Show filters
95 Total Results
Displaying 71-80 of 95
Sort by:
Attacker Value
Unknown
CVE-2013-1858
Disclosure Date: April 05, 2013 (last updated October 05, 2023)
The clone system-call implementation in the Linux kernel before 3.8.3 does not properly handle a combination of the CLONE_NEWUSER and CLONE_FS flags, which allows local users to gain privileges by calling chroot and leveraging the sharing of the / directory between a parent process and a child process.
0
Attacker Value
Unknown
CVE-2013-2548
Disclosure Date: March 15, 2013 (last updated October 05, 2023)
The crypto_report_one function in crypto/crypto_user.c in the report API in the crypto user configuration API in the Linux kernel through 3.8.2 uses an incorrect length value during a copy operation, which allows local users to obtain sensitive information from kernel memory by leveraging the CAP_NET_ADMIN capability.
0
Attacker Value
Unknown
CVE-2013-2547
Disclosure Date: March 15, 2013 (last updated October 05, 2023)
The crypto_report_one function in crypto/crypto_user.c in the report API in the crypto user configuration API in the Linux kernel through 3.8.2 does not initialize certain structure members, which allows local users to obtain sensitive information from kernel heap memory by leveraging the CAP_NET_ADMIN capability.
0
Attacker Value
Unknown
CVE-2013-2546
Disclosure Date: March 15, 2013 (last updated October 05, 2023)
The report API in the crypto user configuration API in the Linux kernel through 3.8.2 uses an incorrect C library function for copying strings, which allows local users to obtain sensitive information from kernel stack memory by leveraging the CAP_NET_ADMIN capability.
0
Attacker Value
Unknown
CVE-2013-1819
Disclosure Date: March 06, 2013 (last updated October 05, 2023)
The _xfs_buf_find function in fs/xfs/xfs_buf.c in the Linux kernel before 3.7.6 does not validate block numbers, which allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact by leveraging the ability to mount an XFS filesystem containing a metadata inode with an invalid extent map.
0
Attacker Value
Unknown
CVE-2013-0228
Disclosure Date: March 01, 2013 (last updated October 05, 2023)
The xen_iret function in arch/x86/xen/xen-asm_32.S in the Linux kernel before 3.7.9 on 32-bit Xen paravirt_ops platforms does not properly handle an invalid value in the DS segment register, which allows guest OS users to gain guest OS privileges via a crafted application.
0
Attacker Value
Unknown
CVE-2013-1767
Disclosure Date: February 28, 2013 (last updated October 05, 2023)
Use-after-free vulnerability in the shmem_remount_fs function in mm/shmem.c in the Linux kernel before 3.7.10 allows local users to gain privileges or cause a denial of service (system crash) by remounting a tmpfs filesystem without specifying a required mpol (aka mempolicy) mount option.
0
Attacker Value
Unknown
CVE-2013-0343
Disclosure Date: February 28, 2013 (last updated October 05, 2023)
The ipv6_create_tempaddr function in net/ipv6/addrconf.c in the Linux kernel through 3.8 does not properly handle problems with the generation of IPv6 temporary addresses, which allows remote attackers to cause a denial of service (excessive retries and address-generation outage), and consequently obtain sensitive information, via ICMPv6 Router Advertisement (RA) messages.
0
Attacker Value
Unknown
CVE-2012-4542
Disclosure Date: February 28, 2013 (last updated October 05, 2023)
block/scsi_ioctl.c in the Linux kernel through 3.8 does not properly consider the SCSI device class during authorization of SCSI commands, which allows local users to bypass intended access restrictions via an SG_IO ioctl call that leverages overlapping opcodes.
0
Attacker Value
Unknown
CVE-2013-1774
Disclosure Date: February 28, 2013 (last updated October 05, 2023)
The chase_port function in drivers/usb/serial/io_ti.c in the Linux kernel before 3.7.4 allows local users to cause a denial of service (NULL pointer dereference and system crash) via an attempted /dev/ttyUSB read or write operation on a disconnected Edgeport USB serial converter.
0