Show filters
314 Total Results
Displaying 31-40 of 314
Sort by:
Attacker Value
Unknown

CVE-2011-2182

Disclosure Date: June 13, 2012 (last updated November 08, 2023)
The ldm_frag_add function in fs/partitions/ldm.c in the Linux kernel before 2.6.39.1 does not properly handle memory allocation for non-initial fragments, which might allow local users to conduct buffer overflow attacks, and gain privileges or obtain sensitive information, via a crafted LDM partition table. NOTE: this vulnerability exists because of an incomplete fix for CVE-2011-1017.
0
Attacker Value
Unknown

CVE-2011-2209

Disclosure Date: June 13, 2012 (last updated October 04, 2023)
Integer signedness error in the osf_sysinfo function in arch/alpha/kernel/osf_sys.c in the Linux kernel before 2.6.39.4 on the Alpha platform allows local users to obtain sensitive information from kernel memory via a crafted call.
0
Attacker Value
Unknown

CVE-2011-1927

Disclosure Date: June 13, 2012 (last updated October 04, 2023)
The ip_expire function in net/ipv4/ip_fragment.c in the Linux kernel before 2.6.39 does not properly construct ICMP_TIME_EXCEEDED packets after a timeout, which allows remote attackers to cause a denial of service (invalid pointer dereference) via crafted fragmented packets.
0
Attacker Value
Unknown

CVE-2011-2211

Disclosure Date: June 13, 2012 (last updated October 04, 2023)
The osf_wait4 function in arch/alpha/kernel/osf_sys.c in the Linux kernel before 2.6.39.4 on the Alpha platform uses an incorrect pointer, which allows local users to gain privileges by writing a certain integer value to kernel memory.
0
Attacker Value
Unknown

CVE-2011-1767

Disclosure Date: June 13, 2012 (last updated October 04, 2023)
net/ipv4/ip_gre.c in the Linux kernel before 2.6.34, when ip_gre is configured as a module, allows remote attackers to cause a denial of service (OOPS) by sending a packet during module loading.
0
Attacker Value
Unknown

CVE-2011-2208

Disclosure Date: June 13, 2012 (last updated October 04, 2023)
Integer signedness error in the osf_getdomainname function in arch/alpha/kernel/osf_sys.c in the Linux kernel before 2.6.39.4 on the Alpha platform allows local users to obtain sensitive information from kernel memory via a crafted call.
0
Attacker Value
Unknown

CVE-2011-2210

Disclosure Date: June 13, 2012 (last updated October 04, 2023)
The osf_getsysinfo function in arch/alpha/kernel/osf_sys.c in the Linux kernel before 2.6.39.4 on the Alpha platform does not properly restrict the data size for GSI_GET_HWRPB operations, which allows local users to obtain sensitive information from kernel memory via a crafted call.
0
Attacker Value
Unknown

CVE-2011-2495

Disclosure Date: June 13, 2012 (last updated October 04, 2023)
fs/proc/base.c in the Linux kernel before 2.6.39.4 does not properly restrict access to /proc/#####/io files, which allows local users to obtain sensitive I/O statistics by polling a file, as demonstrated by discovering the length of another user's password.
0
Attacker Value
Unknown

CVE-2011-1759

Disclosure Date: June 13, 2012 (last updated October 04, 2023)
Integer overflow in the sys_oabi_semtimedop function in arch/arm/kernel/sys_oabi-compat.c in the Linux kernel before 2.6.39 on the ARM platform, when CONFIG_OABI_COMPAT is enabled, allows local users to gain privileges or cause a denial of service (heap memory corruption) by providing a crafted argument and leveraging a race condition.
0
Attacker Value
Unknown

CVE-2011-2183

Disclosure Date: June 13, 2012 (last updated October 04, 2023)
Race condition in the scan_get_next_rmap_item function in mm/ksm.c in the Linux kernel before 2.6.39.3, when Kernel SamePage Merging (KSM) is enabled, allows local users to cause a denial of service (NULL pointer dereference) or possibly have unspecified other impact via a crafted application.
0