|
391
|
-
1.9
|
LOW
|
net/packet/af_packet.c in the Linux kernel before 2.6.37-rc2 does not properly initialize certain structure members, which allows local users to obtain potentially sensitive information from kernel s…
|
CWE-909
Missing Initialization of Resource
|
CVE-2010-3876
|
cpe:2.3:o:suse:linux_enterprise_server:9:* cpe:2.3:o:suse:linux_enterprise_server:10:sp3
|
|
|
|
|
2024-11-21 10:19
2011-01-4
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
392
|
-
5.0
|
MEDIUM
|
The X.25 implementation in the Linux kernel before 2.6.36.2 does not properly parse facilities, which allows remote attackers to cause a denial of service (heap memory corruption and panic) or possib…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-3873
|
cpe:2.3:o:suse:linux_enterprise_server:9:*
|
|
|
|
|
2024-11-21 10:19
2011-01-4
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
393
|
-
7.1
|
HIGH
|
The aun_incoming function in net/econet/af_econet.c in the Linux kernel before 2.6.37-rc6, when Econet is enabled, allows remote attackers to cause a denial of service (NULL pointer dereference and O…
|
CWE-476
NULL Pointer Dereference
|
CVE-2010-4342
|
cpe:2.3:o:suse:linux_enterprise_server:9:*
|
|
|
|
|
2024-11-21 10:20
2010-12-31
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
394
|
-
6.2
|
MEDIUM
|
The do_exit function in kernel/exit.c in the Linux kernel before 2.6.36.2 does not properly handle a KERNEL_DS get_fs value, which allows local users to bypass intended access_ok restrictions, overwr…
|
CWE-269
Improper Privilege Management
|
CVE-2010-4258
|
cpe:2.3:o:suse:linux_enterprise_server:9:* cpe:2.3:o:suse:linux_enterprise_server:11:sp1 cpe:2.3:o:suse:linux_ent…
|
|
|
|
|
2024-11-21 10:20
2010-12-31
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
395
|
-
2.1
|
LOW
|
The sk_run_filter function in net/core/filter.c in the Linux kernel before 2.6.36.2 does not check whether a certain memory location has been initialized before executing a (1) BPF_S_LD_MEM or (2) BP…
|
CWE-200
Information Exposure
|
CVE-2010-4158
|
cpe:2.3:o:suse:linux_enterprise_server:9:* cpe:2.3:o:suse:linux_enterprise_server:11:sp1 cpe:2.3:o:suse:linux_ent…
|
|
|
|
|
2024-11-21 10:20
2010-12-31
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
396
|
-
2.1
|
LOW
|
The ec_dev_ioctl function in net/econet/af_econet.c in the Linux kernel before 2.6.36.2 does not require the CAP_NET_ADMIN capability, which allows local users to bypass intended access restrictions …
|
NVD-CWE-noinfo
|
CVE-2010-3850
|
cpe:2.3:o:suse:linux_enterprise_server:9:* cpe:2.3:o:suse:linux_enterprise_server:10:sp3
|
|
|
|
|
2024-11-21 10:19
2010-12-31
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
397
|
-
4.7
|
MEDIUM
|
The econet_sendmsg function in net/econet/af_econet.c in the Linux kernel before 2.6.36.2, when an econet address is configured, allows local users to cause a denial of service (NULL pointer derefere…
|
CWE-476
NULL Pointer Dereference
|
CVE-2010-3849
|
cpe:2.3:o:suse:linux_enterprise_server:9:* cpe:2.3:o:suse:linux_enterprise_server:10:sp3
|
|
|
|
|
2024-11-21 10:19
2010-12-31
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
398
|
-
6.9
|
MEDIUM
|
Stack-based buffer overflow in the econet_sendmsg function in net/econet/af_econet.c in the Linux kernel before 2.6.36.2, when an econet address is configured, allows local users to gain privileges b…
|
CWE-787
Out-of-bounds Write
|
CVE-2010-3848
|
cpe:2.3:o:suse:linux_enterprise_server:9:* cpe:2.3:o:suse:linux_enterprise_server:10:sp3
|
|
|
|
|
2024-11-21 10:19
2010-12-31
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
399
|
-
4.0
|
MEDIUM
|
Heap-based buffer overflow in the bcm_connect function in net/can/bcm.c (aka the Broadcast Manager) in the Controller Area Network (CAN) implementation in the Linux kernel before 2.6.36.2 on 64-bit p…
|
CWE-787
Out-of-bounds Write
|
CVE-2010-3874
|
cpe:2.3:o:suse:linux_enterprise_server:11:sp1
|
|
|
|
|
2024-11-21 10:19
2010-12-30
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
400
|
-
6.2
|
MEDIUM
|
Integer overflow in the ioc_general function in drivers/scsi/gdth.c in the Linux kernel before 2.6.36.1 on 64-bit platforms allows local users to cause a denial of service (memory corruption) or poss…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2010-4157
|
cpe:2.3:o:suse:linux_enterprise_server:9:* cpe:2.3:o:suse:linux_enterprise_server:11:sp1 cpe:2.3:o:suse:linux_ent…
|
|
|
|
|
2024-11-21 10:20
2010-12-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|