CVE-2007-0005 – Linux Omnikey Cardman 4040 Driver - Local Buffer Overflow (PoC)
https://notcve.org/view.php?id=CVE-2007-0005
Multiple buffer overflows in the (1) read and (2) write handlers in the Omnikey CardMan 4040 driver in the Linux kernel before 2.6.21-rc3 allow local users to gain privileges. Múltiples desbordamientos de búfer en los manejadores de (1) lectura y (2) escritura en el controlador Omnikey CardMan 4040 en el kernel de Linux versiones anteriores a 2.6.21-rc3, permite a usuarios locales alcanzar privilegios. • https://www.exploit-db.com/exploits/3441 http://fedoranews.org/cms/node/2787 http://fedoranews.org/cms/node/2788 http://kernel.org/pub/linux/kernel/v2.6/testing/ChangeLog-2.6.21-rc3 http://secunia.com/advisories/24436 http://secunia.com/advisories/24518 http://secunia.com/advisories/24777 http://secunia.com/advisories/24901 http://secunia.com/advisories/25078 http://secunia.com/advisories/25691 http://secunia.com/advisories/26133 http://secunia.com/advisories • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2007-1217 – Kernel: CAPI overflow
https://notcve.org/view.php?id=CVE-2007-1217
Buffer overflow in the bufprint function in capiutil.c in libcapi, as used in Linux kernel 2.6.9 to 2.6.20 and isdn4k-utils, allows local users to cause a denial of service (crash) and possibly gain privileges via a crafted CAPI packet. Desbordamiento de búfer en la función bufprint en capiutil.c en libcapi, como se usó en el kernel de Linux 2.6.9 a 2.6.20 y isdn4k-utils, permite a usuarios locales provocar denegación de servicio (caida) y posiblemente ganar privilegios a través de paquetes manipulados CAPI. • http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=408530 http://bugzilla.kernel.org/show_bug.cgi?id=8028 http://osvdb.org/34742 http://secunia.com/advisories/24777 http://secunia.com/advisories/26379 http://secunia.com/advisories/26478 http://secunia.com/advisories/26709 http://secunia.com/advisories/26760 http://secunia.com/advisories/27528 http://security.gentoo.org/glsa/glsa-200704-23.xml http://support.avaya.com/elmodocs2/security/ASA-2007-404.htm http://www • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2006-7051 – Linux Kernel 2.6.x - 'sys_timer_create()' Local Denial of Service
https://notcve.org/view.php?id=CVE-2006-7051
The sys_timer_create function in posix-timers.c for Linux kernel 2.6.x allows local users to cause a denial of service (memory consumption) and possibly bypass memory limits or cause other processes to be killed by creating a large number of posix timers, which are allocated in kernel memory but are not treated as part of the process' memory. La función sys_timer_create en posix-timers.c para Linux kernel 2.6.x permite a usuarios locales provocar denegación de servicio (consumo de memoria) y posiblemente evitar límites de memoria o provocar otros procesos sean eliminaod con la creación de un gran número de contadores de tiempo posix, lo cual son destinados en la memoria kernel pero no se consideran como parte del proceso de memoria. • https://www.exploit-db.com/exploits/1657 http://securityreason.com/securityalert/2287 http://www.securityfocus.com/archive/1/430278/30/5790/threaded https://exchange.xforce.ibmcloud.com/vulnerabilities/25712 •
CVE-2007-1089
https://notcve.org/view.php?id=CVE-2007-1089
IBM DB2 Universal Database (UDB) 9.1 GA through 9.1 FP1 allows local users with table SELECT privileges to perform unauthorized UPDATE and DELETE SQL commands via unknown vectors. IBM DB2 Universal Database (UDB) 9.1 GA hasta 9.1 FP1 permite a usuarios locales con privilegios en la tabla SELECT realizar los comandos no autorizados SQL: UPDATE y DELETEa través de vectores desconocidos. • http://secunia.com/advisories/24283 http://www-1.ibm.com/support/docview.wss?uid=swg1JR25941 http://www.attrition.org/pipermail/vim/2007-August/001765.html http://www.vupen.com/english/advisories/2007/0721 •
CVE-2007-1086
https://notcve.org/view.php?id=CVE-2007-1086
Unspecified binaries in IBM DB2 8.x before 8.1 FixPak 15 and 9.1 before Fix Pack 2 allow local users to create or modify arbitrary files via unspecified environment variables related to "unsafe file access." Binarios no especificados en IBM DB2 8.x anterior a 8.1 FixPak 15 y 9.1 anterior a Fix Pack 2 permite a usuarios locales crear o modificar ficheros de su elección a través de entornos variables no especificados relacionados con "accesos de ficheros inseguros". • http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=481 http://osvdb.org/40969 http://www-1.ibm.com/support/docview.wss?uid=swg21255747 http://www.attrition.org/pipermail/vim/2007-August/001765.html http://www.securityfocus.com/bid/22677 https://exchange.xforce.ibmcloud.com/vulnerabilities/32650 •