Логотип exploitDog
bind:"CVE-2014-2523" OR bind:"CVE-2014-0069" OR bind:"CVE-2014-0101" OR bind:"CVE-2014-0055"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2014-2523" OR bind:"CVE-2014-0069" OR bind:"CVE-2014-0101" OR bind:"CVE-2014-0055"

Количество 40

Количество 40

redhat логотип

CVE-2014-0069

больше 11 лет назад

The cifs_iovec_write function in fs/cifs/file.c in the Linux kernel through 3.13.5 does not properly handle uncached write operations that copy fewer than the requested number of bytes, which allows local users to obtain sensitive information from kernel memory, cause a denial of service (memory corruption and system crash), or possibly gain privileges via a writev system call with a crafted pointer.

CVSS2: 6.2
EPSS: Низкий
nvd логотип

CVE-2014-0069

больше 11 лет назад

The cifs_iovec_write function in fs/cifs/file.c in the Linux kernel through 3.13.5 does not properly handle uncached write operations that copy fewer than the requested number of bytes, which allows local users to obtain sensitive information from kernel memory, cause a denial of service (memory corruption and system crash), or possibly gain privileges via a writev system call with a crafted pointer.

CVSS2: 7.2
EPSS: Низкий
msrc логотип

CVE-2014-0069

больше 1 года назад

EPSS: Низкий
debian логотип

CVE-2014-0069

больше 11 лет назад

The cifs_iovec_write function in fs/cifs/file.c in the Linux kernel th ...

CVSS2: 7.2
EPSS: Низкий
oracle-oval логотип

ELSA-2014-0475

около 11 лет назад

ELSA-2014-0475: kernel security and bug fix update (IMPORTANT)

EPSS: Низкий
github логотип

GHSA-mg5h-jxw2-63w8

около 3 лет назад

The cifs_iovec_write function in fs/cifs/file.c in the Linux kernel through 3.13.5 does not properly handle uncached write operations that copy fewer than the requested number of bytes, which allows local users to obtain sensitive information from kernel memory, cause a denial of service (memory corruption and system crash), or possibly gain privileges via a writev system call with a crafted pointer.

EPSS: Низкий
fstec логотип

BDU:2014-00054

больше 11 лет назад

Уязвимость операционной системы Linux, позволяющая злоумышленнику вызвать отказ в обслуживании, повысить свои привилегии или выполнить произвольный код

CVSS2: 6.2
EPSS: Низкий
ubuntu логотип

CVE-2014-0055

около 11 лет назад

The get_rx_bufs function in drivers/vhost/net.c in the vhost-net subsystem in the Linux kernel package before 2.6.32-431.11.2 on Red Hat Enterprise Linux (RHEL) 6 does not properly handle vhost_get_vq_desc errors, which allows guest OS users to cause a denial of service (host OS crash) via unspecified vectors.

CVSS2: 5.5
EPSS: Низкий
redhat логотип

CVE-2014-0055

около 11 лет назад

The get_rx_bufs function in drivers/vhost/net.c in the vhost-net subsystem in the Linux kernel package before 2.6.32-431.11.2 on Red Hat Enterprise Linux (RHEL) 6 does not properly handle vhost_get_vq_desc errors, which allows guest OS users to cause a denial of service (host OS crash) via unspecified vectors.

CVSS2: 5.2
EPSS: Низкий
nvd логотип

CVE-2014-0055

около 11 лет назад

The get_rx_bufs function in drivers/vhost/net.c in the vhost-net subsystem in the Linux kernel package before 2.6.32-431.11.2 on Red Hat Enterprise Linux (RHEL) 6 does not properly handle vhost_get_vq_desc errors, which allows guest OS users to cause a denial of service (host OS crash) via unspecified vectors.

CVSS2: 5.5
EPSS: Низкий
debian логотип

CVE-2014-0055

около 11 лет назад

The get_rx_bufs function in drivers/vhost/net.c in the vhost-net subsy ...

CVSS2: 5.5
EPSS: Низкий
ubuntu логотип

CVE-2014-0101

больше 11 лет назад

The sctp_sf_do_5_1D_ce function in net/sctp/sm_statefuns.c in the Linux kernel through 3.13.6 does not validate certain auth_enable and auth_capable fields before making an sctp_sf_authenticate call, which allows remote attackers to cause a denial of service (NULL pointer dereference and system crash) via an SCTP handshake with a modified INIT chunk and a crafted AUTH chunk before a COOKIE_ECHO chunk.

