Show filters
136 Total Results
Displaying 131-136 of 136
Sort by:
Attacker Value
Unknown

CVE-2006-1052

Disclosure Date: May 05, 2006 (last updated October 04, 2023)
The selinux_ptrace logic in hooks.c in SELinux for Linux 2.6.6 allows local users with ptrace permissions to change the tracer SID to an SID of another process.
0
Attacker Value
Unknown

CVE-2006-1864

Disclosure Date: April 26, 2006 (last updated October 04, 2023)
Directory traversal vulnerability in smbfs in Linux 2.6.16 and earlier allows local users to escape chroot restrictions for an SMB-mounted filesystem via "..\\" sequences, a similar vulnerability to CVE-2006-1863.
0
Attacker Value
Unknown

CVE-2006-1056

Disclosure Date: April 20, 2006 (last updated October 04, 2023)
The Linux kernel before 2.6.16.9 and the FreeBSD kernel, when running on AMD64 and other 7th and 8th generation AuthenticAMD processors, only save/restore the FOP, FIP, and FDP x87 registers in FXSAVE/FXRSTOR when an exception is pending, which allows one process to determine portions of the state of floating point instructions of other processes, which can be leveraged to obtain sensitive information such as cryptographic keys. NOTE: this is the documented behavior of AMD64 processors, but it is inconsistent with Intel processors in a security-relevant fashion that was not addressed by the kernels.
0
Attacker Value
Unknown

CVE-2006-1524

Disclosure Date: April 19, 2006 (last updated October 04, 2023)
madvise_remove in Linux kernel 2.6.16 up to 2.6.16.6 does not follow file and mmap restrictions, which allows local users to bypass IPC permissions and replace portions of readonly tmpfs files with zeroes, aka the MADV_REMOVE vulnerability. NOTE: this description was originally written in a way that combined two separate issues. The mprotect issue now has a separate name, CVE-2006-2071.
0
Attacker Value
Unknown

CVE-2006-1525

Disclosure Date: April 19, 2006 (last updated October 04, 2023)
ip_route_input in Linux kernel 2.6 before 2.6.16.8 allows local users to cause a denial of service (panic) via a request for a route for a multicast IP address, which triggers a null dereference.
0
Attacker Value
Unknown

CVE-2006-0744

Disclosure Date: April 18, 2006 (last updated October 04, 2023)
Linux kernel before 2.6.16.5 does not properly handle uncanonical return addresses on Intel EM64T CPUs, which reports an exception in the SYSRET instead of the next instruction, which causes the kernel exception handler to run on the user stack with the wrong GS.
0