Show filters
142 Total Results
Displaying 131-140 of 142
Sort by:
Attacker Value
Unknown
CVE-2012-0957
Disclosure Date: December 21, 2012 (last updated October 05, 2023)
The override_release function in kernel/sys.c in the Linux kernel before 3.4.16 allows local users to obtain sensitive information from kernel stack memory via a uname system call in conjunction with a UNAME26 personality.
0
Attacker Value
Unknown
CVE-2012-4508
Disclosure Date: December 21, 2012 (last updated October 05, 2023)
Race condition in fs/ext4/extents.c in the Linux kernel before 3.4.16 allows local users to obtain sensitive information from a deleted file by reading an extent that was not properly marked as uninitialized.
0
Attacker Value
Unknown
CVE-2012-4467
Disclosure Date: October 10, 2012 (last updated October 05, 2023)
The (1) do_siocgstamp and (2) do_siocgstampns functions in net/socket.c in the Linux kernel before 3.5.4 use an incorrect argument order, which allows local users to obtain sensitive information from kernel memory or cause a denial of service (system crash) via a crafted ioctl call.
0
Attacker Value
Unknown
CVE-2012-3511
Disclosure Date: October 04, 2012 (last updated October 05, 2023)
Multiple race conditions in the madvise_remove function in mm/madvise.c in the Linux kernel before 3.4.5 allow local users to cause a denial of service (use-after-free and system crash) via vectors involving a (1) munmap or (2) close system call.
0
Attacker Value
Unknown
CVE-2012-3520
Disclosure Date: October 03, 2012 (last updated October 05, 2023)
The Netlink implementation in the Linux kernel before 3.2.30 does not properly handle messages that lack SCM_CREDENTIALS data, which might allow local users to spoof Netlink communication via a crafted message, as demonstrated by a message to (1) Avahi or (2) NetworkManager.
0
Attacker Value
Unknown
CVE-2012-2745
Disclosure Date: August 09, 2012 (last updated October 04, 2023)
The copy_creds function in kernel/cred.c in the Linux kernel before 3.3.2 provides an invalid replacement session keyring to a child process, which allows local users to cause a denial of service (panic) via a crafted application that uses the fork system call.
0
Attacker Value
Unknown
CVE-2012-2133
Disclosure Date: July 03, 2012 (last updated October 04, 2023)
Use-after-free vulnerability in the Linux kernel before 3.3.6, when huge pages are enabled, allows local users to cause a denial of service (system crash) or possibly gain privileges by interacting with a hugetlbfs filesystem, as demonstrated by a umount operation that triggers improper handling of quota data.
0
Attacker Value
Unknown
CVE-2012-2313
Disclosure Date: June 13, 2012 (last updated October 04, 2023)
The rio_ioctl function in drivers/net/ethernet/dlink/dl2k.c in the Linux kernel before 3.3.7 does not restrict access to the SIOCSMIIREG command, which allows local users to write data to an Ethernet adapter via an ioctl call.
0
Attacker Value
Unknown
CVE-2012-2375
Disclosure Date: June 13, 2012 (last updated November 08, 2023)
The __nfs4_get_acl_uncached function in fs/nfs/nfs4proc.c in the NFSv4 implementation in the Linux kernel before 3.3.2 uses an incorrect length variable during a copy operation, which allows remote NFS servers to cause a denial of service (OOPS) by sending an excessive number of bitmap words in an FATTR4_ACL reply. NOTE: this vulnerability exists because of an incomplete fix for CVE-2011-4131.
0
Attacker Value
Unknown
CVE-2012-2384
Disclosure Date: June 13, 2012 (last updated October 04, 2023)
Integer overflow in the i915_gem_do_execbuffer function in drivers/gpu/drm/i915/i915_gem_execbuffer.c in the Direct Rendering Manager (DRM) subsystem in the Linux kernel before 3.3.5 on 32-bit platforms allows local users to cause a denial of service (out-of-bounds write) or possibly have unspecified other impact via a crafted ioctl call.
0