Show filters
74 Total Results
Displaying 71-74 of 74
Sort by:
Attacker Value
Unknown
CVE-2013-1958
Disclosure Date: April 24, 2013 (last updated October 05, 2023)
The scm_check_creds function in net/core/scm.c in the Linux kernel before 3.8.6 does not properly enforce capability requirements for controlling the PID value associated with a UNIX domain socket, which allows local users to bypass intended access restrictions by leveraging the time interval during which a user namespace has been created but a PID namespace has not been created.
0
Attacker Value
Unknown
CVE-2013-1797
Disclosure Date: March 22, 2013 (last updated October 05, 2023)
Use-after-free vulnerability in arch/x86/kvm/x86.c in the Linux kernel through 3.8.4 allows guest OS users to cause a denial of service (host OS memory corruption) or possibly have unspecified other impact via a crafted application that triggers use of a guest physical address (GPA) in (1) movable or (2) removable memory during an MSR_KVM_SYSTEM_TIME kvm_set_msr_common operation.
0
Attacker Value
Unknown
CVE-2013-1796
Disclosure Date: March 22, 2013 (last updated October 05, 2023)
The kvm_set_msr_common function in arch/x86/kvm/x86.c in the Linux kernel through 3.8.4 does not ensure a required time_page alignment during an MSR_KVM_SYSTEM_TIME operation, which allows guest OS users to cause a denial of service (buffer overflow and host OS memory corruption) or possibly have unspecified other impact via a crafted application.
0
Attacker Value
Unknown
CVE-2013-1798
Disclosure Date: March 22, 2013 (last updated October 05, 2023)
The ioapic_read_indirect function in virt/kvm/ioapic.c in the Linux kernel through 3.8.4 does not properly handle a certain combination of invalid IOAPIC_REG_SELECT and IOAPIC_REG_WINDOW operations, which allows guest OS users to obtain sensitive information from host OS memory or cause a denial of service (host OS OOPS) via a crafted application.
0