Show filters
113 Total Results
Displaying 101-110 of 113
Sort by:
Attacker Value
Unknown
CVE-2007-5501
Disclosure Date: November 15, 2007 (last updated October 04, 2023)
The tcp_sacktag_write_queue function in net/ipv4/tcp_input.c in Linux kernel 2.6.21 through 2.6.23.7, and 2.6.24-rc through 2.6.24-rc2, allows remote attackers to cause a denial of service (crash) via crafted ACK responses that trigger a NULL pointer dereference.
0
Attacker Value
Unknown
CVE-2007-5093
Disclosure Date: September 26, 2007 (last updated November 08, 2023)
The disconnect method in the Philips USB Webcam (pwc) driver in Linux kernel 2.6.x before 2.6.22.6 "relies on user space to close the device," which allows user-assisted local attackers to cause a denial of service (USB subsystem hang and CPU consumption in khubd) by not closing the device after the disconnect is invoked. NOTE: this rarely crosses privilege boundaries, unless the attacker can convince the victim to unplug the affected device.
0
Attacker Value
Unknown
CVE-2007-3731
Disclosure Date: September 17, 2007 (last updated October 04, 2023)
The Linux kernel 2.6.20 and 2.6.21 does not properly handle an invalid LDT segment selector in %cs (the xcs field) during ptrace single-step operations, which allows local users to cause a denial of service (NULL dereference and OOPS) via certain code that makes ptrace PTRACE_SETREGS and PTRACE_SINGLESTEP requests, related to the TRACE_IRQS_ON function, and possibly related to the arch_ptrace function.
0
Attacker Value
Unknown
CVE-2007-3740
Disclosure Date: September 14, 2007 (last updated October 04, 2023)
The CIFS filesystem in the Linux kernel before 2.6.22, when Unix extension support is enabled, does not honor the umask of a process, which allows local users to gain privileges.
0
Attacker Value
Unknown
CVE-2007-3107
Disclosure Date: July 10, 2007 (last updated October 04, 2023)
The signal handling in the Linux kernel before 2.6.22, including 2.6.2, when running on PowerPC systems using HTX, allows local users to cause a denial of service via unspecified vectors involving floating point corruption and concurrency, related to clearing of MSR bits.
0
Attacker Value
Unknown
CVE-2007-3642
Disclosure Date: July 10, 2007 (last updated October 04, 2023)
The decode_choice function in net/netfilter/nf_conntrack_h323_asn1.c in the Linux kernel before 2.6.20.15, 2.6.21.x before 2.6.21.6, and before 2.6.22 allows remote attackers to cause a denial of service (crash) via an encoded, out-of-range index value for a choice field, which triggers a NULL pointer dereference.
0
Attacker Value
Unknown
CVE-2007-2876
Disclosure Date: June 11, 2007 (last updated October 04, 2023)
The sctp_new function in (1) ip_conntrack_proto_sctp.c and (2) nf_conntrack_proto_sctp.c in Netfilter in Linux kernel 2.6 before 2.6.20.13, and 2.6.21.x before 2.6.21.4, allows remote attackers to cause a denial of service by causing certain invalid states that trigger a NULL pointer dereference.
0
Attacker Value
Unknown
CVE-2007-2453
Disclosure Date: June 11, 2007 (last updated October 04, 2023)
The random number feature in Linux kernel 2.6 before 2.6.20.13, and 2.6.21.x before 2.6.21.4, (1) does not properly seed pools when there is no entropy, or (2) uses an incorrect cast when extracting entropy, which might cause the random number generator to provide the same values after reboots on systems without an entropy source.
0
Attacker Value
Unknown
CVE-2007-2878
Disclosure Date: May 29, 2007 (last updated October 04, 2023)
The VFAT compat ioctls in the Linux kernel before 2.6.21.2, when run on a 64-bit system, allow local users to corrupt a kernel_dirent struct and cause a denial of service (system crash) via unknown vectors.
0
Attacker Value
Unknown
CVE-2007-2451
Disclosure Date: May 29, 2007 (last updated October 04, 2023)
Unspecified vulnerability in drivers/crypto/geode-aes.c in GEODE-AES in the Linux kernel before 2.6.21.3 allows attackers to obtain sensitive information via unspecified vectors.
0