CVSS2: 7.8
EPSS: Низкий
redhat логотип

CVE-2014-0101

больше 11 лет назад

The sctp_sf_do_5_1D_ce function in net/sctp/sm_statefuns.c in the Linux kernel through 3.13.6 does not validate certain auth_enable and auth_capable fields before making an sctp_sf_authenticate call, which allows remote attackers to cause a denial of service (NULL pointer dereference and system crash) via an SCTP handshake with a modified INIT chunk and a crafted AUTH chunk before a COOKIE_ECHO chunk.

CVSS2: 7.1
EPSS: Низкий
nvd логотип

CVE-2014-0101

больше 11 лет назад

The sctp_sf_do_5_1D_ce function in net/sctp/sm_statefuns.c in the Linux kernel through 3.13.6 does not validate certain auth_enable and auth_capable fields before making an sctp_sf_authenticate call, which allows remote attackers to cause a denial of service (NULL pointer dereference and system crash) via an SCTP handshake with a modified INIT chunk and a crafted AUTH chunk before a COOKIE_ECHO chunk.

CVSS2: 7.8
EPSS: Низкий
debian логотип

CVE-2014-0101

больше 11 лет назад

The sctp_sf_do_5_1D_ce function in net/sctp/sm_statefuns.c in the Linu ...

CVSS2: 7.8
EPSS: Низкий
github логотип

GHSA-gxfq-q7c4-j95v

около 3 лет назад

The get_rx_bufs function in drivers/vhost/net.c in the vhost-net subsystem in the Linux kernel package before 2.6.32-431.11.2 on Red Hat Enterprise Linux (RHEL) 6 does not properly handle vhost_get_vq_desc errors, which allows guest OS users to cause a denial of service (host OS crash) via unspecified vectors.

EPSS: Низкий
fstec логотип

BDU:2014-00061

около 11 лет назад

Уязвимость операционной системы Linux, позволяющая злоумышленнику вызвать отказ в обслуживании

CVSS2: 5.5
EPSS: Низкий
github логотип

GHSA-gcjx-xxq3-676c

около 3 лет назад

The sctp_sf_do_5_1D_ce function in net/sctp/sm_statefuns.c in the Linux kernel through 3.13.6 does not validate certain auth_enable and auth_capable fields before making an sctp_sf_authenticate call, which allows remote attackers to cause a denial of service (NULL pointer dereference and system crash) via an SCTP handshake with a modified INIT chunk and a crafted AUTH chunk before a COOKIE_ECHO chunk.

EPSS: Низкий
fstec логотип

BDU:2014-00102

больше 11 лет назад

Уязвимость операционной системы Linux, позволяющая злоумышленнику вызвать отказ в обслуживании

CVSS2: 7.1
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:0652-1

около 13 лет назад

Security update for Kernel

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2014-0069

The cifs_iovec_write function in fs/cifs/file.c in the Linux kernel through 3.13.5 does not properly handle uncached write operations that copy fewer than the requested number of bytes, which allows local users to obtain sensitive information from kernel memory, cause a denial of service (memory corruption and system crash), or possibly gain privileges via a writev system call with a crafted pointer.

CVSS2: 6.2
0%
Низкий
больше 11 лет назад
nvd логотип
CVE-2014-0069

The cifs_iovec_write function in fs/cifs/file.c in the Linux kernel through 3.13.5 does not properly handle uncached write operations that copy fewer than the requested number of bytes, which allows local users to obtain sensitive information from kernel memory, cause a denial of service (memory corruption and system crash), or possibly gain privileges via a writev system call with a crafted pointer.

CVSS2: 7.2
0%
Низкий
больше 11 лет назад
msrc логотип
0%
Низкий
больше 1 года назад
debian логотип
CVE-2014-0069

The cifs_iovec_write function in fs/cifs/file.c in the Linux kernel th ...

CVSS2: 7.2
0%
Низкий
больше 11 лет назад
oracle-oval логотип
ELSA-2014-0475

ELSA-2014-0475: kernel security and bug fix update (IMPORTANT)

около 11 лет назад
github логотип
GHSA-mg5h-jxw2-63w8

The cifs_iovec_write function in fs/cifs/file.c in the Linux kernel through 3.13.5 does not properly handle uncached write operations that copy fewer than the requested number of bytes, which allows local users to obtain sensitive information from kernel memory, cause a denial of service (memory corruption and system crash), or possibly gain privileges via a writev system call with a crafted pointer.

0%
Низкий
около 3 лет назад
fstec логотип
BDU:2014-00054

Уязвимость операционной системы Linux, позволяющая злоумышленнику вызвать отказ в обслуживании, повысить свои привилегии или выполнить произвольный код

CVSS2: 6.2
0%
Низкий
больше 11 лет назад
ubuntu логотип
CVE-2014-0055

The get_rx_bufs function in drivers/vhost/net.c in the vhost-net subsystem in the Linux kernel package before 2.6.32-431.11.2 on Red Hat Enterprise Linux (RHEL) 6 does not properly handle vhost_get_vq_desc errors, which allows guest OS users to cause a denial of service (host OS crash) via unspecified vectors.

