Show filters
111 Total Results
Displaying 101-110 of 111
Sort by:
Attacker Value
Unknown
CVE-2007-3740
Disclosure Date: September 14, 2007 (last updated October 04, 2023)
The CIFS filesystem in the Linux kernel before 2.6.22, when Unix extension support is enabled, does not honor the umask of a process, which allows local users to gain privileges.
0
Attacker Value
Unknown
CVE-2007-3107
Disclosure Date: July 10, 2007 (last updated October 04, 2023)
The signal handling in the Linux kernel before 2.6.22, including 2.6.2, when running on PowerPC systems using HTX, allows local users to cause a denial of service via unspecified vectors involving floating point corruption and concurrency, related to clearing of MSR bits.
0
Attacker Value
Unknown
CVE-2007-3642
Disclosure Date: July 10, 2007 (last updated October 04, 2023)
The decode_choice function in net/netfilter/nf_conntrack_h323_asn1.c in the Linux kernel before 2.6.20.15, 2.6.21.x before 2.6.21.6, and before 2.6.22 allows remote attackers to cause a denial of service (crash) via an encoded, out-of-range index value for a choice field, which triggers a NULL pointer dereference.
0
Attacker Value
Unknown
CVE-2007-2876
Disclosure Date: June 11, 2007 (last updated October 04, 2023)
The sctp_new function in (1) ip_conntrack_proto_sctp.c and (2) nf_conntrack_proto_sctp.c in Netfilter in Linux kernel 2.6 before 2.6.20.13, and 2.6.21.x before 2.6.21.4, allows remote attackers to cause a denial of service by causing certain invalid states that trigger a NULL pointer dereference.
0
Attacker Value
Unknown
CVE-2007-2453
Disclosure Date: June 11, 2007 (last updated October 04, 2023)
The random number feature in Linux kernel 2.6 before 2.6.20.13, and 2.6.21.x before 2.6.21.4, (1) does not properly seed pools when there is no entropy, or (2) uses an incorrect cast when extracting entropy, which might cause the random number generator to provide the same values after reboots on systems without an entropy source.
0
Attacker Value
Unknown
CVE-2007-2451
Disclosure Date: May 29, 2007 (last updated October 04, 2023)
Unspecified vulnerability in drivers/crypto/geode-aes.c in GEODE-AES in the Linux kernel before 2.6.21.3 allows attackers to obtain sensitive information via unspecified vectors.
0
Attacker Value
Unknown
CVE-2007-1861
Disclosure Date: May 07, 2007 (last updated October 04, 2023)
The nl_fib_lookup function in net/ipv4/fib_frontend.c in Linux Kernel before 2.6.20.8 allows attackers to cause a denial of service (kernel panic) via NETLINK_FIB_LOOKUP replies, which trigger infinite recursion and a stack overflow.
0
Attacker Value
Unknown
CVE-2007-1734
Disclosure Date: March 28, 2007 (last updated October 04, 2023)
The DCCP support in the do_dccp_getsockopt function in net/dccp/proto.c in Linux kernel 2.6.20 and later does not verify the upper bounds of the optlen value, which allows local users running on certain architectures to read kernel memory or cause a denial of service (oops), a related issue to CVE-2007-1730.
0
Attacker Value
Unknown
CVE-2007-1730
Disclosure Date: March 28, 2007 (last updated October 04, 2023)
Integer signedness error in the DCCP support in the do_dccp_getsockopt function in net/dccp/proto.c in Linux kernel 2.6.20 and later allows local users to read kernel memory or cause a denial of service (oops) via a negative optlen value.
0
Attacker Value
Unknown
CVE-2007-1592
Disclosure Date: March 22, 2007 (last updated October 04, 2023)
net/ipv6/tcp_ipv6.c in Linux kernel 2.6.x up to 2.6.21-rc3 inadvertently copies the ipv6_fl_socklist from a listening TCP socket to child sockets, which allows local users to cause a denial of service (OOPS) or double free by opening a listening IPv6 socket, attaching a flow label, and connecting to that socket.
0