Vulnerability index

Browse CVEs

200 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Linux Kernel MEDIUM 6.9
CVE-2012-2137

Buffer overflow in virt/kvm/irq_comm.c in the KVM subsystem in the Linux kernel before 3.2.24 allows local users to cause a denial of service (crash)…

Fix: 3.0.72 / 3.2.24+
Fix from $1,600 2013-01-22
Linux Kernel MEDIUM 5.0
CVE-2012-3364

Multiple stack-based buffer overflows in the Near Field Communication Controller Interface (NCI) in the Linux kernel before 3.4.5 allow remote attack…

Fix: after 3.4.4
Fix from $1,600 2013-01-22
Linux Kernel MEDIUM 5.2
CVE-2012-2119

Buffer overflow in the macvtap device driver in the Linux kernel before 3.4.5, when running in certain configurations, allows privileged KVM guest us…

Fix: after 3.4.4
Fix from $1,600 2013-01-22
Linux Kernel HIGH 7.2
CVE-2011-1477

Multiple array index errors in sound/oss/opl3.c in the Linux kernel before 2.6.39 allow local users to cause a denial of service (heap memory corrupt…

Fix: after 2.6.38.8
Fix from $1,950 2012-06-21
Linux Kernel MEDIUM 5.0
CVE-2012-2127

fs/proc/root.c in the procfs implementation in the Linux kernel before 3.2 does not properly interact with CLONE_NEWPID clone system calls, which all…

Fix: after 3.1.10
Fix from $1,600 2012-06-21
Linux Kernel HIGH 7.2
CVE-2011-2182

The ldm_frag_add function in fs/partitions/ldm.c in the Linux kernel before 2.6.39.1 does not properly handle memory allocation for non-initial fragm…

Fix: after 2.6.39
Fix from $1,950 2012-06-13
Linux Kernel HIGH 8.8
CVE-2011-3191

Integer signedness error in the CIFSFindNext function in fs/cifs/cifssmb.c in the Linux kernel before 3.1 allows remote CIFS servers to cause a denia…

Fix: 3.0.5+
Fix from $1,950 2012-05-24
Linux Kernel HIGH 7.5
CVE-2011-3359

The dma_rx function in drivers/net/wireless/b43/dma.c in the Linux kernel before 2.6.39 does not properly allocate receive buffers, which allows remo…

Fix: 2.6.39+
Fix from $1,950 2012-05-24
Linux Kernel HIGH 7.2
CVE-2011-2517

Multiple buffer overflows in net/wireless/nl80211.c in the Linux kernel before 2.6.39.2 allow local users to gain privileges by leveraging the CAP_NE…

Fix: 2.6.39.2+
Fix from $1,950 2012-05-24
Linux Kernel HIGH 7.2
CVE-2011-4330

Stack-based buffer overflow in the hfs_mac2asc function in fs/hfs/trans.c in the Linux kernel 2.6 allows local users to cause a denial of service (cr…

Fix: 3.0.10 / 3.1.2+
Fix from $1,950 2012-01-27
Linux Kernel MEDIUM 6.9
CVE-2011-4077

Buffer overflow in the xfs_readlink function in fs/xfs/xfs_vnodeops.c in XFS in the Linux kernel 2.6, when CONFIG_XFS_DEBUG is disabled, allows local…

Fix: 3.0.11 / 3.1.5+
Fix from $1,600 2012-01-27
Linux Kernel MEDIUM 6.1
CVE-2011-1776

The is_gpt_valid function in fs/partitions/efi.c in the Linux kernel before 2.6.39 does not check the size of an Extensible Firmware Interface (EFI) …

Fix: 2.6.39+
Fix from $1,600 2011-09-06
Linux Kernel MEDIUM 5.7
CVE-2011-1576

The Generic Receive Offload (GRO) implementation in the Linux kernel 2.6.18 on Red Hat Enterprise Linux 5 and 2.6.32 on Red Hat Enterprise Linux 6, a…

Patch available
Fix from $1,600 2011-08-31
Linux Kernel HIGH 7.2
CVE-2011-0521

The dvb_ca_ioctl function in drivers/media/dvb/ttpci/av7110_ca.c in the Linux kernel before 2.6.38-rc2 does not check the sign of a certain integer f…

Fix: 2.6.38+
Fix from $1,950 2011-02-02
Linux Kernel MEDIUM 5.0
CVE-2010-3873

The X.25 implementation in the Linux kernel before 2.6.36.2 does not properly parse facilities, which allows remote attackers to cause a denial of se…

