Show filters
335 Total Results
Displaying 321-330 of 335
Sort by:
Attacker Value
Unknown

CVE-2010-4157

Disclosure Date: December 10, 2010 (last updated October 04, 2023)
Integer overflow in the ioc_general function in drivers/scsi/gdth.c in the Linux kernel before 2.6.36.1 on 64-bit platforms allows local users to cause a denial of service (memory corruption) or possibly have unspecified other impact via a large argument in an ioctl call.
0
Attacker Value
Unknown

CVE-2010-4083

Disclosure Date: November 30, 2010 (last updated October 04, 2023)
The copy_semid_to_user function in ipc/sem.c in the Linux kernel before 2.6.36 does not initialize a certain structure, which allows local users to obtain potentially sensitive information from kernel stack memory via a (1) IPC_INFO, (2) SEM_INFO, (3) IPC_STAT, or (4) SEM_STAT command in a semctl system call.
0
Attacker Value
Unknown

CVE-2010-4081

Disclosure Date: November 30, 2010 (last updated October 04, 2023)
The snd_hdspm_hwdep_ioctl function in sound/pci/rme9652/hdspm.c in the Linux kernel before 2.6.36-rc6 does not initialize a certain structure, which allows local users to obtain potentially sensitive information from kernel stack memory via an SNDRV_HDSPM_IOCTL_GET_CONFIG_INFO ioctl call.
0
Attacker Value
Unknown

CVE-2010-4080

Disclosure Date: November 30, 2010 (last updated October 04, 2023)
The snd_hdsp_hwdep_ioctl function in sound/pci/rme9652/hdsp.c in the Linux kernel before 2.6.36-rc6 does not initialize a certain structure, which allows local users to obtain potentially sensitive information from kernel stack memory via an SNDRV_HDSP_IOCTL_GET_CONFIG_INFO ioctl call.
0
Attacker Value
Unknown

CVE-2010-4072

Disclosure Date: November 29, 2010 (last updated October 04, 2023)
The copy_shmid_to_user function in ipc/shm.c in the Linux kernel before 2.6.37-rc1 does not initialize a certain structure, which allows local users to obtain potentially sensitive information from kernel stack memory via vectors related to the shmctl system call and the "old shm interface."
0
Attacker Value
Unknown

CVE-2010-4073

Disclosure Date: November 29, 2010 (last updated October 04, 2023)
The ipc subsystem in the Linux kernel before 2.6.37-rc1 does not initialize certain structures, which allows local users to obtain potentially sensitive information from kernel stack memory via vectors related to the (1) compat_sys_semctl, (2) compat_sys_msgctl, and (3) compat_sys_shmctl functions in ipc/compat.c; and the (4) compat_sys_mq_open and (5) compat_sys_mq_getsetattr functions in ipc/compat_mq.c.
0
Attacker Value
Unknown

CVE-2010-4078

Disclosure Date: November 29, 2010 (last updated October 04, 2023)
The sisfb_ioctl function in drivers/video/sis/sis_main.c in the Linux kernel before 2.6.36-rc6 does not properly initialize a certain structure member, which allows local users to obtain potentially sensitive information from kernel stack memory via an FBIOGET_VBLANK ioctl call.
0
Attacker Value
Unknown

CVE-2010-3442

Disclosure Date: October 04, 2010 (last updated October 04, 2023)
Multiple integer overflows in the snd_ctl_new function in sound/core/control.c in the Linux kernel before 2.6.36-rc5-next-20100929 allow local users to cause a denial of service (heap memory corruption) or possibly have unspecified other impact via a crafted (1) SNDRV_CTL_IOCTL_ELEM_ADD or (2) SNDRV_CTL_IOCTL_ELEM_REPLACE ioctl call.
0
Attacker Value
Unknown

CVE-2010-3437

Disclosure Date: October 04, 2010 (last updated October 04, 2023)
Integer signedness error in the pkt_find_dev_from_minor function in drivers/block/pktcdvd.c in the Linux kernel before 2.6.36-rc6 allows local users to obtain sensitive information from kernel memory or cause a denial of service (invalid pointer dereference and system crash) via a crafted index value in a PKT_CTRL_CMD_STATUS ioctl call.
0
Attacker Value
Unknown

CVE-2010-3067

Disclosure Date: September 21, 2010 (last updated October 04, 2023)
Integer overflow in the do_io_submit function in fs/aio.c in the Linux kernel before 2.6.36-rc4-next-20100915 allows local users to cause a denial of service or possibly have unspecified other impact via crafted use of the io_submit system call.
0