Show filters
85 Total Results
Displaying 61-70 of 85
Sort by:
Attacker Value
Unknown

CVE-2013-4125

Disclosure Date: July 15, 2013 (last updated October 05, 2023)
The fib6_add_rt2node function in net/ipv6/ip6_fib.c in the IPv6 stack in the Linux kernel through 3.10.1 does not properly handle Router Advertisement (RA) messages in certain circumstances involving three routes that initially qualified for membership in an ECMP route set until a change occurred for one of the first two routes, which allows remote attackers to cause a denial of service (system crash) via a crafted sequence of messages.
0
Attacker Value
Unknown

CVE-2013-2232

Disclosure Date: July 04, 2013 (last updated October 05, 2023)
The ip6_sk_dst_check function in net/ipv6/ip6_output.c in the Linux kernel before 3.10 allows local users to cause a denial of service (system crash) by using an AF_INET6 socket for a connection to an IPv4 interface.
0
Attacker Value
Unknown

CVE-2013-2234

Disclosure Date: July 04, 2013 (last updated October 05, 2023)
The (1) key_notify_sa_flush and (2) key_notify_policy_flush functions in net/key/af_key.c in the Linux kernel before 3.10 do not initialize certain structure members, which allows local users to obtain sensitive information from kernel heap memory by reading a broadcast message from the notify interface of an IPSec key_socket.
0
Attacker Value
Unknown

CVE-2013-2164

Disclosure Date: July 04, 2013 (last updated October 05, 2023)
The mmc_ioctl_cdrom_read_data function in drivers/cdrom/cdrom.c in the Linux kernel through 3.10 allows local users to obtain sensitive information from kernel memory via a read operation on a malfunctioning CD-ROM drive.
0
Attacker Value
Unknown

CVE-2013-2851

Disclosure Date: June 07, 2013 (last updated October 05, 2023)
Format string vulnerability in the register_disk function in block/genhd.c in the Linux kernel through 3.9.4 allows local users to gain privileges by leveraging root access and writing format string specifiers to /sys/module/md_mod/parameters/new_array in order to create a crafted /dev/md device name.
0
Attacker Value
Unknown

CVE-2013-2148

Disclosure Date: June 07, 2013 (last updated October 05, 2023)
The fill_event_metadata function in fs/notify/fanotify/fanotify_user.c in the Linux kernel through 3.9.4 does not initialize a certain structure member, which allows local users to obtain sensitive information from kernel memory via a read operation on the fanotify descriptor.
0
Attacker Value
Unknown

CVE-2013-2147

Disclosure Date: June 07, 2013 (last updated October 05, 2023)
The HP Smart Array controller disk-array driver and Compaq SMART2 controller disk-array driver in the Linux kernel through 3.9.4 do not initialize certain data structures, which allows local users to obtain sensitive information from kernel memory via (1) a crafted IDAGETPCIINFO command for a /dev/ida device, related to the ida_locked_ioctl function in drivers/block/cpqarray.c or (2) a crafted CCISS_PASSTHRU32 command for a /dev/cciss device, related to the cciss_ioctl32_passthru function in drivers/block/cciss.c.
0
Attacker Value
Unknown

CVE-2013-3224

Disclosure Date: April 22, 2013 (last updated October 05, 2023)
The bt_sock_recvmsg function in net/bluetooth/af_bluetooth.c in the Linux kernel before 3.9-rc7 does not properly initialize a certain length variable, which allows local users to obtain sensitive information from kernel stack memory via a crafted recvmsg or recvfrom system call.
0
Attacker Value
Unknown

CVE-2013-3228

Disclosure Date: April 22, 2013 (last updated October 05, 2023)
The irda_recvmsg_dgram function in net/irda/af_irda.c in the Linux kernel before 3.9-rc7 does not initialize a certain length variable, which allows local users to obtain sensitive information from kernel stack memory via a crafted recvmsg or recvfrom system call.
0
Attacker Value
Unknown

CVE-2013-3225

Disclosure Date: April 22, 2013 (last updated October 05, 2023)
The rfcomm_sock_recvmsg function in net/bluetooth/rfcomm/sock.c in the Linux kernel before 3.9-rc7 does not initialize a certain length variable, which allows local users to obtain sensitive information from kernel stack memory via a crafted recvmsg or recvfrom system call.
0