Show filters
120 Total Results
Displaying 111-120 of 120
Sort by:
Attacker Value
Unknown

CVE-2012-3364

Disclosure Date: January 22, 2013 (last updated October 05, 2023)
Multiple stack-based buffer overflows in the Near Field Communication Controller Interface (NCI) in the Linux kernel before 3.4.5 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via incoming frames with crafted length fields.
0
Attacker Value
Unknown

CVE-2012-5532

Disclosure Date: December 27, 2012 (last updated November 08, 2023)
The main function in tools/hv/hv_kvp_daemon.c in hypervkvpd, as distributed in the Linux kernel before 3.8-rc1, allows local users to cause a denial of service (daemon exit) via a crafted application that sends a Netlink message. NOTE: this vulnerability exists because of an incorrect fix for CVE-2012-2669.
0
Attacker Value
Unknown

CVE-2012-2669

Disclosure Date: December 27, 2012 (last updated October 05, 2023)
The main function in tools/hv/hv_kvp_daemon.c in hypervkvpd, as distributed in the Linux kernel before 3.4.5, does not validate the origin of Netlink messages, which allows local users to spoof Netlink communication via a crafted connector message.
0
Attacker Value
Unknown

CVE-2012-5517

Disclosure Date: December 21, 2012 (last updated October 05, 2023)
The online_pages function in mm/memory_hotplug.c in the Linux kernel before 3.6 allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact in opportunistic circumstances by using memory that was hot-added by an administrator.
0
Attacker Value
Unknown

CVE-2012-0957

Disclosure Date: December 21, 2012 (last updated October 05, 2023)
The override_release function in kernel/sys.c in the Linux kernel before 3.4.16 allows local users to obtain sensitive information from kernel stack memory via a uname system call in conjunction with a UNAME26 personality.
0
Attacker Value
Unknown

CVE-2012-4508

Disclosure Date: December 21, 2012 (last updated October 05, 2023)
Race condition in fs/ext4/extents.c in the Linux kernel before 3.4.16 allows local users to obtain sensitive information from a deleted file by reading an extent that was not properly marked as uninitialized.
0
Attacker Value
Unknown

CVE-2012-4565

Disclosure Date: December 21, 2012 (last updated October 05, 2023)
The tcp_illinois_info function in net/ipv4/tcp_illinois.c in the Linux kernel before 3.4.19, when the net.ipv4.tcp_congestion_control illinois setting is enabled, allows local users to cause a denial of service (divide-by-zero error and OOPS) by reading TCP stats.
0
Attacker Value
Unknown

CVE-2012-4467

Disclosure Date: October 10, 2012 (last updated October 05, 2023)
The (1) do_siocgstamp and (2) do_siocgstampns functions in net/socket.c in the Linux kernel before 3.5.4 use an incorrect argument order, which allows local users to obtain sensitive information from kernel memory or cause a denial of service (system crash) via a crafted ioctl call.
0
Attacker Value
Unknown

CVE-2012-3511

Disclosure Date: October 04, 2012 (last updated October 05, 2023)
Multiple race conditions in the madvise_remove function in mm/madvise.c in the Linux kernel before 3.4.5 allow local users to cause a denial of service (use-after-free and system crash) via vectors involving a (1) munmap or (2) close system call.
0
Attacker Value
Unknown

CVE-2012-2373

Disclosure Date: August 09, 2012 (last updated October 04, 2023)
The Linux kernel before 3.4.5 on the x86 platform, when Physical Address Extension (PAE) is enabled, does not properly use the Page Middle Directory (PMD), which allows local users to cause a denial of service (panic) via a crafted application that triggers a race condition.
0