Show filters
77 Total Results
Displaying 61-70 of 77
Sort by:
Attacker Value
Unknown

CVE-2010-4073

Disclosure Date: November 29, 2010 (last updated October 04, 2023)
The ipc subsystem in the Linux kernel before 2.6.37-rc1 does not initialize certain structures, which allows local users to obtain potentially sensitive information from kernel stack memory via vectors related to the (1) compat_sys_semctl, (2) compat_sys_msgctl, and (3) compat_sys_shmctl functions in ipc/compat.c; and the (4) compat_sys_mq_open and (5) compat_sys_mq_getsetattr functions in ipc/compat_mq.c.
0
Attacker Value
Unknown

CVE-2010-4078

Disclosure Date: November 29, 2010 (last updated October 04, 2023)
The sisfb_ioctl function in drivers/video/sis/sis_main.c in the Linux kernel before 2.6.36-rc6 does not properly initialize a certain structure member, which allows local users to obtain potentially sensitive information from kernel stack memory via an FBIOGET_VBLANK ioctl call.
0
Attacker Value
Unknown

CVE-2010-2962

Disclosure Date: November 26, 2010 (last updated October 04, 2023)
drivers/gpu/drm/i915/i915_gem.c in the Graphics Execution Manager (GEM) in the Intel i915 driver in the Direct Rendering Manager (DRM) subsystem in the Linux kernel before 2.6.36 does not properly validate pointers to blocks of memory, which allows local users to write to arbitrary kernel memory locations, and consequently gain privileges, via crafted use of the ioctl interface, related to (1) pwrite and (2) pread operations.
0
Attacker Value
Unknown

CVE-2010-3432

Disclosure Date: November 22, 2010 (last updated October 04, 2023)
The sctp_packet_config function in net/sctp/output.c in the Linux kernel before 2.6.35.6 performs extraneous initializations of packet data structures, which allows remote attackers to cause a denial of service (panic) via a certain sequence of SCTP traffic.
0
Attacker Value
Unknown

CVE-2010-4165

Disclosure Date: November 22, 2010 (last updated October 04, 2023)
The do_tcp_setsockopt function in net/ipv4/tcp.c in the Linux kernel before 2.6.37-rc2 does not properly restrict TCP_MAXSEG (aka MSS) values, which allows local users to cause a denial of service (OOPS) via a setsockopt call that specifies a small value, leading to a divide-by-zero error or incorrect use of a signed integer.
0
Attacker Value
Unknown

CVE-2010-4169

Disclosure Date: November 22, 2010 (last updated October 04, 2023)
Use-after-free vulnerability in mm/mprotect.c in the Linux kernel before 2.6.37-rc2 allows local users to cause a denial of service via vectors involving an mprotect system call.
0
Attacker Value
Unknown

CVE-2010-3442

Disclosure Date: October 04, 2010 (last updated October 04, 2023)
Multiple integer overflows in the snd_ctl_new function in sound/core/control.c in the Linux kernel before 2.6.36-rc5-next-20100929 allow local users to cause a denial of service (heap memory corruption) or possibly have unspecified other impact via a crafted (1) SNDRV_CTL_IOCTL_ELEM_ADD or (2) SNDRV_CTL_IOCTL_ELEM_REPLACE ioctl call.
0
Attacker Value
Unknown

CVE-2010-3437

Disclosure Date: October 04, 2010 (last updated October 04, 2023)
Integer signedness error in the pkt_find_dev_from_minor function in drivers/block/pktcdvd.c in the Linux kernel before 2.6.36-rc6 allows local users to obtain sensitive information from kernel memory or cause a denial of service (invalid pointer dereference and system crash) via a crafted index value in a PKT_CTRL_CMD_STATUS ioctl call.
0
Attacker Value
Unknown

CVE-2010-3296

Disclosure Date: September 30, 2010 (last updated October 04, 2023)
The cxgb_extension_ioctl function in drivers/net/cxgb3/cxgb3_main.c in the Linux kernel before 2.6.36-rc5 does not properly initialize a certain structure member, which allows local users to obtain potentially sensitive information from kernel stack memory via a CHELSIO_GET_QSET_NUM ioctl call.
0
Attacker Value
Unknown

CVE-2010-3298

Disclosure Date: September 30, 2010 (last updated October 04, 2023)
The hso_get_count function in drivers/net/usb/hso.c in the Linux kernel before 2.6.36-rc5 does not properly initialize a certain structure member, which allows local users to obtain potentially sensitive information from kernel stack memory via a TIOCGICOUNT ioctl call.
0