Show filters
187 Total Results
Displaying 141-150 of 187
Sort by:
Attacker Value
Unknown
CVE-2005-2098
Disclosure Date: August 23, 2005 (last updated February 22, 2025)
The KEYCTL_JOIN_SESSION_KEYRING operation in the Linux kernel before 2.6.12.5 contains an error path that does not properly release the session management semaphore, which allows local users or remote attackers to cause a denial of service (semaphore hang) via a new session keyring (1) with an empty name string, (2) with a long name string, (3) with the key quota reached, or (4) ENOMEM.
0
Attacker Value
Unknown
CVE-2005-2555
Disclosure Date: August 16, 2005 (last updated February 22, 2025)
Linux kernel 2.6.x does not properly restrict socket policy access to users with the CAP_NET_ADMIN capability, which could allow local users to conduct unauthorized activities via (1) ipv4/ip_sockglue.c and (2) ipv6/ipv6_sockglue.c.
0
Attacker Value
Unknown
CVE-2005-1768
Disclosure Date: July 11, 2005 (last updated February 22, 2025)
Race condition in the ia32 compatibility code for the execve system call in Linux kernel 2.4 before 2.4.31 and 2.6 before 2.6.6 allows local users to cause a denial of service (kernel panic) and possibly execute arbitrary code via a concurrent thread that increments a pointer count after the nargs function has counted the pointers, but before the count is copied from user space to kernel space, which leads to a buffer overflow.
0
Attacker Value
Unknown
CVE-2005-1264
Disclosure Date: May 17, 2005 (last updated February 22, 2025)
Raw character devices (raw.c) in the Linux kernel 2.6.x call the wrong function before passing an ioctl to the block device, which crosses security boundaries by making kernel address space accessible from user space, a similar vulnerability to CVE-2005-1589.
0
Attacker Value
Unknown
CVE-2005-1263
Disclosure Date: May 11, 2005 (last updated February 22, 2025)
The elf_core_dump function in binfmt_elf.c for Linux kernel 2.x.x to 2.2.27-rc2, 2.4.x to 2.4.31-pre1, and 2.6.x to 2.6.12-rc4 allows local users to execute arbitrary code via an ELF binary that, in certain conditions involving the create_elf_tables function, causes a negative length argument to pass a signed integer comparison, leading to a buffer overflow.
0
Attacker Value
Unknown
CVE-2005-0001
Disclosure Date: May 02, 2005 (last updated February 22, 2025)
Race condition in the page fault handler (fault.c) for Linux kernel 2.2.x to 2.2.7, 2.4 to 2.4.29, and 2.6 to 2.6.10, when running on multiprocessor machines, allows local users to execute arbitrary code via concurrent threads that share the same virtual memory space and simultaneously request stack expansion.
0
Attacker Value
Unknown
CVE-2005-1369
Disclosure Date: May 02, 2005 (last updated February 22, 2025)
The (1) it87 and (2) via686a drivers in I2C for Linux 2.6.x before 2.6.11.8, and 2.6.12 before 2.6.12-rc2, create the sysfs "alarms" file with write permissions, which allows local users to cause a denial of service (CPU consumption) by attempting to write to the file, which does not have an associated store function.
0
Attacker Value
Unknown
CVE-2005-0204
Disclosure Date: May 02, 2005 (last updated February 22, 2025)
Linux kernel before 2.6.9, when running on the AMD64 and Intel EM64T architectures, allows local users to write to privileged IO ports via the OUTS instruction.
0
Attacker Value
Unknown
CVE-2005-1368
Disclosure Date: May 02, 2005 (last updated February 22, 2025)
The key_user_lookup function in security/keys/key.c in Linux kernel 2.6.10 to 2.6.11.8 may allow attackers to cause a denial of service (oops) via SMP.
0
Attacker Value
Unknown
CVE-2005-0449
Disclosure Date: May 02, 2005 (last updated February 22, 2025)
The netfilter/iptables module in Linux before 2.6.8.1 allows remote attackers to cause a denial of service (kernel crash) or bypass firewall rules via crafted packets, which are not properly handled by the skb_checksum_help function.
0