Show filters
152 Total Results
Displaying 111-120 of 152
Sort by:
Attacker Value
Unknown
CVE-2006-6057
Disclosure Date: November 22, 2006 (last updated October 04, 2023)
The Linux kernel 2.6.x up to 2.6.18, and possibly other versions, on Fedora Core 6 and possibly other operating systems, allows local users to cause a denial of service (crash) via a malformed gfs2 file stream that triggers a NULL pointer dereference in the init_journal function.
0
Attacker Value
Unknown
CVE-2006-5823
Disclosure Date: November 09, 2006 (last updated October 04, 2023)
The zlib_inflate function in Linux kernel 2.6.x allows local users to cause a denial of service (crash) via a malformed filesystem that uses zlib compression that triggers memory corruption, as demonstrated using cramfs.
0
Attacker Value
Unknown
CVE-2006-4572
Disclosure Date: November 07, 2006 (last updated October 04, 2023)
ip6_tables in netfilter in the Linux kernel before 2.6.16.31 allows remote attackers to (1) bypass a rule that disallows a protocol, via a packet with the protocol header not located immediately after the fragment header, aka "ip6_tables protocol bypass bug;" and (2) bypass a rule that looks for a certain extension header, via a packet with an extension header outside the first fragment, aka "ip6_tables extension header bypass bug."
0
Attacker Value
Unknown
CVE-2006-5757
Disclosure Date: November 06, 2006 (last updated October 04, 2023)
Race condition in the __find_get_block_slow function in the ISO9660 filesystem in Linux 2.6.18 and possibly other versions allows local users to cause a denial of service (infinite loop) by mounting a crafted ISO9660 filesystem containing malformed data structures.
0
Attacker Value
Unknown
CVE-2006-5701
Disclosure Date: November 03, 2006 (last updated October 04, 2023)
Double free vulnerability in squashfs module in the Linux kernel 2.6.x, as used in Fedora Core 5 and possibly other distributions, allows local users to cause a denial of service by mounting a crafted squashfs filesystem.
0
Attacker Value
Unknown
CVE-2006-5619
Disclosure Date: October 31, 2006 (last updated October 04, 2023)
The seqfile handling (ip6fl_get_n function in ip6_flowlabel.c) in Linux kernel 2.6 up to 2.6.18-stable allows local users to cause a denial of service (hang or oops) via unspecified manipulations that trigger an infinite loop while searching for flowlabels.
0
Attacker Value
Unknown
CVE-2006-5174
Disclosure Date: October 10, 2006 (last updated October 04, 2023)
The copy_from_user function in the uaccess code in Linux kernel 2.6 before 2.6.19-rc1, when running on s390, does not properly clear a kernel buffer, which allows local user space programs to read portions of kernel memory by "appending to a file from a bad address," which triggers a fault that prevents the unused memory from being cleared in the kernel buffer.
0
Attacker Value
Unknown
CVE-2006-3741
Disclosure Date: October 10, 2006 (last updated October 04, 2023)
The perfmonctl system call (sys_perfmonctl) in Linux kernel 2.4.x and 2.6 before 2.6.18, when running on Itanium systems, does not properly track the reference count for file descriptors, which allows local users to cause a denial of service (file descriptor consumption).
0
Attacker Value
Unknown
CVE-2006-4663
Disclosure Date: September 09, 2006 (last updated November 08, 2023)
The source code tar archive of the Linux kernel 2.6.16, 2.6.17.11, and possibly other versions specifies weak permissions (0666 and 0777) for certain files and directories, which might allow local users to insert Trojan horse source code that would be used during the next kernel compilation. NOTE: another researcher disputes the vulnerability, stating that he finds "Not a single world-writable file or directory." CVE analysis as of 20060908 indicates that permissions will only be weak under certain unusual or insecure scenarios
0
Attacker Value
Unknown
CVE-2006-4538
Disclosure Date: September 05, 2006 (last updated October 04, 2023)
Linux kernel 2.6.17 and earlier, when running on IA64 or SPARC platforms, allows local users to cause a denial of service (crash) via a malformed ELF file that triggers memory maps that cross region boundaries.
0