Show filters
314 Total Results
Displaying 11-20 of 314
Sort by:
Attacker Value
Unknown

CVE-2012-4444

Disclosure Date: December 21, 2012 (last updated October 05, 2023)
The ip6_frag_queue function in net/ipv6/reassembly.c in the Linux kernel before 2.6.36 allows remote attackers to bypass intended network restrictions via overlapping IPv6 fragments.
0
Attacker Value
Unknown

CVE-2012-3520

Disclosure Date: October 03, 2012 (last updated October 05, 2023)
The Netlink implementation in the Linux kernel before 3.2.30 does not properly handle messages that lack SCM_CREDENTIALS data, which might allow local users to spoof Netlink communication via a crafted message, as demonstrated by a message to (1) Avahi or (2) NetworkManager.
0
Attacker Value
Unknown

CVE-2012-2744

Disclosure Date: August 09, 2012 (last updated October 04, 2023)
net/ipv6/netfilter/nf_conntrack_reasm.c in the Linux kernel before 2.6.34, when the nf_conntrack_ipv6 module is enabled, allows remote attackers to cause a denial of service (NULL pointer dereference and system crash) via certain types of fragmented IPv6 packets.
0
Attacker Value
Unknown

CVE-2010-4648

Disclosure Date: June 21, 2012 (last updated October 04, 2023)
The orinoco_ioctl_set_auth function in drivers/net/wireless/orinoco/wext.c in the Linux kernel before 2.6.37 does not properly implement a TKIP protection mechanism, which makes it easier for remote attackers to obtain access to a Wi-Fi network by reading Wi-Fi frames.
0
Attacker Value
Unknown

CVE-2011-4914

Disclosure Date: June 21, 2012 (last updated October 04, 2023)
The ROSE protocol implementation in the Linux kernel before 2.6.39 does not verify that certain data-length values are consistent with the amount of data sent, which might allow remote attackers to obtain sensitive information from kernel memory or cause a denial of service (out-of-bounds read) via crafted data to a ROSE socket.
0
Attacker Value
Unknown

CVE-2010-4650

Disclosure Date: June 21, 2012 (last updated October 04, 2023)
Buffer overflow in the fuse_do_ioctl function in fs/fuse/file.c in the Linux kernel before 2.6.37 allows local users to cause a denial of service or possibly have unspecified other impact by leveraging the ability to operate a CUSE server.
0
Attacker Value
Unknown

CVE-2011-1479

Disclosure Date: June 21, 2012 (last updated November 08, 2023)
Double free vulnerability in the inotify subsystem in the Linux kernel before 2.6.39 allows local users to cause a denial of service (system crash) via vectors involving failed attempts to create files. NOTE: this vulnerability exists because of an incorrect fix for CVE-2010-4250.
0
Attacker Value
Unknown

CVE-2011-1080

Disclosure Date: June 21, 2012 (last updated October 04, 2023)
The do_replace function in net/bridge/netfilter/ebtables.c in the Linux kernel before 2.6.39 does not ensure that a certain name field ends with a '\0' character, which allows local users to obtain potentially sensitive information from kernel stack memory by leveraging the CAP_NET_ADMIN capability to replace a table, and then reading a modprobe command line.
0
Attacker Value
Unknown

CVE-2011-1160

Disclosure Date: June 21, 2012 (last updated October 04, 2023)
The tpm_open function in drivers/char/tpm/tpm.c in the Linux kernel before 2.6.39 does not initialize a certain buffer, which allows local users to obtain potentially sensitive information from kernel memory via unspecified vectors.
0
Attacker Value
Unknown

CVE-2011-1078

Disclosure Date: June 21, 2012 (last updated October 04, 2023)
The sco_sock_getsockopt_old function in net/bluetooth/sco.c in the Linux kernel before 2.6.39 does not initialize a certain structure, which allows local users to obtain potentially sensitive information from kernel stack memory via the SCO_CONNINFO option.
0