Skip to main content

Vendor archive

linux CVEs

Beta · best-effort

18,652 CVEs tagged to vendor linux1,020 Critical, 6,127 High, 10,931 Medium, 574 Low, 0 Unrated.

CVE-2010-2071

Published Jun 16, 2010

The btrfs_xattr_set_acl function in fs/btrfs/acl.c in btrfs in the Linux kernel 2.6.34 and earlier does not check file ownership before setting an ACL, which allows local users to…

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-2298

Published Jun 15, 2010

browser/renderer_host/database_dispatcher_host.cc in Google Chrome before 5.0.375.70 on Linux does not properly handle ViewHostMsg_DatabaseOpenFile messages in chroot-based sandbo…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2010-1636

Published Jun 8, 2010

The btrfs_ioctl_clone function in fs/btrfs/ioctl.c in the btrfs functionality in the Linux kernel 2.6.29 through 2.6.32, and possibly other versions, does not ensure that a cloned…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2010-1643

Published Jun 3, 2010

mm/shmem.c in the Linux kernel before 2.6.28-rc3, when strict overcommit is enabled, does not properly handle the export of shmemfs objects by knfsd, which allows attackers to cau…

CVSS 6.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-7256

Published Jun 3, 2010

mm/shmem.c in the Linux kernel before 2.6.28-rc8, when strict overcommit is enabled and CONFIG_SECURITY is disabled, does not properly handle the export of shmemfs objects by knfs…

CVSS 1.2 · Low
Vendor/product tagsBeta · best-effort

CVE-2010-1641

Published Jun 1, 2010

The do_gfs2_set_flags function in fs/gfs2/file.c in the Linux kernel before 2.6.34-git10 does not verify the ownership of a file, which allows local users to bypass intended acces…

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-1446

Published May 21, 2010

arch/powerpc/mm/fsl_booke_mmu.c in KGDB in the Linux kernel 2.6.30 and other versions before 2.6.33, when running on PowerPC, does not properly perform a security check for access…

CVSS 1.9 · Low
Vendor/product tagsBeta · best-effort

CVE-2010-1436

Published May 21, 2010

gfs2 in the Linux kernel 2.6.18, and possibly other versions, does not properly handle when the gfs2_quota struct occupies two separate pages, which allows local users to cause a…

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-1451

Published May 7, 2010

The TSB I-TLB load implementation in arch/sparc/kernel/tsb.S in the Linux kernel before 2.6.33 on the SPARC platform does not properly obtain the value of a certain _PAGE_EXEC_4U…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2010-1173

Published May 7, 2010

The sctp_process_unk_param function in net/sctp/sm_make_chunk.c in the Linux kernel 2.6.33.3 and earlier, when SCTP is enabled, allows remote attackers to cause a denial of servic…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2010-1488

Published Apr 20, 2010

The proc_oom_score function in fs/proc/base.c in the Linux kernel before 2.6.34-rc4 uses inappropriate data structures during selection of a candidate for the OOM killer, which mi…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2010-1162

Published Apr 20, 2010

The release_one_tty function in drivers/char/tty_io.c in the Linux kernel before 2.6.34-rc4 omits certain required calls to the put_pid function, which has unspecified impact and…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2010-1146

Published Apr 12, 2010

The Linux kernel 2.6.33.2 and earlier, when a ReiserFS filesystem exists, does not restrict read or write access to the .reiserfs_priv directory, which allows local users to gain…

CVSS 6.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-1148

Published Apr 12, 2010

The cifs_create function in fs/cifs/dir.c in the Linux kernel 2.6.33.2 and earlier allows local users to cause a denial of service (NULL pointer dereference and OOPS) or possibly…

CVSS 4.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-1088

Published Apr 6, 2010

fs/namei.c in Linux kernel 2.6.18 through 2.6.34 does not always follow NFS automount "symlinks," which allows attackers to have an unknown impact, related to LOOKUP_FOLLOW.

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-1087

Published Apr 6, 2010

The nfs_wait_on_request function in fs/nfs/pagelist.c in Linux kernel 2.6.x through 2.6.33-rc5 allows attackers to cause a denial of service (Oops) via unknown vectors related to…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2010-1086

Published Apr 6, 2010

The ULE decapsulation functionality in drivers/media/dvb/dvb-core/dvb_net.c in dvb-core in Linux kernel 2.6.33 and earlier allows attackers to cause a denial of service (infinite…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort
Showing 17,901-17,925 of 18,652 CVEsPage 717 of 747