Skip to main content

Vendor archive

linux CVEs

Beta · best-effort

18,770 CVEs tagged to vendor linux1,099 Critical, 6,548 High, 10,550 Medium, 573 Low, 0 Unrated.

CVE-2010-4650

Published Jun 21, 2012

Buffer overflow in the fuse_do_ioctl function in fs/fuse/file.c in the Linux kernel before 2.6.37 allows local users to cause a denial of service or possibly have unspecified othe…

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-4648

Published Jun 21, 2012

The orinoco_ioctl_set_auth function in drivers/net/wireless/orinoco/wext.c in the Linux kernel before 2.6.37 does not properly implement a TKIP protection mechanism, which makes i…

CVSS 3.3 · Low
Vendor/product tagsBeta · best-effort

CVE-2010-4250

Published Jun 21, 2012

Memory leak in the inotify_init1 function in fs/notify/inotify/inotify_user.c in the Linux kernel before 2.6.37 allows local users to cause a denial of service (memory consumption…

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-1583

Published Jun 16, 2012

Double free vulnerability in the xfrm6_tunnel_rcv function in net/ipv6/xfrm6_tunnel.c in the Linux kernel before 2.6.22, when the xfrm6_tunnel module is enabled, allows remote att…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-2390

Published Jun 13, 2012

Memory leak in mm/hugetlb.c in the Linux kernel before 3.4.2 allows local users to cause a denial of service (memory consumption or system crash) via invalid MAP_HUGETLB mmap oper…

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-2384

Published Jun 13, 2012

Integer overflow in the i915_gem_do_execbuffer function in drivers/gpu/drm/i915/i915_gem_execbuffer.c in the Direct Rendering Manager (DRM) subsystem in the Linux kernel before 3.…

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-2383

Published Jun 13, 2012

Integer overflow in the i915_gem_execbuffer2 function in drivers/gpu/drm/i915/i915_gem_execbuffer.c in the Direct Rendering Manager (DRM) subsystem in the Linux kernel before 3.3.…

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-2375

Published Jun 13, 2012

The __nfs4_get_acl_uncached function in fs/nfs/nfs4proc.c in the NFSv4 implementation in the Linux kernel before 3.3.2 uses an incorrect length variable during a copy operation, w…

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-2313

Published Jun 13, 2012

The rio_ioctl function in drivers/net/ethernet/dlink/dl2k.c in the Linux kernel before 3.3.7 does not restrict access to the SIOCSMIIREG command, which allows local users to write…

CVSS 1.2 · Low

CVE-2011-2496

Published Jun 13, 2012

Integer overflow in the vma_to_resize function in mm/mremap.c in the Linux kernel before 2.6.39 allows local users to cause a denial of service (BUG_ON and system crash) via a cra…

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2011-2495

Published Jun 13, 2012

fs/proc/base.c in the Linux kernel before 2.6.39.4 does not properly restrict access to /proc/#####/io files, which allows local users to obtain sensitive I/O statistics by pollin…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2011-2494

Published Jun 13, 2012

kernel/taskstats.c in the Linux kernel before 3.1 allows local users to obtain sensitive I/O statistics by sending taskstats commands to a netlink socket, as demonstrated by disco…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2011-2493

Published Jun 13, 2012

The ext4_fill_super function in fs/ext4/super.c in the Linux kernel before 2.6.39 does not properly initialize a certain error-report data structure, which allows local users to c…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2011-2211

Published Jun 13, 2012

The osf_wait4 function in arch/alpha/kernel/osf_sys.c in the Linux kernel before 2.6.39.4 on the Alpha platform uses an incorrect pointer, which allows local users to gain privile…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2011-2210

Published Jun 13, 2012

The osf_getsysinfo function in arch/alpha/kernel/osf_sys.c in the Linux kernel before 2.6.39.4 on the Alpha platform does not properly restrict the data size for GSI_GET_HWRPB ope…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2011-2209

Published Jun 13, 2012

Integer signedness error in the osf_sysinfo function in arch/alpha/kernel/osf_sys.c in the Linux kernel before 2.6.39.4 on the Alpha platform allows local users to obtain sensitiv…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2011-2208

Published Jun 13, 2012

Integer signedness error in the osf_getdomainname function in arch/alpha/kernel/osf_sys.c in the Linux kernel before 2.6.39.4 on the Alpha platform allows local users to obtain se…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2011-2183

Published Jun 13, 2012

Race condition in the scan_get_next_rmap_item function in mm/ksm.c in the Linux kernel before 2.6.39.3, when Kernel SamePage Merging (KSM) is enabled, allows local users to cause…

CVSS 4.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2011-2182

Published Jun 13, 2012

The ldm_frag_add function in fs/partitions/ldm.c in the Linux kernel before 2.6.39.1 does not properly handle memory allocation for non-initial fragments, which might allow local…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2011-1927

Published Jun 13, 2012

The ip_expire function in net/ipv4/ip_fragment.c in the Linux kernel before 2.6.39 does not properly construct ICMP_TIME_EXCEEDED packets after a timeout, which allows remote atta…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2011-1768

Published Jun 13, 2012

The tunnels implementation in the Linux kernel before 2.6.34, when tunnel functionality is configured as a module, allows remote attackers to cause a denial of service (OOPS) by s…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2011-1767

Published Jun 13, 2012

net/ipv4/ip_gre.c in the Linux kernel before 2.6.34, when ip_gre is configured as a module, allows remote attackers to cause a denial of service (OOPS) by sending a packet during…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2011-1759

Published Jun 13, 2012

Integer overflow in the sys_oabi_semtimedop function in arch/arm/kernel/sys_oabi-compat.c in the Linux kernel before 2.6.39 on the ARM platform, when CONFIG_OABI_COMPAT is enabled…

CVSS 6.2 · Medium
Vendor/product tagsBeta · best-effort
Showing 17,626-17,650 of 18,770 CVEsPage 706 of 751