Show filters
99 Total Results
Displaying 91-99 of 99
Sort by:
Attacker Value
Unknown
CVE-2007-4567
Disclosure Date: December 21, 2007 (last updated October 04, 2023)
The ipv6_hop_jumbo function in net/ipv6/exthdrs.c in the Linux kernel before 2.6.22 does not properly validate the hop-by-hop IPv6 extended header, which allows remote attackers to cause a denial of service (NULL pointer dereference and kernel panic) via a crafted IPv6 packet.
0
Attacker Value
Unknown
CVE-2007-3740
Disclosure Date: September 14, 2007 (last updated October 04, 2023)
The CIFS filesystem in the Linux kernel before 2.6.22, when Unix extension support is enabled, does not honor the umask of a process, which allows local users to gain privileges.
0
Attacker Value
Unknown
CVE-2007-3107
Disclosure Date: July 10, 2007 (last updated October 04, 2023)
The signal handling in the Linux kernel before 2.6.22, including 2.6.2, when running on PowerPC systems using HTX, allows local users to cause a denial of service via unspecified vectors involving floating point corruption and concurrency, related to clearing of MSR bits.
0
Attacker Value
Unknown
CVE-2007-3642
Disclosure Date: July 10, 2007 (last updated October 04, 2023)
The decode_choice function in net/netfilter/nf_conntrack_h323_asn1.c in the Linux kernel before 2.6.20.15, 2.6.21.x before 2.6.21.6, and before 2.6.22 allows remote attackers to cause a denial of service (crash) via an encoded, out-of-range index value for a choice field, which triggers a NULL pointer dereference.
0
Attacker Value
Unknown
CVE-2007-1861
Disclosure Date: May 07, 2007 (last updated October 04, 2023)
The nl_fib_lookup function in net/ipv4/fib_frontend.c in Linux Kernel before 2.6.20.8 allows attackers to cause a denial of service (kernel panic) via NETLINK_FIB_LOOKUP replies, which trigger infinite recursion and a stack overflow.
0
Attacker Value
Unknown
CVE-2007-1592
Disclosure Date: March 22, 2007 (last updated October 04, 2023)
net/ipv6/tcp_ipv6.c in Linux kernel 2.6.x up to 2.6.21-rc3 inadvertently copies the ipv6_fl_socklist from a listening TCP socket to child sockets, which allows local users to cause a denial of service (OOPS) or double free by opening a listening IPv6 socket, attaching a flow label, and connecting to that socket.
0
Attacker Value
Unknown
CVE-2007-1388
Disclosure Date: March 10, 2007 (last updated October 04, 2023)
The do_ipv6_setsockopt function in net/ipv6/ipv6_sockglue.c in Linux kernel before 2.6.20, and possibly other versions, allows local users to cause a denial of service (oops) by calling setsockopt with the IPV6_RTHDR option name and possibly a zero option length or invalid option value, which triggers a NULL pointer dereference.
0
Attacker Value
Unknown
CVE-2007-0772
Disclosure Date: February 20, 2007 (last updated October 04, 2023)
The Linux kernel 2.6.13 and other versions before 2.6.20.1 allows remote attackers to cause a denial of service (oops) via a crafted NFSACL 2 ACCESS request that triggers a free of an incorrect pointer.
0
Attacker Value
Unknown
CVE-2006-6106
Disclosure Date: December 19, 2006 (last updated October 04, 2023)
Multiple buffer overflows in the cmtp_recv_interopmsg function in the Bluetooth driver (net/bluetooth/cmtp/capi.c) in the Linux kernel 2.4.22 up to 2.4.33.4 and 2.6.2 before 2.6.18.6, and 2.6.19.x, allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via CAPI messages with a large value for the length of the (1) manu (manufacturer) or (2) serial (serial number) field.
0