CVE-2010-3849
- EPSS 0.18%
- Veröffentlicht 30.12.2010 19:00:03
- Zuletzt bearbeitet 29.04.2026 01:13:23
The econet_sendmsg function in net/econet/af_econet.c in the Linux kernel before 2.6.36.2, when an econet address is configured, allows local users to cause a denial of service (NULL pointer dereference and OOPS) via a sendmsg call that specifies a N...
CVE-2010-3850
- EPSS 0.09%
- Veröffentlicht 30.12.2010 19:00:03
- Zuletzt bearbeitet 29.04.2026 01:13:23
The ec_dev_ioctl function in net/econet/af_econet.c in the Linux kernel before 2.6.36.2 does not require the CAP_NET_ADMIN capability, which allows local users to bypass intended access restrictions and configure econet addresses via an SIOCSIFADDR i...
CVE-2010-4344
- EPSS 51.87%
- Veröffentlicht 14.12.2010 16:00:04
- Zuletzt bearbeitet 21.04.2026 20:31:04
Heap-based buffer overflow in the string_vformat function in string.c in Exim before 4.70 allows remote attackers to execute arbitrary code via an SMTP session that includes two MAIL commands in conjunction with a large message containing crafted hea...
CVE-2010-4345
- EPSS 6.51%
- Veröffentlicht 14.12.2010 16:00:04
- Zuletzt bearbeitet 21.04.2026 20:30:40
Exim 4.72 and earlier allows local users to gain privileges by leveraging the ability of the exim user account to specify an alternate configuration file with a directive that contains arbitrary commands, as demonstrated by the spool_directory direct...
CVE-2010-3861
- EPSS 0.05%
- Veröffentlicht 10.12.2010 19:00:04
- Zuletzt bearbeitet 29.04.2026 01:13:23
The ethtool_get_rxnfc function in net/core/ethtool.c in the Linux kernel before 2.6.36 does not initialize a certain block of heap memory, which allows local users to obtain potentially sensitive information via an ETHTOOL_GRXCLSRLALL ethtool command...
CVE-2010-4180
- EPSS 3.85%
- Veröffentlicht 06.12.2010 21:05:48
- Zuletzt bearbeitet 29.04.2026 01:13:23
OpenSSL before 0.9.8q, and 1.0.x before 1.0.0c, when SSL_OP_NETSCAPE_REUSE_CIPHER_CHANGE_BUG is enabled, does not properly prevent modification of the ciphersuite in the session cache, which allows remote attackers to force the downgrade to an uninte...
CVE-2010-3904
- EPSS 2.02%
- Veröffentlicht 06.12.2010 20:13:00
- Zuletzt bearbeitet 21.04.2026 17:29:12
The rds_page_copy_user function in net/rds/page.c in the Reliable Datagram Sockets (RDS) protocol implementation in the Linux kernel before 2.6.36 does not properly validate addresses obtained from user space, which allows local users to gain privile...
CVE-2010-3858
- EPSS 0.15%
- Veröffentlicht 30.11.2010 21:38:23
- Zuletzt bearbeitet 29.04.2026 01:13:23
The setup_arg_pages function in fs/exec.c in the Linux kernel before 2.6.36, when CONFIG_STACK_GROWSDOWN is used, does not properly restrict the stack memory consumption of the (1) arguments and (2) environment for a 32-bit application on a 64-bit pl...
CVE-2010-4072
- EPSS 0.07%
- Veröffentlicht 29.11.2010 16:00:02
- Zuletzt bearbeitet 29.04.2026 01:13:23
The copy_shmid_to_user function in ipc/shm.c in the Linux kernel before 2.6.37-rc1 does not initialize a certain structure, which allows local users to obtain potentially sensitive information from kernel stack memory via vectors related to the shmct...
CVE-2010-3705
- EPSS 0.89%
- Veröffentlicht 26.11.2010 20:00:02
- Zuletzt bearbeitet 29.04.2026 01:13:23
The sctp_auth_asoc_get_hmac function in net/sctp/auth.c in the Linux kernel before 2.6.36 does not properly validate the hmac_ids array of an SCTP peer, which allows remote attackers to cause a denial of service (memory corruption and panic) via a cr...