Show filters
110 Total Results
Displaying 101-110 of 110
Sort by:
Attacker Value
Unknown
CVE-2008-0009
Disclosure Date: February 12, 2008 (last updated October 04, 2023)
The vmsplice_to_user function in fs/splice.c in the Linux kernel 2.6.22 through 2.6.24 does not validate a certain userspace pointer before dereference, which might allow local users to access arbitrary kernel memory locations.
0
Attacker Value
Unknown
CVE-2008-0001
Disclosure Date: January 15, 2008 (last updated October 04, 2023)
VFS in the Linux kernel before 2.6.22.16, and 2.6.23.x before 2.6.23.14, performs tests of access mode by using the flag variable instead of the acc_mode variable, which might allow local users to bypass intended permissions and remove directories.
0
Attacker Value
Unknown
CVE-2007-5966
Disclosure Date: December 20, 2007 (last updated November 08, 2023)
Integer overflow in the hrtimer_start function in kernel/hrtimer.c in the Linux kernel before 2.6.23.10 allows local users to execute arbitrary code or cause a denial of service (panic) via a large relative timeout value. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown
CVE-2007-6434
Disclosure Date: December 18, 2007 (last updated October 04, 2023)
Linux kernel 2.6.23 allows local users to create low pages in virtual userspace memory and bypass mmap_min_addr protection via a crafted executable file that calls the do_brk function.
0
Attacker Value
Unknown
CVE-2007-6417
Disclosure Date: December 18, 2007 (last updated October 04, 2023)
The shmem_getpage function (mm/shmem.c) in Linux kernel 2.6.11 through 2.6.23 does not properly clear allocated memory in some rare circumstances related to tmpfs, which might allow local users to read sensitive kernel data or cause a denial of service (crash).
0
Attacker Value
Unknown
CVE-2007-6151
Disclosure Date: December 15, 2007 (last updated October 04, 2023)
The isdn_ioctl function in isdn_common.c in Linux kernel 2.6.23 allows local users to cause a denial of service via a crafted ioctl struct in which iocts is not null terminated, which triggers a buffer overflow.
0
Attacker Value
Unknown
CVE-2007-6063
Disclosure Date: November 21, 2007 (last updated October 04, 2023)
Buffer overflow in the isdn_net_setcfg function in isdn_net.c in Linux kernel 2.6.23 allows local users to have an unknown impact via a crafted argument to the isdn_ioctl function.
0
Attacker Value
Unknown
CVE-2007-5501
Disclosure Date: November 15, 2007 (last updated October 04, 2023)
The tcp_sacktag_write_queue function in net/ipv4/tcp_input.c in Linux kernel 2.6.21 through 2.6.23.7, and 2.6.24-rc through 2.6.24-rc2, allows remote attackers to cause a denial of service (crash) via crafted ACK responses that trigger a NULL pointer dereference.
0
Attacker Value
Unknown
CVE-2007-5093
Disclosure Date: September 26, 2007 (last updated November 08, 2023)
The disconnect method in the Philips USB Webcam (pwc) driver in Linux kernel 2.6.x before 2.6.22.6 "relies on user space to close the device," which allows user-assisted local attackers to cause a denial of service (USB subsystem hang and CPU consumption in khubd) by not closing the device after the disconnect is invoked. NOTE: this rarely crosses privilege boundaries, unless the attacker can convince the victim to unplug the affected device.
0
Attacker Value
Unknown
CVE-2006-6058
Disclosure Date: November 22, 2006 (last updated October 04, 2023)
The minix filesystem code in Linux kernel 2.6.x before 2.6.24, including 2.6.18, allows local users to cause a denial of service (hang) via a malformed minix file stream that triggers an infinite loop in the minix_bmap function. NOTE: this issue might be due to an integer overflow or signedness error.
0