Vulnerabilities > Linux > Linux Kernel > Medium

DATE CVE VULNERABILITY TITLE RISK
2001-04-17 CVE-2001-1391 Off-by-one Error vulnerability in Linux Kernel
Off-by-one vulnerability in CPIA driver of Linux kernel before 2.2.19 allows users to modify kernel memory.
local
low complexity
linux CWE-193
5.5
2001-04-17 CVE-2001-1390 Local Security vulnerability in kernel
Unknown vulnerability in binfmt_misc in the Linux kernel before 2.2.19, related to user pages.
local
high complexity
linux
6.2
2000-03-27 CVE-2000-0289 IP masquerading in Linux 2.2.x allows remote attackers to route UDP packets through the internal interface by modifying the external source IP address and port number to match those of an established connection.
network
low complexity
debian linux redhat
5.0
1999-12-31 CVE-1999-1339 Vulnerability when Network Address Translation (NAT) is enabled in Linux 2.2.10 and earlier with ipchains, or FreeBSD 3.2 with ipfw, allows remote attackers to cause a denial of service (kernel panic) via a ping -R (record route) command.
network
low complexity
freebsd linux
5.0
1999-12-08 CVE-1999-0986 The ping command in Linux 2.0.3x allows local users to cause a denial of service by sending large packets with the -R (record route) option.
network
low complexity
debian linux redhat
5.0
1999-10-22 CVE-1999-1341 Unspecified vulnerability in Linux Kernel
Linux kernel before 2.3.18 or 2.2.13pre15, with SLIP and PPP options, allows local unprivileged users to forge IP packets via the TIOCSETD option on tty devices.
local
low complexity
linux
4.6
1999-09-28 CVE-1999-1352 Unspecified vulnerability in Linux Kernel 2.2.0
mknod in Linux 2.2 follows symbolic links, which could allow local users to overwrite files or gain privileges.
local
low complexity
linux
4.6
1999-06-01 CVE-1999-0804 Denial of service in Linux 2.2.x kernels via malformed ICMP packets containing unusual types, codes, and IP header lengths.
network
low complexity
debian linux redhat suse
5.0
1999-03-01 CVE-1999-0431 Unspecified vulnerability in Linux Kernel
Linux 2.2.3 and earlier allow a remote attacker to perform an IP fragmentation attack, causing a denial of service.
network
low complexity
linux
5.0
1999-03-01 CVE-1999-0414 Unspecified vulnerability in Linux Kernel
In Linux before version 2.0.36, remote attackers can spoof a TCP connection and pass data to the application layer before fully establishing the connection.
network
low complexity
linux
5.0