiple off-by-one errors in the ext4 subsystem in the Linux kernel before 3.0-rc5 allow local users to cause a denial of service (BUG_ON and system crash) by accessing a sparse file in extent format with a write operation involving a block number c...
CVE-2011-2492
- EPSS 0.35%
- Veröffentlicht 28.07.2011 22:55:01
- Zuletzt bearbeitet 16.06.2026 23:31:26
The bluetooth subsystem in the Linux kernel before 3.0-rc4 does not properly initialize certain data structures, which allows local users to obtain potentially sensitive information from kernel memory via a crafted getsockopt system call, related to ...