Total
7696 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2005-1265 | 1 Linux | 1 Linux Kernel | 2024-11-20 | 2.1 LOW | N/A |
The mmap function in the Linux Kernel 2.6.10 can be used to create memory maps with a start address beyond the end address, which allows local users to cause a denial of service (kernel crash). | |||||
CVE-2005-1264 | 1 Linux | 1 Linux Kernel | 2024-11-20 | 7.2 HIGH | N/A |
Raw character devices (raw.c) in the Linux kernel 2.6.x call the wrong function before passing an ioctl to the block device, which crosses security boundaries by making kernel address space accessible from user space, a similar vulnerability to CVE-2005-1589. | |||||
CVE-2005-1263 | 1 Linux | 1 Linux Kernel | 2024-11-20 | 7.2 HIGH | N/A |
The elf_core_dump function in binfmt_elf.c for Linux kernel 2.x.x to 2.2.27-rc2, 2.4.x to 2.4.31-pre1, and 2.6.x to 2.6.12-rc4 allows local users to execute arbitrary code via an ELF binary that, in certain conditions involving the create_elf_tables function, causes a negative length argument to pass a signed integer comparison, leading to a buffer overflow. | |||||
CVE-2005-1041 | 1 Linux | 1 Linux Kernel | 2024-11-20 | 2.1 LOW | N/A |
The fib_seq_start function in fib_hash.c in Linux kernel allows local users to cause a denial of service (system crash) via /proc/net/route. | |||||
CVE-2005-0977 | 1 Linux | 1 Linux Kernel | 2024-11-20 | 2.1 LOW | N/A |
The shmem_nopage function in shmem.c for the tmpfs driver in Linux kernel 2.6 does not properly verify the address argument, which allows local users to cause a denial of service (kernel crash) via an invalid address. | |||||
CVE-2005-0937 | 1 Linux | 1 Linux Kernel | 2024-11-20 | 1.2 LOW | N/A |
Some futex functions in futex.c for Linux kernel 2.6.x perform get_user calls while holding the mmap_sem semaphore, which could allow local users to cause a deadlock condition in do_page_fault by triggering get_user faults while another thread is executing mmap or other functions. | |||||
CVE-2005-0916 | 1 Linux | 1 Linux Kernel | 2024-11-20 | 2.1 LOW | N/A |
AIO in the Linux kernel 2.6.11 on the PPC64 or IA64 architectures with CONFIG_HUGETLB_PAGE enabled allows local users to cause a denial of service (system panic) via a process that executes the io_queue_init function but exits without running io_queue_release, which causes exit_aio and is_hugepage_only_range to fail. | |||||
CVE-2005-0867 | 1 Linux | 1 Linux Kernel | 2024-11-20 | 7.2 HIGH | N/A |
Integer overflow in Linux kernel 2.6 allows local users to overwrite kernel memory by writing to a sysfs file. | |||||
CVE-2005-0839 | 1 Linux | 1 Linux Kernel | 2024-11-20 | 7.2 HIGH | N/A |
Linux kernel 2.6 before 2.6.11 does not restrict access to the N_MOUSE line discipline for a TTY, which allows local users to gain privileges by injecting mouse or keyboard events into other user sessions. | |||||
CVE-2005-0815 | 1 Linux | 1 Linux Kernel | 2024-11-20 | 6.4 MEDIUM | N/A |
Multiple "range checking flaws" in the ISO9660 filesystem handler in Linux 2.6.11 and earlier may allow attackers to cause a denial of service or corrupt memory via a crafted filesystem. | |||||
CVE-2005-0767 | 1 Linux | 1 Linux Kernel | 2024-11-20 | 6.9 MEDIUM | N/A |
Race condition in the Radeon DRI driver for Linux kernel 2.6.8.1 allows local users with DRI privileges to execute arbitrary code as root. | |||||
CVE-2005-0756 | 1 Linux | 1 Linux Kernel | 2024-11-20 | 2.1 LOW | N/A |
ptrace in Linux kernel 2.6.8.1 does not properly verify addresses on the amd64 platform, which allows local users to cause a denial of service (kernel crash). | |||||
CVE-2005-0750 | 5 Conectiva, Linux, Redhat and 2 more | 8 Linux, Linux Kernel, Enterprise Linux and 5 more | 2024-11-20 | 7.2 HIGH | N/A |
The bluez_sock_create function in the Bluetooth stack for Linux kernel 2.4.6 through 2.4.30-rc1 and 2.6 through 2.6.11.5 allows local users to gain privileges via (1) socket or (2) socketpair call with a negative protocol value. | |||||
CVE-2005-0749 | 1 Linux | 1 Linux Kernel | 2024-11-20 | 7.2 HIGH | N/A |
The load_elf_library in the Linux kernel before 2.6.11.6 allows local users to cause a denial of service (kernel crash) via a crafted ELF library or executable, which causes a free of an invalid pointer. | |||||
CVE-2005-0736 | 3 Conectiva, Linux, Redhat | 5 Linux, Linux Kernel, Enterprise Linux and 2 more | 2024-11-20 | 2.1 LOW | N/A |
Integer overflow in sys_epoll_wait in eventpoll.c for Linux kernel 2.6 to 2.6.11 allows local users to overwrite kernel memory via a large number of events. | |||||
CVE-2005-0532 | 1 Linux | 1 Linux Kernel | 2024-11-20 | 2.1 LOW | N/A |
The reiserfs_copy_from_user_to_file_region function in reiserfs/file.c for Linux kernel 2.6.10 and 2.6.11 before 2.6.11-rc4, when running on 64-bit architectures, may allow local users to trigger a buffer overflow as a result of casting discrepancies between size_t and int data types. | |||||
CVE-2005-0531 | 1 Linux | 1 Linux Kernel | 2024-11-20 | 2.1 LOW | N/A |
The atm_get_addr function in addr.c for Linux kernel 2.6.10 and 2.6.11 before 2.6.11-rc4 may allow local users to trigger a buffer overflow via negative arguments. | |||||
CVE-2005-0530 | 1 Linux | 1 Linux Kernel | 2024-11-20 | 2.1 LOW | N/A |
Signedness error in the copy_from_read_buf function in n_tty.c for Linux kernel 2.6.10 and 2.6.11rc1 allows local users to read kernel memory via a negative argument. | |||||
CVE-2005-0529 | 1 Linux | 1 Linux Kernel | 2024-11-20 | 2.1 LOW | N/A |
Linux kernel 2.6.10 and 2.6.11rc1-bk6 uses different size types for offset arguments to the proc_file_read and locks_read_proc functions, which leads to a heap-based buffer overflow when a signed comparison causes negative integers to be used in a positive context. | |||||
CVE-2005-0504 | 1 Linux | 1 Linux Kernel | 2024-11-20 | 4.6 MEDIUM | N/A |
Buffer overflow in the MoxaDriverIoctl function for the moxa serial driver (moxa.c) in Linux 2.2.x, 2.4.x, and 2.6.x before 2.6.22 allows local users to execute arbitrary code via a certain modified length value. |