Show filters
78 Total Results
Displaying 71-78 of 78
Sort by:
Attacker Value
Unknown
CVE-2008-1669
Disclosure Date: May 08, 2008 (last updated October 04, 2023)
Linux kernel before 2.6.25.2 does not apply a certain protection mechanism for fcntl functionality, which allows local users to (1) execute code in parallel or (2) exploit a race condition to obtain "re-ordered access to the descriptor table."
0
Attacker Value
Unknown
CVE-2008-1675
Disclosure Date: May 02, 2008 (last updated October 04, 2023)
The bdx_ioctl_priv function in the tehuti driver (tehuti.c) in Linux kernel 2.6.x before 2.6.25.1 does not properly check certain information related to register size, which has unspecified impact and local attack vectors, probably related to reading or writing kernel memory.
0
Attacker Value
Unknown
CVE-2008-1514
Disclosure Date: March 26, 2008 (last updated October 04, 2023)
arch/s390/kernel/ptrace.c in Linux kernel 2.6.9, and other versions before 2.6.27-rc6, on s390 platforms allows local users to cause a denial of service (kernel panic) via the user-area-padding test from the ptrace testsuite in 31-bit mode, which triggers an invalid dereference.
0
Attacker Value
Unknown
CVE-2008-0010
Disclosure Date: February 12, 2008 (last updated October 04, 2023)
The copy_from_user_mmap_sem function in fs/splice.c in the Linux kernel 2.6.22 through 2.6.24 does not validate a certain userspace pointer before dereference, which allow local users to read from arbitrary kernel memory locations.
0
Attacker Value
Unknown
CVE-2008-0600
Disclosure Date: February 12, 2008 (last updated October 04, 2023)
The vmsplice_to_pipe function in Linux kernel 2.6.17 through 2.6.24.1 does not validate a certain userspace pointer before dereference, which allows local users to gain root privileges via crafted arguments in a vmsplice system call, a different vulnerability than CVE-2008-0009 and CVE-2008-0010.
0
Attacker Value
Unknown
CVE-2008-0009
Disclosure Date: February 12, 2008 (last updated October 04, 2023)
The vmsplice_to_user function in fs/splice.c in the Linux kernel 2.6.22 through 2.6.24 does not validate a certain userspace pointer before dereference, which might allow local users to access arbitrary kernel memory locations.
0
Attacker Value
Unknown
CVE-2007-5501
Disclosure Date: November 15, 2007 (last updated October 04, 2023)
The tcp_sacktag_write_queue function in net/ipv4/tcp_input.c in Linux kernel 2.6.21 through 2.6.23.7, and 2.6.24-rc through 2.6.24-rc2, allows remote attackers to cause a denial of service (crash) via crafted ACK responses that trigger a NULL pointer dereference.
0
Attacker Value
Unknown
CVE-2006-6058
Disclosure Date: November 22, 2006 (last updated October 04, 2023)
The minix filesystem code in Linux kernel 2.6.x before 2.6.24, including 2.6.18, allows local users to cause a denial of service (hang) via a malformed minix file stream that triggers an infinite loop in the minix_bmap function. NOTE: this issue might be due to an integer overflow or signedness error.
0