Show filters
352 Total Results
Displaying 241-250 of 352
Sort by:
Attacker Value
Unknown
CVE-2006-0096
Disclosure Date: January 06, 2006 (last updated February 22, 2025)
wan/sdla.c in Linux kernel 2.6.x before 2.6.11 and 2.4.x before 2.4.29 does not require the CAP_SYS_RAWIO privilege for an SDLA firmware upgrade, with unknown impact and local attack vectors. NOTE: further investigation suggests that this issue requires root privileges to exploit, since it is protected by CAP_NET_ADMIN; thus it might not be a vulnerability, although capabilities provide finer distinctions between privilege levels.
0
Attacker Value
Unknown
CVE-2006-0095
Disclosure Date: January 06, 2006 (last updated February 22, 2025)
dm-crypt in Linux kernel 2.6.15 and earlier does not clear a structure before it is freed, which leads to a memory disclosure that could allow local users to obtain sensitive information about a cryptographic key.
0
Attacker Value
Unknown
CVE-2005-4605
Disclosure Date: December 31, 2005 (last updated February 22, 2025)
The procfs code (proc_misc.c) in Linux 2.6.14.3 and other versions before 2.6.15 allows attackers to read sensitive kernel memory via unspecified vectors in which a signed value is added to an unsigned value.
0
Attacker Value
Unknown
CVE-2005-4639
Disclosure Date: December 31, 2005 (last updated February 22, 2025)
Buffer overflow in the CA-driver (dst_ca.c) for TwinHan DST Frontend/Card in Linux kernel 2.6.12 and other versions before 2.6.15 allows local users to cause a denial of service (crash) and possibly execute arbitrary code by "reading more than 8 bytes into an 8 byte long array".
0
Attacker Value
Unknown
CVE-2005-4811
Disclosure Date: December 31, 2005 (last updated February 22, 2025)
The hugepage code (hugetlb.c) in Linux kernel 2.6, possibly 2.6.12 and 2.6.13, in certain configurations, allows local users to cause a denial of service (crash) by triggering an mmap error before a prefault, which causes an error in the unmap_hugepage_area function.
0
Attacker Value
Unknown
CVE-2005-0136
Disclosure Date: December 31, 2005 (last updated February 22, 2025)
The Linux kernel before 2.6.11 on the Itanium IA64 platform has certain "ptrace corner cases" that allow local users to cause a denial of service (crash) via crafted syscalls, possibly related to MCA/INIT, a different vulnerability than CVE-2005-1761.
0
Attacker Value
Unknown
CVE-2005-4618
Disclosure Date: December 31, 2005 (last updated February 22, 2025)
Buffer overflow in sysctl in the Linux Kernel 2.6 before 2.6.15 allows local users to corrupt user memory and possibly cause a denial of service via a long string, which causes sysctl to write a zero byte outside the buffer. NOTE: since the sysctl is called from a userland program that provides the argument, this might not be a vulnerability, unless a legitimate user-assisted or setuid scenario can be identified.
0
Attacker Value
Unknown
CVE-2005-4352
Disclosure Date: December 31, 2005 (last updated February 22, 2025)
The securelevels implementation in NetBSD 2.1 and earlier, and Linux 2.6.15 and earlier, allows local users to bypass time setting restrictions and set the clock backwards by setting the clock ahead to the maximum unixtime value (19 Jan 2038), which then wraps around to the minimum value (13 Dec 1901), which can then be set ahead to the desired time, aka "settimeofday() time wrap."
0
Attacker Value
Unknown
CVE-2005-3359
Disclosure Date: December 31, 2005 (last updated February 22, 2025)
The atm module in Linux kernel 2.6 before 2.6.14 allows local users to cause a denial of service (panic) via certain socket calls that produce inconsistent reference counts for loadable protocol modules.
0
Attacker Value
Unknown
CVE-2005-4635
Disclosure Date: December 31, 2005 (last updated February 22, 2025)
The nl_fib_input function in fib_frontend.c in the Linux kernel before 2.6.15 does not check for valid lengths of the header and payload, which allows remote attackers to cause a denial of service (invalid memory reference) via malformed fib_lookup netlink messages.
0