Vulnerabilities > Linux > Linux Kernel > 2.6.11

DATE CVE VULNERABILITY TITLE RISK
2005-05-11 CVE-2005-1263 Local Buffer Overflow vulnerability in Linux Kernel ELF Core Dump
The elf_core_dump function in binfmt_elf.c for Linux kernel 2.x.x to 2.2.27-rc2, 2.4.x to 2.4.31-pre1, and 2.6.x to 2.6.12-rc4 allows local users to execute arbitrary code via an ELF binary that, in certain conditions involving the create_elf_tables function, causes a negative length argument to pass a signed integer comparison, leading to a buffer overflow.
local
low complexity
linux
7.2
2005-05-02 CVE-2005-1369 Unspecified vulnerability in Linux Kernel
The (1) it87 and (2) via686a drivers in I2C for Linux 2.6.x before 2.6.11.8, and 2.6.12 before 2.6.12-rc2, create the sysfs "alarms" file with write permissions, which allows local users to cause a denial of service (CPU consumption) by attempting to write to the file, which does not have an associated store function.
local
low complexity
linux
2.1
2005-05-02 CVE-2005-1368 Unspecified vulnerability in Linux Kernel
The key_user_lookup function in security/keys/key.c in Linux kernel 2.6.10 to 2.6.11.8 may allow attackers to cause a denial of service (oops) via SMP.
local
high complexity
linux
1.2
2005-05-02 CVE-2005-0916 Local Denial Of Service vulnerability in Linux Kernel 2.6.11
AIO in the Linux kernel 2.6.11 on the PPC64 or IA64 architectures with CONFIG_HUGETLB_PAGE enabled allows local users to cause a denial of service (system panic) via a process that executes the io_queue_init function but exits without running io_queue_release, which causes exit_aio and is_hugepage_only_range to fail.
local
low complexity
linux
2.1
2005-05-02 CVE-2005-0815 ISO9660 Filesystem Handling vulnerability in Linux Kernel
Multiple "range checking flaws" in the ISO9660 filesystem handler in Linux 2.6.11 and earlier may allow attackers to cause a denial of service or corrupt memory via a crafted filesystem.
network
low complexity
linux
6.4
2005-05-02 CVE-2005-0400 Unspecified vulnerability in Linux Kernel
The ext2_make_empty function call in the Linux kernel before 2.6.11.6 does not properly initialize memory when creating a block for a new directory entry, which allows local users to obtain potentially sensitive information by reading the block.
local
low complexity
linux
2.1
2005-04-01 CVE-2005-0749 Local Denial of Service vulnerability in Linux Kernel Elf Binary Loading
The load_elf_library in the Linux kernel before 2.6.11.6 allows local users to cause a denial of service (kernel crash) via a crafted ELF library or executable, which causes a free of an invalid pointer.
local
low complexity
linux
7.2
2005-03-27 CVE-2005-0750 Buffer Index vulnerability in Linux Kernel Bluetooth Signed
The bluez_sock_create function in the Bluetooth stack for Linux kernel 2.4.6 through 2.4.30-rc1 and 2.6 through 2.6.11.5 allows local users to gain privileges via (1) socket or (2) socketpair call with a negative protocol value.
local
low complexity
conectiva linux redhat suse ubuntu
7.2
2005-03-07 CVE-2005-0180 Integer Overflow vulnerability in Linux Kernel SCSI IOCTL
Multiple integer signedness errors in the sg_scsi_ioctl function in scsi_ioctl.c for Linux 2.6.x allow local users to read or modify kernel memory via negative integers in arguments to the scsi ioctl, which bypass a maximum length check before calling the copy_from_user and copy_to_user functions.
local
low complexity
linux
3.6
2005-03-07 CVE-2005-0179 Unspecified vulnerability in Linux Kernel
Linux kernel 2.4.x and 2.6.x allows local users to cause a denial of service (CPU and memory consumption) and bypass RLIM_MEMLOCK limits via the mlockall call.
local
low complexity
linux
2.1