Show filters
44 Total Results
Displaying 31-40 of 44
Sort by:
Attacker Value
Unknown

CVE-2009-4131

Disclosure Date: December 13, 2009 (last updated October 04, 2023)
The EXT4_IOC_MOVE_EXT (aka move extents) ioctl implementation in the ext4 filesystem in the Linux kernel before 2.6.32-git6 allows local users to overwrite arbitrary files via a crafted request, related to insufficient checks for file permissions.
0
Attacker Value
Unknown

CVE-2009-4306

Disclosure Date: December 13, 2009 (last updated October 04, 2023)
Unspecified vulnerability in the EXT4_IOC_MOVE_EXT (aka move extents) ioctl implementation in the ext4 filesystem in the Linux kernel 2.6.32-git6 and earlier allows local users to cause a denial of service (filesystem corruption) via unknown vectors, a different vulnerability than CVE-2009-4131.
0
Attacker Value
Unknown

CVE-2009-1298

Disclosure Date: December 08, 2009 (last updated October 04, 2023)
The ip_frag_reasm function in net/ipv4/ip_fragment.c in the Linux kernel 2.6.32-rc8, and 2.6.29 and later versions before 2.6.32, calls IP_INC_STATS_BH with an incorrect argument, which allows remote attackers to cause a denial of service (NULL pointer dereference and hang) via long IP packets, possibly related to the ip_defrag function.
0
Attacker Value
Unknown

CVE-2009-4020

Disclosure Date: December 04, 2009 (last updated October 04, 2023)
Stack-based buffer overflow in the hfs subsystem in the Linux kernel 2.6.32 allows remote attackers to have an unspecified impact via a crafted Hierarchical File System (HFS) filesystem, related to the hfs_readdir function in fs/hfs/dir.c.
0
Attacker Value
Unknown

CVE-2009-4026

Disclosure Date: December 02, 2009 (last updated October 04, 2023)
The mac80211 subsystem in the Linux kernel before 2.6.32-rc8-next-20091201 allows remote attackers to cause a denial of service (panic) via a crafted Delete Block ACK (aka DELBA) packet, related to an erroneous "code shuffling patch."
0
Attacker Value
Unknown

CVE-2009-4027

Disclosure Date: December 02, 2009 (last updated October 04, 2023)
Race condition in the mac80211 subsystem in the Linux kernel before 2.6.32-rc8-next-20091201 allows remote attackers to cause a denial of service (system crash) via a Delete Block ACK (aka DELBA) packet that triggers a certain state change in the absence of an aggregation session.
0
Attacker Value
Unknown

CVE-2009-4031

Disclosure Date: November 29, 2009 (last updated October 04, 2023)
The do_insn_fetch function in arch/x86/kvm/emulate.c in the x86 emulator in the KVM subsystem in the Linux kernel before 2.6.32-rc8-next-20091125 tries to interpret instructions that contain too many bytes to be valid, which allows guest OS users to cause a denial of service (increased scheduling latency) on the host OS via unspecified manipulations related to SMP support.
0
Attacker Value
Unknown

CVE-2009-4021

Disclosure Date: November 25, 2009 (last updated October 04, 2023)
The fuse_direct_io function in fs/fuse/file.c in the fuse subsystem in the Linux kernel before 2.6.32-rc7 might allow attackers to cause a denial of service (invalid pointer dereference and OOPS) via vectors possibly related to a memory-consumption attack.
0
Attacker Value
Unknown

CVE-2009-3080

Disclosure Date: November 20, 2009 (last updated October 04, 2023)
Array index error in the gdth_read_event function in drivers/scsi/gdth.c in the Linux kernel before 2.6.32-rc8 allows local users to cause a denial of service or possibly gain privileges via a negative event index in an IOCTL request.
0
Attacker Value
Unknown

CVE-2009-4005

Disclosure Date: November 20, 2009 (last updated October 04, 2023)
The collect_rx_frame function in drivers/isdn/hisax/hfc_usb.c in the Linux kernel before 2.6.32-rc7 allows attackers to have an unspecified impact via a crafted HDLC packet that arrives over ISDN and triggers a buffer under-read.
0