Show filters
75 Total Results
Displaying 51-60 of 75
Sort by:
Attacker Value
Unknown
CVE-2013-2898
Disclosure Date: September 16, 2013 (last updated October 05, 2023)
drivers/hid/hid-sensor-hub.c in the Human Interface Device (HID) subsystem in the Linux kernel through 3.11, when CONFIG_HID_SENSOR_HUB is enabled, allows physically proximate attackers to obtain sensitive information from kernel memory via a crafted device.
0
Attacker Value
Unknown
CVE-2013-2892
Disclosure Date: September 16, 2013 (last updated October 05, 2023)
drivers/hid/hid-pl.c in the Human Interface Device (HID) subsystem in the Linux kernel through 3.11, when CONFIG_HID_PANTHERLORD is enabled, allows physically proximate attackers to cause a denial of service (heap-based out-of-bounds write) via a crafted device.
0
Attacker Value
Unknown
CVE-2013-4205
Disclosure Date: August 25, 2013 (last updated October 05, 2023)
Memory leak in the unshare_userns function in kernel/user_namespace.c in the Linux kernel before 3.10.6 allows local users to cause a denial of service (memory consumption) via an invalid CLONE_NEWUSER unshare call.
0
Attacker Value
Unknown
CVE-2013-4129
Disclosure Date: July 29, 2013 (last updated October 05, 2023)
The bridge multicast implementation in the Linux kernel through 3.10.3 does not check whether a certain timer is armed before modifying the timeout value of that timer, which allows local users to cause a denial of service (BUG and system crash) via vectors involving the shutdown of a KVM virtual machine, related to net/bridge/br_mdb.c and net/bridge/br_multicast.c.
0
Attacker Value
Unknown
CVE-2013-4163
Disclosure Date: July 29, 2013 (last updated October 05, 2023)
The ip6_append_data_mtu function in net/ipv6/ip6_output.c in the IPv6 implementation in the Linux kernel through 3.10.3 does not properly maintain information about whether the IPV6_MTU setsockopt option had been specified, which allows local users to cause a denial of service (BUG and system crash) via a crafted application that uses the UDP_CORK option in a setsockopt system call.
0
Attacker Value
Unknown
CVE-2013-4162
Disclosure Date: July 29, 2013 (last updated October 05, 2023)
The udp_v6_push_pending_frames function in net/ipv6/udp.c in the IPv6 implementation in the Linux kernel through 3.10.3 makes an incorrect function call for pending data, which allows local users to cause a denial of service (BUG and system crash) via a crafted application that uses the UDP_CORK option in a setsockopt system call.
0
Attacker Value
Unknown
CVE-2013-4127
Disclosure Date: July 29, 2013 (last updated October 05, 2023)
Use-after-free vulnerability in the vhost_net_set_backend function in drivers/vhost/net.c in the Linux kernel through 3.10.3 allows local users to cause a denial of service (OOPS and system crash) via vectors involving powering on a virtual machine.
0
Attacker Value
Unknown
CVE-2013-4125
Disclosure Date: July 15, 2013 (last updated October 05, 2023)
The fib6_add_rt2node function in net/ipv6/ip6_fib.c in the IPv6 stack in the Linux kernel through 3.10.1 does not properly handle Router Advertisement (RA) messages in certain circumstances involving three routes that initially qualified for membership in an ECMP route set until a change occurred for one of the first two routes, which allows remote attackers to cause a denial of service (system crash) via a crafted sequence of messages.
0
Attacker Value
Unknown
CVE-2013-2232
Disclosure Date: July 04, 2013 (last updated October 05, 2023)
The ip6_sk_dst_check function in net/ipv6/ip6_output.c in the Linux kernel before 3.10 allows local users to cause a denial of service (system crash) by using an AF_INET6 socket for a connection to an IPv4 interface.
0
Attacker Value
Unknown
CVE-2013-2206
Disclosure Date: July 04, 2013 (last updated October 05, 2023)
The sctp_sf_do_5_2_4_dupcook function in net/sctp/sm_statefuns.c in the SCTP implementation in the Linux kernel before 3.8.5 does not properly handle associations during the processing of a duplicate COOKIE ECHO chunk, which allows remote attackers to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact via crafted SCTP traffic.
0