Page 558 of 2833 results (0.018 seconds)

CVSS: 7.2EPSS: 0%CPEs: 29EXPL: 1

Raw character devices (raw.c) in the Linux kernel 2.6.x call the wrong function before passing an ioctl to the block device, which crosses security boundaries by making kernel address space accessible from user space, a similar vulnerability to CVE-2005-1589. • http://archives.neohapsis.com/archives/vulnwatch/2005-q2/0045.html http://archives.neohapsis.com/archives/vulnwatch/2005-q2/0046.html http://kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.11.10 http://marc.info/?l=linux-kernel&m=111630512512222 http://www.redhat.com/support/errata/RHSA-2005-420.html http://www.securityfocus.com/archive/1/427980/100/0/threaded http://www.securityfocus.com/bid/13651 http://www.vupen.com/english/advisories/2005/0557 https://oval.cisec •

CVSS: 7.2EPSS: 0%CPEs: 129EXPL: 1

The elf_core_dump function in binfmt_elf.c for Linux kernel 2.x.x to 2.2.27-rc2, 2.4.x to 2.4.31-pre1, and 2.6.x to 2.6.12-rc4 allows local users to execute arbitrary code via an ELF binary that, in certain conditions involving the create_elf_tables function, causes a negative length argument to pass a signed integer comparison, leading to a buffer overflow. • https://www.exploit-db.com/exploits/25647 ftp://patches.sgi.com/support/free/security/advisories/20060402-01-U http://secunia.com/advisories/19185 http://secunia.com/advisories/19607 http://www.isec.pl/vulnerabilities/isec-0023-coredump.txt http://www.redhat.com/support/errata/RHSA-2005-472.html http://www.redhat.com/support/errata/RHSA-2005-529.html http://www.redhat.com/support/errata/RHSA-2005-551.html http://www.securityfocus.com/archive/1/397966 http://www.secur •

CVSS: 1.2EPSS: 0%CPEs: 34EXPL: 0

The key_user_lookup function in security/keys/key.c in Linux kernel 2.6.10 to 2.6.11.8 may allow attackers to cause a denial of service (oops) via SMP. • http://kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.11.8 http://linux.bkbits.net:8080/linux-2.6/cset%40423078fafVa6mAyny23YZ87hDipmTw http://www.securityfocus.com/archive/1/427980/100/0/threaded •

CVSS: 7.2EPSS: 0%CPEs: 259EXPL: 0

The load_elf_library in the Linux kernel before 2.6.11.6 allows local users to cause a denial of service (kernel crash) via a crafted ELF library or executable, which causes a free of an invalid pointer. • ftp://patches.sgi.com/support/free/security/advisories/20060402-01-U http://kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.11.6 http://secunia.com/advisories/14713 http://secunia.com/advisories/19607 http://www.redhat.com/support/errata/RHSA-2005-293.html http://www.redhat.com/support/errata/RHSA-2005-366.html http://www.redhat.com/support/errata/RHSA-2005-529.html http://www.redhat.com/support/errata/RHSA-2005-551.html http://www.securityfocus.com/bid/12935 •

CVSS: 6.4EPSS: 0%CPEs: 247EXPL: 2

Multiple "range checking flaws" in the ISO9660 filesystem handler in Linux 2.6.11 and earlier may allow attackers to cause a denial of service or corrupt memory via a crafted filesystem. • https://www.exploit-db.com/exploits/25234 http://kernel.org/pub/linux/kernel/v2.6/testing/ChangeLog-2.6.12-rc1 http://secunia.com/advisories/17002 http://secunia.com/advisories/18684 http://www.mandriva.com/security/advisories?name=MDKSA-2006:072 http://www.redhat.com/support/errata/RHSA-2005-366.html http://www.redhat.com/support/errata/RHSA-2005-663.html http://www.redhat.com/support/errata/RHSA-2006-0190.html http://www.redhat.com/support/errata/RHSA-2006-0191& •