Show filters
111 Total Results
Displaying 101-110 of 111
Sort by:
Attacker Value
Unknown

CVE-2007-3740

Disclosure Date: September 14, 2007 (last updated October 04, 2023)
The CIFS filesystem in the Linux kernel before 2.6.22, when Unix extension support is enabled, does not honor the umask of a process, which allows local users to gain privileges.
0
Attacker Value
Unknown

CVE-2007-3107

Disclosure Date: July 10, 2007 (last updated October 04, 2023)
The signal handling in the Linux kernel before 2.6.22, including 2.6.2, when running on PowerPC systems using HTX, allows local users to cause a denial of service via unspecified vectors involving floating point corruption and concurrency, related to clearing of MSR bits.
0
Attacker Value
Unknown

CVE-2007-3642

Disclosure Date: July 10, 2007 (last updated October 04, 2023)
The decode_choice function in net/netfilter/nf_conntrack_h323_asn1.c in the Linux kernel before 2.6.20.15, 2.6.21.x before 2.6.21.6, and before 2.6.22 allows remote attackers to cause a denial of service (crash) via an encoded, out-of-range index value for a choice field, which triggers a NULL pointer dereference.
0
Attacker Value
Unknown

CVE-2007-2876

Disclosure Date: June 11, 2007 (last updated October 04, 2023)
The sctp_new function in (1) ip_conntrack_proto_sctp.c and (2) nf_conntrack_proto_sctp.c in Netfilter in Linux kernel 2.6 before 2.6.20.13, and 2.6.21.x before 2.6.21.4, allows remote attackers to cause a denial of service by causing certain invalid states that trigger a NULL pointer dereference.
0
Attacker Value
Unknown

CVE-2007-2453

Disclosure Date: June 11, 2007 (last updated October 04, 2023)
The random number feature in Linux kernel 2.6 before 2.6.20.13, and 2.6.21.x before 2.6.21.4, (1) does not properly seed pools when there is no entropy, or (2) uses an incorrect cast when extracting entropy, which might cause the random number generator to provide the same values after reboots on systems without an entropy source.
0
Attacker Value
Unknown

CVE-2007-2451

Disclosure Date: May 29, 2007 (last updated October 04, 2023)
Unspecified vulnerability in drivers/crypto/geode-aes.c in GEODE-AES in the Linux kernel before 2.6.21.3 allows attackers to obtain sensitive information via unspecified vectors.
0
Attacker Value
Unknown

CVE-2007-1861

Disclosure Date: May 07, 2007 (last updated October 04, 2023)
The nl_fib_lookup function in net/ipv4/fib_frontend.c in Linux Kernel before 2.6.20.8 allows attackers to cause a denial of service (kernel panic) via NETLINK_FIB_LOOKUP replies, which trigger infinite recursion and a stack overflow.
0
Attacker Value
Unknown

CVE-2007-1734

Disclosure Date: March 28, 2007 (last updated October 04, 2023)
The DCCP support in the do_dccp_getsockopt function in net/dccp/proto.c in Linux kernel 2.6.20 and later does not verify the upper bounds of the optlen value, which allows local users running on certain architectures to read kernel memory or cause a denial of service (oops), a related issue to CVE-2007-1730.
0
Attacker Value
Unknown

CVE-2007-1730

Disclosure Date: March 28, 2007 (last updated October 04, 2023)
Integer signedness error in the DCCP support in the do_dccp_getsockopt function in net/dccp/proto.c in Linux kernel 2.6.20 and later allows local users to read kernel memory or cause a denial of service (oops) via a negative optlen value.
0
Attacker Value
Unknown

CVE-2007-1592

Disclosure Date: March 22, 2007 (last updated October 04, 2023)
net/ipv6/tcp_ipv6.c in Linux kernel 2.6.x up to 2.6.21-rc3 inadvertently copies the ipv6_fl_socklist from a listening TCP socket to child sockets, which allows local users to cause a denial of service (OOPS) or double free by opening a listening IPv6 socket, attaching a flow label, and connecting to that socket.
0