Vulnerability index

Browse CVEs

62 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Resource Management ErrorsCWE-399 × clear
Linux Kernel MEDIUM 6.2
CVE-2013-1767

Use-after-free vulnerability in the shmem_remount_fs function in mm/shmem.c in the Linux kernel before 3.7.10 allows local users to gain privileges o…

Fix: after 3.7.9
Fix from $1,600 2013-02-28
Linux Kernel MEDIUM 5.2
CVE-2013-0217

Memory leak in drivers/net/xen-netback/netback.c in the Xen netback functionality in the Linux kernel before 3.7.8 allows guest OS users to cause a d…

Fix: after 3.7.8
Fix from $1,600 2013-02-18
Linux Kernel MEDIUM 6.6
CVE-2012-4467

The (1) do_siocgstamp and (2) do_siocgstampns functions in net/socket.c in the Linux kernel before 3.5.4 use an incorrect argument order, which allow…

Fix: after 3.5.3
Fix from $1,600 2012-10-10
Linux Kernel MEDIUM 5.6
CVE-2012-3510

Use-after-free vulnerability in the xacct_add_tsk function in kernel/tsacct.c in the Linux kernel before 2.6.19 allows local users to obtain potentia…

Fix: after 2.6.18.8
Fix from $1,600 2012-10-03
Linux Kernel MEDIUM 5.0
CVE-2012-1583

Double free vulnerability in the xfrm6_tunnel_rcv function in net/ipv6/xfrm6_tunnel.c in the Linux kernel before 2.6.22, when the xfrm6_tunnel module…

Fix: after 2.6.21.7
Fix from $1,600 2012-06-16
Linux Kernel HIGH 7.1
CVE-2011-4326

The udp6_ufo_fragment function in net/ipv6/udp.c in the Linux kernel before 2.6.39, when a certain UDP Fragmentation Offload (UFO) configuration is e…

Fix: 2.6.39+
Fix from $1,950 2012-05-17
Linux Kernel MEDIUM 5.7
CVE-2011-0714

Use-after-free vulnerability in a certain Red Hat patch for the RPC server sockets functionality in the Linux kernel 2.6.32 on Red Hat Enterprise Lin…

Mitigation only
Fix from $1,600 2011-05-04
Linux Kernel HIGH 7.8
CVE-2010-1086

The ULE decapsulation functionality in drivers/media/dvb/dvb-core/dvb_net.c in dvb-core in Linux kernel 2.6.33 and earlier allows attackers to cause …

Fix: after 2.6.33
Fix from $1,950 2010-04-06
Linux Kernel HIGH 7.1
CVE-2010-1188

Use-after-free vulnerability in net/ipv4/tcp_input.c in the Linux kernel 2.6 before 2.6.20, when IPV6_RECVPKTINFO is set on a listening socket, allow…

Patch available
Fix from $1,950 2010-03-31
Linux Kernel HIGH 7.8
CVE-2010-0008

The sctp_rcv_ootb function in the SCTP implementation in the Linux kernel before 2.6.23 allows remote attackers to cause a denial of service (infinit…

Fix: after 2.6.22.19
Fix from $1,950 2010-03-19
Linux Kernel HIGH 7.2
CVE-2009-4141

Use-after-free vulnerability in the fasync_helper function in fs/fcntl.c in the Linux kernel before 2.6.33-rc4-git1 allows local users to gain privil…

Fix: after 2.6.33
Fix from $1,950 2010-01-19
Linux Kernel HIGH 7.1
CVE-2009-4308

The ext4_decode_error function in fs/ext4/super.c in the ext4 filesystem in the Linux kernel before 2.6.32 allows user-assisted remote attackers to c…

Fix: after 2.6.31
Fix from $1,950 2009-12-13
Linux Kernel HIGH 7.8
CVE-2009-3726EPSS 12%

The nfs4_proc_lock function in fs/nfs/nfs4proc.c in the NFSv4 client in the Linux kernel before 2.6.31-rc4 allows remote NFS servers to cause a denia…

Fix: after 2.6.31
Fix from $1,950 2009-11-09
Linux Kernel HIGH 7.8
CVE-2009-3613EPSS 12%

The swiotlb functionality in the r8169 driver in drivers/net/r8169.c in the Linux kernel before 2.6.27.22 allows remote attackers to cause a denial o…

Fix: after 2.6.27.21
Fix from $1,950 2009-10-19
Linux Kernel HIGH 7.2
CVE-2009-3290

The kvm_emulate_hypercall function in arch/x86/kvm/x86.c in KVM in the Linux kernel 2.6.25-rc1, and other versions before 2.6.31, when running on x86…

