Page 323 of 3415 results (0.012 seconds)

CVSS: 7.8EPSS: 0%CPEs: 5EXPL: 1

24 Feb 2005 — The reiserfs_copy_from_user_to_file_region function in reiserfs/file.c for Linux kernel 2.6.10 and 2.6.11 before 2.6.11-rc4, when running on 64-bit architectures, may allow local users to trigger a buffer overflow as a result of casting discrepancies between size_t and int data types. • http://linux.bkbits.net:8080/linux-2.6/cset%4042018227TkNpHlX6BefnItV_GqMmzQ •

CVSS: 5.5EPSS: 0%CPEs: 2EXPL: 1

24 Feb 2005 — Signedness error in the copy_from_read_buf function in n_tty.c for Linux kernel 2.6.10 and 2.6.11rc1 allows local users to read kernel memory via a negative argument. • http://distro.conectiva.com.br/atualizacoes/index.php?id=a&anuncio=000930 •

CVSS: 7.8EPSS: 0%CPEs: 107EXPL: 0

22 Feb 2005 — Some futex functions in futex.c for Linux kernel 2.6.x perform get_user calls while holding the mmap_sem semaphore, which could allow local users to cause a deadlock condition in do_page_fault by triggering get_user faults while another thread is executing mmap or other functions. • http://linux.bkbits.net:8080/linux-2.6/cset%40421cfc11zFsK9gxvSJ2t__FCmuUd3Q •

CVSS: 9.8EPSS: 0%CPEs: 208EXPL: 0

22 Feb 2005 — Buffer overflow in the MoxaDriverIoctl function for the moxa serial driver (moxa.c) in Linux 2.2.x, 2.4.x, and 2.6.x before 2.6.22 allows local users to execute arbitrary code via a certain modified length value. • http://kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.22 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVSS: 7.1EPSS: 0%CPEs: 10EXPL: 0

21 Feb 2005 — Linux kernel before 2.6.9, when running on the AMD64 and Intel EM64T architectures, allows local users to write to privileged IO ports via the OUTS instruction. • http://secunia.com/advisories/18784 •

CVSS: 7.8EPSS: 0%CPEs: 1EXPL: 0

16 Feb 2005 — nls_ascii.c in Linux before 2.6.8.1 uses an incorrect table size, which allows attackers to cause a denial of service (kernel crash) via a buffer overflow. • http://distro.conectiva.com.br/atualizacoes/index.php?id=a&anuncio=000930 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVSS: 7.5EPSS: 4%CPEs: 9EXPL: 0

16 Feb 2005 — The netfilter/iptables module in Linux before 2.6.8.1 allows remote attackers to cause a denial of service (kernel crash) or bypass firewall rules via crafted packets, which are not properly handled by the skb_checksum_help function. • ftp://patches.sgi.com/support/free/security/advisories/20060402-01-U • CWE-20: Improper Input Validation •

CVSS: 9.1EPSS: 0%CPEs: 280EXPL: 0

16 Feb 2005 — Race condition in the setsid function in Linux before 2.6.8.1 allows local users to cause a denial of service (crash) and possibly access portions of kernel memory, related to TTY changes, locking, and semaphores. • http://distro.conectiva.com.br/atualizacoes/index.php?id=a&anuncio=000930 •

CVSS: 5.5EPSS: 0%CPEs: 1EXPL: 0

15 Feb 2005 — The shmctl function in Linux 2.6.9 and earlier allows local users to unlock the memory of other processes, which could cause sensitive memory to be swapped to disk, which could allow it to be read by other users once it has been released. • ftp://patches.sgi.com/support/free/security/advisories/20060402-01-U •

CVSS: 7.1EPSS: 0%CPEs: 46EXPL: 1

06 Feb 2005 — Multiple integer signedness errors in the sg_scsi_ioctl function in scsi_ioctl.c for Linux 2.6.x allow local users to read or modify kernel memory via negative integers in arguments to the scsi ioctl, which bypass a maximum length check before calling the copy_from_user and copy_to_user functions. • http://distro.conectiva.com.br/atualizacoes/index.php?id=a&anuncio=000930 •