Show filters
590 Total Results
Displaying 111-120 of 590
Sort by:
Attacker Value
Unknown

CVE-2010-4249

Disclosure Date: November 29, 2010 (last updated October 04, 2023)
The wait_for_unix_gc function in net/unix/garbage.c in the Linux kernel before 2.6.37-rc3-next-20101125 does not properly select times for garbage collection of inflight sockets, which allows local users to cause a denial of service (system hang) via crafted use of the socketpair and sendmsg system calls for SOCK_SEQPACKET sockets.
0
Attacker Value
Unknown

CVE-2010-4078

Disclosure Date: November 29, 2010 (last updated October 04, 2023)
The sisfb_ioctl function in drivers/video/sis/sis_main.c in the Linux kernel before 2.6.36-rc6 does not properly initialize a certain structure member, which allows local users to obtain potentially sensitive information from kernel stack memory via an FBIOGET_VBLANK ioctl call.
0
Attacker Value
Unknown

CVE-2010-4165

Disclosure Date: November 22, 2010 (last updated October 04, 2023)
The do_tcp_setsockopt function in net/ipv4/tcp.c in the Linux kernel before 2.6.37-rc2 does not properly restrict TCP_MAXSEG (aka MSS) values, which allows local users to cause a denial of service (OOPS) via a setsockopt call that specifies a small value, leading to a divide-by-zero error or incorrect use of a signed integer.
0
Attacker Value
Unknown

CVE-2010-4169

Disclosure Date: November 22, 2010 (last updated October 04, 2023)
Use-after-free vulnerability in mm/mprotect.c in the Linux kernel before 2.6.37-rc2 allows local users to cause a denial of service via vectors involving an mprotect system call.
0
Attacker Value
Unknown

CVE-2010-2938

Disclosure Date: October 08, 2010 (last updated October 04, 2023)
arch/x86/hvm/vmx/vmcs.c in the virtual-machine control structure (VMCS) implementation in the Linux kernel 2.6.18 on Red Hat Enterprise Linux (RHEL) 5, when an Intel platform without Extended Page Tables (EPT) functionality is used, accesses VMCS fields without verifying hardware support for these fields, which allows local users to cause a denial of service (host OS crash) by requesting a VMCS dump for a fully virtualized Xen guest.
0
Attacker Value
Unknown

CVE-2010-3442

Disclosure Date: October 04, 2010 (last updated October 04, 2023)
Multiple integer overflows in the snd_ctl_new function in sound/core/control.c in the Linux kernel before 2.6.36-rc5-next-20100929 allow local users to cause a denial of service (heap memory corruption) or possibly have unspecified other impact via a crafted (1) SNDRV_CTL_IOCTL_ELEM_ADD or (2) SNDRV_CTL_IOCTL_ELEM_REPLACE ioctl call.
0
Attacker Value
Unknown

CVE-2010-3437

Disclosure Date: October 04, 2010 (last updated October 04, 2023)
Integer signedness error in the pkt_find_dev_from_minor function in drivers/block/pktcdvd.c in the Linux kernel before 2.6.36-rc6 allows local users to obtain sensitive information from kernel memory or cause a denial of service (invalid pointer dereference and system crash) via a crafted index value in a PKT_CTRL_CMD_STATUS ioctl call.
0
Attacker Value
Unknown

CVE-2010-3296

Disclosure Date: September 30, 2010 (last updated October 04, 2023)
The cxgb_extension_ioctl function in drivers/net/cxgb3/cxgb3_main.c in the Linux kernel before 2.6.36-rc5 does not properly initialize a certain structure member, which allows local users to obtain potentially sensitive information from kernel stack memory via a CHELSIO_GET_QSET_NUM ioctl call.
0
Attacker Value
Unknown

CVE-2010-3298

Disclosure Date: September 30, 2010 (last updated October 04, 2023)
The hso_get_count function in drivers/net/usb/hso.c in the Linux kernel before 2.6.36-rc5 does not properly initialize a certain structure member, which allows local users to obtain potentially sensitive information from kernel stack memory via a TIOCGICOUNT ioctl call.
0
Attacker Value
Unknown

CVE-2010-3297

Disclosure Date: September 30, 2010 (last updated October 04, 2023)
The eql_g_master_cfg function in drivers/net/eql.c in the Linux kernel before 2.6.36-rc5 does not properly initialize a certain structure member, which allows local users to obtain potentially sensitive information from kernel stack memory via an EQL_GETMASTRCFG ioctl call.
0