Canonical

Ubuntu Linux

4106 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 81.4%
  • Veröffentlicht 08.04.2011 15:17:27
  • Zuletzt bearbeitet 11.04.2025 00:51:21

dhclient in ISC DHCP 3.0.x through 4.2.x before 4.2.1-P1, 3.1-ESV before 3.1-ESV-R1, and 4.1-ESV before 4.1-ESV-R2 allows remote attackers to execute arbitrary commands via shell metacharacters in a hostname obtained from a DHCP message, as demonstra...

  • EPSS 3.07%
  • Veröffentlicht 25.03.2011 19:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The default configuration of the shell_escape_commands directive in conf/texmf.d/95NonPath.cnf in the tex-common package before 2.08.1 in Debian GNU/Linux squeeze, Ubuntu 10.10 and 10.04 LTS, and possibly other operating systems lists certain program...

Exploit
  • EPSS 0.44%
  • Veröffentlicht 15.03.2011 17:55:04
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Race condition in the cm_work_handler function in the InfiniBand driver (drivers/infiniband/core/cma.c) in Linux kernel 2.6.x allows remote attackers to cause a denial of service (panic) by sending an InfiniBand request while other request handlers a...

Exploit
  • EPSS 45.28%
  • Veröffentlicht 02.03.2011 20:00:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The vsf_filename_passes_filter function in ls.c in vsftpd before 2.3.3 allows remote authenticated users to cause a denial of service (CPU consumption and process slot exhaustion) via crafted glob expressions in STAT commands in multiple FTP sessions...

  • EPSS 0.03%
  • Veröffentlicht 01.03.2011 23:00:03
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The ldm_parse_vmdb function in fs/partitions/ldm.c in the Linux kernel before 2.6.38-rc6-git6 does not validate the VBLK size value in the VMDB structure in an LDM partition table, which allows local users to cause a denial of service (divide-by-zero...

Exploit
  • EPSS 0.07%
  • Veröffentlicht 01.03.2011 23:00:03
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Heap-based buffer overflow in the ldm_frag_add function in fs/partitions/ldm.c in the Linux kernel 2.6.37.2 and earlier might allow local users to gain privileges or obtain sensitive information via a crafted LDM partition table.

  • EPSS 0.05%
  • Veröffentlicht 23.02.2011 19:00:02
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Absolute path traversal vulnerability in the org.debian.apt.UpdateCachePartially method in worker.py in Aptdaemon 0.40 in Ubuntu 10.10 and 11.04 allows local users to read arbitrary files via a full pathname in the sources_list argument, related to t...

Exploit
  • EPSS 71.38%
  • Veröffentlicht 22.02.2011 19:00:02
  • Zuletzt bearbeitet 11.04.2025 00:51:21

avahi-core/socket.c in avahi-daemon in Avahi before 0.6.29 allows remote attackers to cause a denial of service (infinite loop) via an empty mDNS (1) IPv4 or (2) IPv6 UDP packet to port 5353. NOTE: this vulnerability exists because of an incorrect f...

  • EPSS 0.06%
  • Veröffentlicht 18.02.2011 20:00:09
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Multiple buffer overflows in the caiaq Native Instruments USB audio functionality in the Linux kernel before 2.6.38-rc4-next-20110215 might allow attackers to cause a denial of service or possibly have unspecified other impact via a long USB device n...

  • EPSS 3.02%
  • Veröffentlicht 28.01.2011 22:00:05
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Multiple directory traversal vulnerabilities in OpenOffice.org (OOo) 2.x and 3.x before 3.3 allow remote attackers to overwrite arbitrary files via a .. (dot dot) in an entry in (1) an XSLT JAR filter description file, (2) an Extension (aka OXT) file...