Search CVE reports
111 – 120 of 137 results
CVE-2007-1592
Unknown prioritynet/ipv6/tcp_ipv6.c in Linux kernel 2.6.x up to 2.6.21-rc3 inadvertently copies the ipv6_fl_socklist from a listening TCP socket to child sockets, which allows local users to cause a denial of service (OOPS) or double free by...
3 affected packages
linux-source-2.6.15, linux-source-2.6.17, linux-source-2.6.20
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
linux-source-2.6.15 | — | — | — | — | — |
linux-source-2.6.17 | — | — | — | — | — |
linux-source-2.6.20 | — | — | — | — | — |
CVE-2007-1497
Unknown prioritynf_conntrack in netfilter in the Linux kernel before 2.6.20.3 does not set nfctinfo during reassembly of fragmented packets, which leaves the default value as IP_CT_ESTABLISHED and might allow remote attackers to bypass certain...
3 affected packages
linux-source-2.6.15, linux-source-2.6.17, linux-source-2.6.20
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
linux-source-2.6.15 | — | — | — | — | — |
linux-source-2.6.17 | — | — | — | — | — |
linux-source-2.6.20 | — | — | — | — | — |
CVE-2007-1496
Unknown prioritynfnetlink_log in netfilter in the Linux kernel before 2.6.20.3 allows attackers to cause a denial of service (crash) via unspecified vectors involving the (1) nfulnl_recv_config function, (2) using "multiple packets per netlink...
3 affected packages
linux-source-2.6.15, linux-source-2.6.17, linux-source-2.6.20
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
linux-source-2.6.15 | — | — | — | — | — |
linux-source-2.6.17 | — | — | — | — | — |
linux-source-2.6.20 | — | — | — | — | — |
CVE-2007-1000
Unknown priorityThe ipv6_getsockopt_sticky function in net/ipv6/ipv6_sockglue.c in the Linux kernel before 2.6.20.2 allows local users to read arbitrary kernel memory via certain getsockopt calls that trigger a NULL dereference.
3 affected packages
linux-source-2.6.15, linux-source-2.6.17, linux-source-2.6.20
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
linux-source-2.6.15 | — | — | — | — | — |
linux-source-2.6.17 | — | — | — | — | — |
linux-source-2.6.20 | — | — | — | — | — |
CVE-2007-1388
Unknown priorityThe do_ipv6_setsockopt function in net/ipv6/ipv6_sockglue.c in Linux kernel before 2.6.20, and possibly other versions, allows local users to cause a denial of service (oops) by calling setsockopt with the IPV6_RTHDR option name...
3 affected packages
linux-source-2.6.15, linux-source-2.6.17, linux-source-2.6.20
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
linux-source-2.6.15 | — | — | — | — | — |
linux-source-2.6.17 | — | — | — | — | — |
linux-source-2.6.20 | — | — | — | — | — |
CVE-2007-0005
Unknown priorityMultiple buffer overflows in the (1) read and (2) write handlers in the Omnikey CardMan 4040 driver in the Linux kernel before 2.6.21-rc3 allow local users to gain privileges.
3 affected packages
linux-source-2.6.15, linux-source-2.6.17, linux-source-2.6.20
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
linux-source-2.6.15 | — | — | — | — | — |
linux-source-2.6.17 | — | — | — | — | — |
linux-source-2.6.20 | — | — | — | — | — |
CVE-2007-0772
Unknown priorityThe Linux kernel 2.6.13 and other versions before 2.6.20.1 allows remote attackers to cause a denial of service (oops) via a crafted NFSACL 2 ACCESS request that triggers a free of an incorrect pointer.
3 affected packages
linux-source-2.6.15, linux-source-2.6.17, linux-source-2.6.20
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
linux-source-2.6.15 | — | — | — | — | — |
linux-source-2.6.17 | — | — | — | — | — |
linux-source-2.6.20 | — | — | — | — | — |
CVE-2006-6535
Unknown priorityThe dev_queue_xmit function in Linux kernel 2.6 can fail before calling the local_bh_disable function, which could lead to data corruption and "node lockups." NOTE: it is not clear whether this issue is exploitable.
1 affected packages
linux-source-2.6.20
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
linux-source-2.6.20 | — | — | — | — | — |
CVE-2006-5754
Unknown priorityThe aio_setup_ring function in Linux kernel does not properly initialize a variable, which allows local users to cause a denial of service (crash) via an unspecified error path that causes an incorrect free operation.
1 affected packages
linux-source-2.6.20
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
linux-source-2.6.20 | — | — | — | — | — |
CVE-2006-5753
Unknown priorityUnspecified vulnerability in the listxattr system call in Linux kernel, when a "bad inode" is present, allows local users to cause a denial of service (data corruption) and possibly gain privileges via unknown vectors.
3 affected packages
linux-source-2.6.15, linux-source-2.6.17, linux-source-2.6.20
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
linux-source-2.6.15 | — | — | — | — | — |
linux-source-2.6.17 | — | — | — | — | — |
linux-source-2.6.20 | — | — | — | — | — |