Fix: 2.6.36.2+
Fix from $1,600 2011-01-03
Linux Kernel HIGH 7.2
CVE-2010-3084

Buffer overflow in the niu_get_ethtool_tcam_all function in drivers/net/niu.c in the Linux kernel before 2.6.36-rc4 allows local users to cause a den…

Fix: after 2.6.36
Fix from $1,950 2010-09-29
Linux Kernel HIGH 7.8
CVE-2010-3081

The compat_alloc_user_space functions in include/asm/compat.h files in the Linux kernel before 2.6.36-rc4-git2 on 64-bit platforms do not properly al…

Fix: after 2.6.35.4
Fix from $1,950 2010-09-24
Linux Kernel HIGH 10.0
CVE-2010-2521EPSS 9%

Multiple buffer overflows in fs/nfsd/nfs4xdr.c in the XDR implementation in the NFS server in the Linux kernel before 2.6.34-rc6 allow remote attacke…

Fix: after 2.6.34
Fix from $1,950 2010-09-07
Linux Kernel HIGH 7.1
CVE-2010-1084

Linux kernel 2.6.18 through 2.6.33, and possibly other versions, allows remote attackers to cause a denial of service (memory corruption) via a large…

Patch available
Fix from $1,950 2010-04-06
Linux Kernel HIGH 7.8
CVE-2009-1298

The ip_frag_reasm function in net/ipv4/ip_fragment.c in the Linux kernel 2.6.32-rc8, and 2.6.29 and later versions before 2.6.32, calls IP_INC_STATS_…

Fix: after 2.6.32
Fix from $1,950 2009-12-08
Linux Kernel HIGH 7.8
CVE-2009-4020

Stack-based buffer overflow in the hfs subsystem in the Linux kernel 2.6.32 allows remote attackers to have an unspecified impact via a crafted Hiera…

Patch available
Fix from $1,950 2009-12-04
Linux Kernel HIGH 7.2
CVE-2009-4005

The collect_rx_frame function in drivers/isdn/hisax/hfc_usb.c in the Linux kernel before 2.6.32-rc7 allows attackers to have an unspecified impact vi…

Fix: after 2.6.32
Fix from $1,950 2009-11-20
Linux Kernel HIGH 7.8
CVE-2009-4004

Buffer overflow in the kvm_vcpu_ioctl_x86_setup_mce function in arch/x86/kvm/x86.c in the KVM subsystem in the Linux kernel before 2.6.32-rc7 allows …

Fix: after 2.6.31.14
Fix from $1,950 2009-11-20
Linux Kernel HIGH 7.8
CVE-2009-3280

Integer signedness error in the find_ie function in net/wireless/scan.c in the cfg80211 subsystem in the Linux kernel before 2.6.31.1-rc1 allows remo…

Fix: after 2.6.31
Fix from $1,950 2009-09-21
Linux Kernel HIGH 7.2
CVE-2009-2695

The Linux kernel before 2.6.31-rc7 does not properly prevent mmap operations that target page zero and other low memory addresses, which allows local…

Fix: after 2.6.31
Fix from $1,950 2009-08-28
Kernel HIGH 7.2
CVE-2009-2767

The init_posix_timers function in kernel/posix-timers.c in the Linux kernel before 2.6.31-rc6 allows local users to cause a denial of service (OOPS) …

Fix: after 2.6.16.31
Fix from $1,950 2009-08-14
Kernel MEDIUM 6.9
CVE-2009-2406

Stack-based buffer overflow in the parse_tag_11_packet function in fs/ecryptfs/keystore.c in the eCryptfs subsystem in the Linux kernel before 2.6.30…

Fix: after 2.6.30.3
Fix from $1,600 2009-07-31
Linux Kernel MEDIUM 6.9
CVE-2009-2407

Heap-based buffer overflow in the parse_tag_3_packet function in fs/ecryptfs/keystore.c in the eCryptfs subsystem in the Linux kernel before 2.6.30.4…

Fix: after 2.6.30.3
Fix from $1,600 2009-07-31
Linux Kernel MEDIUM 6.9
CVE-2009-1897

The tun_chr_poll function in drivers/net/tun.c in the tun subsystem in the Linux kernel 2.6.30 and 2.6.30.1, when the -fno-delete-null-pointer-checks…

Patch available
Fix from $1,600 2009-07-20
Kernel HIGH 7.8
CVE-2009-1389EPSS 5%

Buffer overflow in the RTL8169 NIC driver (drivers/net/r8169.c) in the Linux kernel before 2.6.30 allows remote attackers to cause a denial of servic…

No fix yet
Fix from $1,950 2009-06-16