Search CVE reports


Toggle filters

101 – 110 of 137 results


CVE-2007-2451

Medium priority
Fixed

Unspecified vulnerability in drivers/crypto/geode-aes.c in GEODE-AES in the Linux kernel before 2.6.21.3 allows attackers to obtain sensitive information via unspecified vectors.

1 affected package

linux-source-2.6.20

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux-source-2.6.20
Show less packages

CVE-2007-2525

Medium priority
Fixed

Memory leak in the PPP over Ethernet (PPPoE) socket implementation in the Linux kernel before 2.6.21-git8 allows local users to cause a denial of service (memory consumption) by creating a socket using connect, and releasing it...

3 affected packages

linux-source-2.6.15, linux-source-2.6.17, linux-source-2.6.20

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux-source-2.6.15
linux-source-2.6.17
linux-source-2.6.20
Show less packages

CVE-2007-2480

Low priority

Some fixes available 1 of 2

The _udp_lib_get_port function in net/ipv4/udp.c in Linux kernel 2.6.21 and earlier does not prevent a bind to a port with a local address when there is already a bind to that port with a wildcard local address, which might allow...

5 affected packages

linux, linux-source-2.6.15, linux-source-2.6.17, linux-source-2.6.20, linux-source-2.6.22

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux
linux-source-2.6.15
linux-source-2.6.17
linux-source-2.6.20
linux-source-2.6.22
Show less packages

CVE-2007-0771

Medium priority
Not affected

The utrace support in Linux kernel 2.6.18, and other versions, allows local users to cause a denial of service (system hang) related to "MT exec + utrace_attach spin failure mode," as demonstrated by ptrace-thrash.c.

3 affected packages

linux-source-2.6.15, linux-source-2.6.17, linux-source-2.6.20

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux-source-2.6.15
linux-source-2.6.17
linux-source-2.6.20
Show less packages

CVE-2007-2242

Medium priority
Fixed

The IPv6 protocol allows remote attackers to cause a denial of service via crafted IPv6 type 0 route headers (IPV6_RTHDR_TYPE_0) that create network amplification between two routers.

3 affected packages

linux-source-2.6.15, linux-source-2.6.17, linux-source-2.6.20

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux-source-2.6.15
linux-source-2.6.17
linux-source-2.6.20
Show less packages

CVE-2007-1353

Medium priority
Fixed

The setsockopt function in the L2CAP and HCI Bluetooth support in the Linux kernel before 2.4.34.3 allows context-dependent attackers to read kernel memory and obtain sensitive information via unspecified vectors involving the...

3 affected packages

linux-source-2.6.15, linux-source-2.6.17, linux-source-2.6.20

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux-source-2.6.15
linux-source-2.6.17
linux-source-2.6.20
Show less packages

CVE-2007-2172

Medium priority
Fixed

A typo in Linux kernel 2.6 before 2.6.21-rc6 and 2.4 before 2.4.35 causes RTA_MAX to be used as an array size instead of RTN_MAX, which leads to an "out of bound access" by the (1) dn_fib_props (dn_fib.c, DECNet) and (2) fib_props...

3 affected packages

linux-source-2.6.15, linux-source-2.6.17, linux-source-2.6.20

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux-source-2.6.15
linux-source-2.6.17
linux-source-2.6.20
Show less packages

CVE-2007-1357

Medium priority
Fixed

The atalk_sum_skb function in AppleTalk for Linux kernel 2.6.x before 2.6.21, and possibly 2.4.x, allows remote attackers to cause a denial of service (crash) via an AppleTalk frame that is shorter than the specified length, which...

3 affected packages

linux-source-2.6.15, linux-source-2.6.17, linux-source-2.6.20

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux-source-2.6.15
linux-source-2.6.17
linux-source-2.6.20
Show less packages

CVE-2007-1734

Medium priority
Fixed

The DCCP support in the do_dccp_getsockopt function in net/dccp/proto.c in Linux kernel 2.6.20 and later does not verify the upper bounds of the optlen value, which allows local users running on certain architectures to read...

5 affected packages

linux, linux-source-2.6.15, linux-source-2.6.17, linux-source-2.6.20, linux-source-2.6.22

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux
linux-source-2.6.15
linux-source-2.6.17
linux-source-2.6.20
linux-source-2.6.22
Show less packages

CVE-2007-1730

Medium priority
Fixed

Integer signedness error in the DCCP support in the do_dccp_getsockopt function in net/dccp/proto.c in Linux kernel 2.6.20 and later allows local users to read kernel memory or cause a denial of service (oops) via a negative optlen value.

1 affected package

linux-source-2.6.20

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux-source-2.6.20
Show less packages