Show filters
82 Total Results
Displaying 51-60 of 82
Sort by:
Attacker Value
Unknown
CVE-2009-0835
Disclosure Date: March 06, 2009 (last updated October 04, 2023)
The __secure_computing function in kernel/seccomp.c in the seccomp subsystem in the Linux kernel 2.6.28.7 and earlier on the x86_64 platform, when CONFIG_SECCOMP is enabled, does not properly handle (1) a 32-bit process making a 64-bit syscall or (2) a 64-bit process making a 32-bit syscall, which allows local users to bypass intended access restrictions via crafted syscalls that are misinterpreted as (a) stat or (b) chmod, a related issue to CVE-2009-0342 and CVE-2009-0343.
0
Attacker Value
Unknown
CVE-2009-0028
Disclosure Date: February 27, 2009 (last updated October 04, 2023)
The clone system call in the Linux kernel 2.6.28 and earlier allows local users to send arbitrary signals to a parent process from an unprivileged child process by launching an additional child process with the CLONE_PARENT flag, and then letting this new process exit.
0
Attacker Value
Unknown
CVE-2009-0675
Disclosure Date: February 22, 2009 (last updated October 04, 2023)
The skfp_ioctl function in drivers/net/skfp/skfddi.c in the Linux kernel before 2.6.28.6 permits SKFP_CLR_STATS requests only when the CAP_NET_ADMIN capability is absent, instead of when this capability is present, which allows local users to reset the driver statistics, related to an "inverted logic" issue.
0
Attacker Value
Unknown
CVE-2009-0676
Disclosure Date: February 22, 2009 (last updated October 04, 2023)
The sock_getsockopt function in net/core/sock.c in the Linux kernel before 2.6.28.6 does not initialize a certain structure member, which allows local users to obtain potentially sensitive information from kernel memory via an SO_BSDCOMPAT getsockopt request.
0
Attacker Value
Unknown
CVE-2009-0605
Disclosure Date: February 17, 2009 (last updated October 04, 2023)
Stack consumption vulnerability in the do_page_fault function in arch/x86/mm/fault.c in the Linux kernel before 2.6.28.5 allows local users to cause a denial of service (memory corruption) or possibly gain privileges via unspecified vectors that trigger page faults on a machine that has a registered Kprobes probe.
0
Attacker Value
Unknown
CVE-2009-0031
Disclosure Date: January 21, 2009 (last updated October 04, 2023)
Memory leak in the keyctl_join_session_keyring function (security/keys/keyctl.c) in Linux kernel 2.6.29-rc2 and earlier allows local users to cause a denial of service (kernel memory consumption) via unknown vectors related to a "missing kfree."
0
Attacker Value
Unknown
CVE-2008-4307
Disclosure Date: January 13, 2009 (last updated October 04, 2023)
Race condition in the do_setlk function in fs/nfs/file.c in the Linux kernel before 2.6.26 allows local users to cause a denial of service (crash) via vectors resulting in an interrupted RPC call that leads to a stray FL_POSIX lock, related to improper handling of a race between fcntl and close in the EINTR case.
0
Attacker Value
Unknown
CVE-2009-0065
Disclosure Date: January 07, 2009 (last updated October 04, 2023)
Buffer overflow in net/sctp/sm_statefuns.c in the Stream Control Transmission Protocol (sctp) implementation in the Linux kernel before 2.6.28-git8 allows remote attackers to have an unknown impact via an FWD-TSN (aka FORWARD-TSN) chunk with a large stream ID.
0
Attacker Value
Unknown
CVE-2008-5700
Disclosure Date: December 22, 2008 (last updated October 04, 2023)
libata in the Linux kernel before 2.6.27.9 does not set minimum timeouts for SG_IO requests, which allows local users to cause a denial of service (Programmed I/O mode on drives) via multiple simultaneous invocations of an unspecified test program.
0
Attacker Value
Unknown
CVE-2008-5702
Disclosure Date: December 22, 2008 (last updated October 04, 2023)
Buffer underflow in the ibwdt_ioctl function in drivers/watchdog/ib700wdt.c in the Linux kernel before 2.6.28-rc1 might allow local users to have an unknown impact via a certain /dev/watchdog WDIOC_SETTIMEOUT IOCTL call.
0