Show filters
187 Total Results
Displaying 121-130 of 187
Sort by:
Attacker Value
Unknown
CVE-2005-3848
Disclosure Date: November 27, 2005 (last updated February 22, 2025)
Memory leak in the icmp_push_reply function in Linux 2.6 before 2.6.12.6 and 2.6.13 allows remote attackers to cause a denial of service (memory consumption) via a large number of crafted packets that cause the ip_append_data function to fail, aka "DST leak in icmp_push_reply."
0
Attacker Value
Unknown
CVE-2005-3807
Disclosure Date: November 25, 2005 (last updated February 22, 2025)
Memory leak in the VFS file lease handling in locks.c in Linux kernels 2.6.10 to 2.6.15 allows local users to cause a denial of service (memory exhaustion) via certain Samba activities that cause an fasync entry to be re-allocated by the fcntl_setlease function after the fasync queue has already been cleaned by the locks_delete_lock function.
0
Attacker Value
Unknown
CVE-2005-3806
Disclosure Date: November 25, 2005 (last updated February 22, 2025)
The IPv6 flow label handling code (ip6_flowlabel.c) in Linux kernels 2.4 up to 2.4.32 and 2.6 before 2.6.14 modifies the wrong variable in certain circumstances, which allows local users to corrupt kernel memory or cause a denial of service (crash) by triggering a free of non-allocated memory.
0
Attacker Value
Unknown
CVE-2005-3783
Disclosure Date: November 23, 2005 (last updated February 22, 2025)
The ptrace functionality (ptrace.c) in Linux kernel 2.6 before 2.6.14.2, using CLONE_THREAD, does not use the thread group ID to check whether it is attaching to itself, which allows local users to cause a denial of service (crash).
0
Attacker Value
Unknown
CVE-2005-2973
Disclosure Date: October 27, 2005 (last updated February 22, 2025)
The udp_v6_get_port function in udp.c in Linux 2.6 before 2.6.14-rc5, when running IPv6, allows local users to cause a denial of service (infinite loop and crash).
0
Attacker Value
Unknown
CVE-2005-3272
Disclosure Date: October 21, 2005 (last updated February 22, 2025)
Linux kernel before 2.6.12 allows remote attackers to poison the bridge forwarding table using frames that have already been dropped by filtering, which can cause the bridge to forward spoofed packets.
0
Attacker Value
Unknown
CVE-2005-3276
Disclosure Date: October 21, 2005 (last updated February 22, 2025)
The sys_get_thread_area function in process.c in Linux 2.6 before 2.6.12.4 and 2.6.13 does not clear a data structure before copying it to userspace, which might allow a user process to obtain sensitive information.
0
Attacker Value
Unknown
CVE-2005-3273
Disclosure Date: October 21, 2005 (last updated February 22, 2025)
The rose_rt_ioctl function in rose_route.c for Radionet Open Source Environment (ROSE) in Linux 2.6 kernels before 2.6.12, and 2.4 before 2.4.29, does not properly verify the ndigis argument for a new route, which allows attackers to trigger array out-of-bounds errors with a large number of digipeats.
0
Attacker Value
Unknown
CVE-2005-3275
Disclosure Date: October 21, 2005 (last updated February 22, 2025)
The NAT code (1) ip_nat_proto_tcp.c and (2) ip_nat_proto_udp.c in Linux kernel 2.6 before 2.6.13 and 2.4 before 2.4.32-rc1 incorrectly declares a variable to be static, which allows remote attackers to cause a denial of service (memory corruption) by causing two packets for the same protocol to be NATed at the same time, which leads to memory corruption.
0
Attacker Value
Unknown
CVE-2005-3044
Disclosure Date: September 22, 2005 (last updated February 22, 2025)
Multiple vulnerabilities in Linux kernel before 2.6.13.2 allow local users to cause a denial of service (kernel OOPS from null dereference) via (1) fput in a 32-bit ioctl on 64-bit x86 systems or (2) sockfd_put in the 32-bit routing_ioctl function on 64-bit systems.
0