Fix: after 2.6.30
Fix from $1,950 2009-09-22
Kernel HIGH 7.8
CVE-2009-2844

cfg80211 in net/wireless/scan.c in the Linux kernel 2.6.30-rc1 and other versions before 2.6.31-rc6 allows remote attackers to cause a denial of serv…

Fix: after 2.6.16.31
Fix from $1,950 2009-08-18
Linux Kernel HIGH 7.8
CVE-2008-5033

The chip_command function in drivers/media/video/tvaudio.c in the Linux kernel 2.6.25.x before 2.6.25.19, 2.6.26.x before 2.6.26.7, and 2.6.27.x befo…

Patch available
Fix from $1,950 2008-11-10
Linux Kernel HIGH 7.8
CVE-2008-2136

Memory leak in the ipip6_rcv function in net/ipv6/sit.c in the Linux kernel 2.4 before 2.4.36.5 and 2.6 before 2.6.25.3 allows remote attackers to ca…

Fix: 2.4.36.5 / 2.6.25.3+
Fix from $1,950 2008-05-16
Linux Kernel HIGH 7.2
CVE-2008-1675

The bdx_ioctl_priv function in the tehuti driver (tehuti.c) in Linux kernel 2.6.x before 2.6.25.1 does not properly check certain information related…

No fix yet
Fix from $1,950 2008-05-02
Linux Kernel HIGH 7.2
CVE-2008-0007

Linux kernel before 2.6.22.17, when using certain drivers that register a fault handler that does not perform range checks, allows local users to acc…

Fix: after 2.6.22.16
Fix from $1,950 2008-02-08
Linux Kernel HIGH 7.8
CVE-2007-6694

The chrp_show_cpuinfo function (chrp/setup.c) in Linux kernel 2.4.21 through 2.6.18-53, when running on PowerPC, might allow local users to cause a d…

Mitigation only
Fix from $1,950 2008-01-29
Linux Kernel HIGH 7.2
CVE-2007-6417

The shmem_getpage function (mm/shmem.c) in Linux kernel 2.6.11 through 2.6.23 does not properly clear allocated memory in some rare circumstances rel…

Mitigation only
Fix from $1,950 2007-12-18
Linux Kernel HIGH 7.8
CVE-2007-5501

The tcp_sacktag_write_queue function in net/ipv4/tcp_input.c in Linux kernel 2.6.21 through 2.6.23.7, and 2.6.24-rc through 2.6.24-rc2, allows remote…

Patch available
Fix from $1,950 2007-11-15
Linux Kernel MEDIUM 6.0
CVE-2007-3851

The drm/i915 component in the Linux kernel before 2.6.22.2, when used with i965G and later chipsets, allows local users with access to an X11 session…

Fix: after 2.6.22.1
Fix from $1,600 2007-08-13
Linux Kernel HIGH 7.8
CVE-2007-0772

The Linux kernel 2.6.13 and other versions before 2.6.20.1 allows remote attackers to cause a denial of service (oops) via a crafted NFSACL 2 ACCESS …

Fix: after 2.6.20
Fix from $1,950 2007-02-20
Linux Kernel HIGH 7.5
CVE-2006-6304

The do_coredump function in fs/exec.c in the Linux kernel 2.6.19 sets the flag variable to O_EXCL but does not use it, which allows context-dependent…

Patch available
Fix from $1,950 2006-12-14
Linux Kernel HIGH 7.8
CVE-2006-2936

The ftdi_sio driver (usb/serial/ftdi_sio.c) in Linux kernel 2.6.x up to 2.6.17, and possibly later versions, allows local users to cause a denial of …

Mitigation only
Fix from $1,950 2006-07-10
Linux Kernel MEDIUM 5.0
CVE-2006-2934EPSS 5%

SCTP conntrack (ip_conntrack_proto_sctp.c) in netfilter for Linux kernel 2.6.17 before 2.6.17.3 and 2.6.16 before 2.6.16.23 allows remote attackers t…

Patch available
Fix from $1,600 2006-06-30
Linux Kernel MEDIUM 5.0
CVE-2006-0454

Linux kernel before 2.6.15.3 down to 2.6.12, while constructing an ICMP response in icmp_send, does not properly handle when the ip_options_echo func…

Patch available
Fix from $1,600 2006-02-07
Linux Kernel MEDIUM 6.6
CVE-2005-3806

The IPv6 flow label handling code (ip6_flowlabel.c) in Linux kernels 2.4 up to 2.4.32 and 2.6 before 2.6.14 modifies the wrong variable in certain ci…

Patch available
Fix from $1,600 2005-11-25