Search CVE reports


Toggle filters

121 – 130 of 220 results


CVE-2006-2275

Medium priority
Fixed

Linux SCTP (lksctp) before 2.6.17 allows remote attackers to cause a denial of service (deadlock) via a large number of small messages to a receiver application that cannot process the messages quickly enough, which leads...

2 affected packages

linux-source-2.6.15, linux-source-2.6.17

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux-source-2.6.15
linux-source-2.6.17
Show less packages

CVE-2006-2274

Medium priority
Fixed

Linux SCTP (lksctp) before 2.6.17 allows remote attackers to cause a denial of service (infinite recursion and crash) via a packet that contains two or more DATA fragments, which causes an skb pointer to refer back to itself when...

2 affected packages

linux-source-2.6.15, linux-source-2.6.17

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux-source-2.6.15
linux-source-2.6.17
Show less packages

CVE-2006-2272

Medium priority
Fixed

Linux SCTP (lksctp) before 2.6.17 allows remote attackers to cause a denial of service (kernel panic) via incoming IP fragmented (1) COOKIE_ECHO and (2) HEARTBEAT SCTP control chunks.

2 affected packages

linux-source-2.6.15, linux-source-2.6.17

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux-source-2.6.15
linux-source-2.6.17
Show less packages

CVE-2006-2271

Medium priority
Fixed

The ECNE chunk handling in Linux SCTP (lksctp) before 2.6.17 allows remote attackers to cause a denial of service (kernel panic) via an unexpected chunk when the session is in CLOSED state.

2 affected packages

linux-source-2.6.15, linux-source-2.6.17

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux-source-2.6.15
linux-source-2.6.17
Show less packages

CVE-2006-1052

Medium priority
Fixed

The selinux_ptrace logic in hooks.c in SELinux for Linux 2.6.6 allows local users with ptrace permissions to change the tracer SID to an SID of another process.

2 affected packages

linux-source-2.6.15, linux-source-2.6.17

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux-source-2.6.15
linux-source-2.6.17
Show less packages

CVE-2006-1527

Medium priority
Fixed

The SCTP-netfilter code in Linux kernel before 2.6.16.13 allows remote attackers to trigger a denial of service (infinite loop) via unknown vectors that cause an invalid SCTP chunk size to be processed by the for_each_sctp_chunk function.

2 affected packages

linux-source-2.6.15, linux-source-2.6.17

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux-source-2.6.15
linux-source-2.6.17
Show less packages

CVE-2006-1864

Medium priority
Fixed

Directory traversal vulnerability in smbfs in Linux 2.6.16 and earlier allows local users to escape chroot restrictions for an SMB-mounted filesystem via "..\\" sequences, a similar vulnerability to CVE-2006-1863.

2 affected packages

linux-source-2.6.15, linux-source-2.6.17

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux-source-2.6.15
linux-source-2.6.17
Show less packages

CVE-2006-1056

Medium priority

Some fixes available 6 of 7

The Linux kernel before 2.6.16.9 and the FreeBSD kernel, when running on AMD64 and other 7th and 8th generation AuthenticAMD processors, only save/restore the FOP, FIP, and FDP x87 registers in FXSAVE/FXRSTOR when an exception is...

5 affected packages

kfreebsd-5, linux-source-2.6.15, linux-source-2.6.17, xen-3.0, xen-3.1

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
kfreebsd-5
linux-source-2.6.15
linux-source-2.6.17
xen-3.0
xen-3.1
Show less packages

CVE-2006-1525

Medium priority
Fixed

ip_route_input in Linux kernel 2.6 before 2.6.16.8 allows local users to cause a denial of service (panic) via a request for a route for a multicast IP address, which triggers a null dereference.

2 affected packages

linux-source-2.6.15, linux-source-2.6.17

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux-source-2.6.15
linux-source-2.6.17
Show less packages

CVE-2006-0744

Medium priority
Fixed

Linux kernel before 2.6.16.5 does not properly handle uncanonical return addresses on Intel EM64T CPUs, which reports an exception in the SYSRET instead of the next instruction, which causes the kernel exception handler to run on...

2 affected packages

linux-source-2.6.15, linux-source-2.6.17

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux-source-2.6.15
linux-source-2.6.17
Show less packages