Show filters
105 Total Results
Displaying 91-100 of 105
Sort by:
Attacker Value
Unknown
CVE-2012-4542
Disclosure Date: February 28, 2013 (last updated October 05, 2023)
block/scsi_ioctl.c in the Linux kernel through 3.8 does not properly consider the SCSI device class during authorization of SCSI commands, which allows local users to bypass intended access restrictions via an SG_IO ioctl call that leverages overlapping opcodes.
0
Attacker Value
Unknown
CVE-2013-1774
Disclosure Date: February 28, 2013 (last updated October 05, 2023)
The chase_port function in drivers/usb/serial/io_ti.c in the Linux kernel before 3.7.4 allows local users to cause a denial of service (NULL pointer dereference and system crash) via an attempted /dev/ttyUSB read or write operation on a disconnected Edgeport USB serial converter.
0
Attacker Value
Unknown
CVE-2013-0349
Disclosure Date: February 28, 2013 (last updated October 05, 2023)
The hidp_setup_hid function in net/bluetooth/hidp/core.c in the Linux kernel before 3.7.6 does not properly copy a certain name field, which allows local users to obtain sensitive information from kernel memory by setting a long name and making an HIDPCONNADD ioctl call.
0
Attacker Value
Unknown
CVE-2013-0313
Disclosure Date: February 22, 2013 (last updated October 05, 2023)
The evm_update_evmxattr function in security/integrity/evm/evm_crypto.c in the Linux kernel before 3.7.5, when the Extended Verification Module (EVM) is enabled, allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact via an attempted removexattr operation on an inode of a sockfs filesystem.
0
Attacker Value
Unknown
CVE-2013-0311
Disclosure Date: February 22, 2013 (last updated October 05, 2023)
The translate_desc function in drivers/vhost/vhost.c in the Linux kernel before 3.7 does not properly handle cross-region descriptors, which allows guest OS users to obtain host OS privileges by leveraging KVM guest OS privileges.
0
Attacker Value
Unknown
CVE-2013-0290
Disclosure Date: February 19, 2013 (last updated October 05, 2023)
The __skb_recv_datagram function in net/core/datagram.c in the Linux kernel before 3.8 does not properly handle the MSG_PEEK flag with zero-length data, which allows local users to cause a denial of service (infinite loop and system hang) via a crafted application.
0
Attacker Value
Unknown
CVE-2012-5374
Disclosure Date: February 18, 2013 (last updated October 05, 2023)
The CRC32C feature in the Btrfs implementation in the Linux kernel before 3.8-rc1 allows local users to cause a denial of service (extended runtime of kernel code) by creating many different files whose names are associated with the same CRC32C hash value.
0
Attacker Value
Unknown
CVE-2012-5375
Disclosure Date: February 18, 2013 (last updated October 05, 2023)
The CRC32C feature in the Btrfs implementation in the Linux kernel before 3.8-rc1 allows local users to cause a denial of service (prevention of file creation) by leveraging the ability to write to a directory important to the victim, and creating a file with a crafted name that is associated with a specific CRC32C hash value.
0
Attacker Value
Unknown
CVE-2012-4530
Disclosure Date: February 18, 2013 (last updated October 05, 2023)
The load_script function in fs/binfmt_script.c in the Linux kernel before 3.7.2 does not properly handle recursion, which allows local users to obtain sensitive information from kernel stack memory via a crafted application.
0
Attacker Value
Unknown
CVE-2013-0268
Disclosure Date: February 18, 2013 (last updated October 05, 2023)
The msr_open function in arch/x86/kernel/msr.c in the Linux kernel before 3.7.6 allows local users to bypass intended capability restrictions by executing a crafted application as root, as demonstrated by msr32.c.
0