CVSS2: 5.5
0%
Низкий
около 11 лет назад
redhat логотип
CVE-2014-0055

The get_rx_bufs function in drivers/vhost/net.c in the vhost-net subsystem in the Linux kernel package before 2.6.32-431.11.2 on Red Hat Enterprise Linux (RHEL) 6 does not properly handle vhost_get_vq_desc errors, which allows guest OS users to cause a denial of service (host OS crash) via unspecified vectors.

CVSS2: 5.2
0%
Низкий
около 11 лет назад
nvd логотип
CVE-2014-0055

The get_rx_bufs function in drivers/vhost/net.c in the vhost-net subsystem in the Linux kernel package before 2.6.32-431.11.2 on Red Hat Enterprise Linux (RHEL) 6 does not properly handle vhost_get_vq_desc errors, which allows guest OS users to cause a denial of service (host OS crash) via unspecified vectors.

CVSS2: 5.5
0%
Низкий
около 11 лет назад
debian логотип
CVE-2014-0055

The get_rx_bufs function in drivers/vhost/net.c in the vhost-net subsy ...

CVSS2: 5.5
0%
Низкий
около 11 лет назад
ubuntu логотип
CVE-2014-0101

The sctp_sf_do_5_1D_ce function in net/sctp/sm_statefuns.c in the Linux kernel through 3.13.6 does not validate certain auth_enable and auth_capable fields before making an sctp_sf_authenticate call, which allows remote attackers to cause a denial of service (NULL pointer dereference and system crash) via an SCTP handshake with a modified INIT chunk and a crafted AUTH chunk before a COOKIE_ECHO chunk.

CVSS2: 7.8
3%
Низкий
больше 11 лет назад
redhat логотип
CVE-2014-0101

The sctp_sf_do_5_1D_ce function in net/sctp/sm_statefuns.c in the Linux kernel through 3.13.6 does not validate certain auth_enable and auth_capable fields before making an sctp_sf_authenticate call, which allows remote attackers to cause a denial of service (NULL pointer dereference and system crash) via an SCTP handshake with a modified INIT chunk and a crafted AUTH chunk before a COOKIE_ECHO chunk.

CVSS2: 7.1
3%
Низкий
больше 11 лет назад
nvd логотип
CVE-2014-0101

The sctp_sf_do_5_1D_ce function in net/sctp/sm_statefuns.c in the Linux kernel through 3.13.6 does not validate certain auth_enable and auth_capable fields before making an sctp_sf_authenticate call, which allows remote attackers to cause a denial of service (NULL pointer dereference and system crash) via an SCTP handshake with a modified INIT chunk and a crafted AUTH chunk before a COOKIE_ECHO chunk.

CVSS2: 7.8
3%
Низкий
больше 11 лет назад
debian логотип
CVE-2014-0101

The sctp_sf_do_5_1D_ce function in net/sctp/sm_statefuns.c in the Linu ...

CVSS2: 7.8
3%
Низкий
больше 11 лет назад
github логотип
GHSA-gxfq-q7c4-j95v

The get_rx_bufs function in drivers/vhost/net.c in the vhost-net subsystem in the Linux kernel package before 2.6.32-431.11.2 on Red Hat Enterprise Linux (RHEL) 6 does not properly handle vhost_get_vq_desc errors, which allows guest OS users to cause a denial of service (host OS crash) via unspecified vectors.

0%
Низкий
около 3 лет назад
fstec логотип
BDU:2014-00061

Уязвимость операционной системы Linux, позволяющая злоумышленнику вызвать отказ в обслуживании

CVSS2: 5.5
0%
Низкий
около 11 лет назад
github логотип
GHSA-gcjx-xxq3-676c

The sctp_sf_do_5_1D_ce function in net/sctp/sm_statefuns.c in the Linux kernel through 3.13.6 does not validate certain auth_enable and auth_capable fields before making an sctp_sf_authenticate call, which allows remote attackers to cause a denial of service (NULL pointer dereference and system crash) via an SCTP handshake with a modified INIT chunk and a crafted AUTH chunk before a COOKIE_ECHO chunk.

3%
Низкий
около 3 лет назад
fstec логотип
BDU:2014-00102

Уязвимость операционной системы Linux, позволяющая злоумышленнику вызвать отказ в обслуживании

CVSS2: 7.1
3%
Низкий
больше 11 лет назад
suse-cvrf логотип
SUSE-SU-2015:0652-1

Security update for Kernel

около 13 лет назад

Уязвимостей на страницу