Vulnerabilities > Linux > High

DATE CVE VULNERABILITY TITLE RISK
2003-03-31 CVE-2003-0127 Unspecified vulnerability in Linux Kernel
The kernel module loader in Linux kernel 2.2.x before 2.2.25, and 2.4.x before 2.4.21, allows local users to gain root privileges by using ptrace to attach to a child process that is spawned by the kernel.
local
low complexity
linux
7.2
2002-07-26 CVE-2002-0704 Improper Cross-boundary Removal of Sensitive Data vulnerability in Linux Kernel
The Network Address Translation (NAT) capability for Netfilter ("iptables") 1.2.6a and earlier leaks translated IP addresses in ICMP error messages.
network
low complexity
linux CWE-212
7.5
2002-03-08 CVE-2002-0060 Unspecified vulnerability in Linux Kernel 2.3.99/2.4.18
IRC connection tracking helper module in the netfilter subsystem for Linux 2.4.18-pre9 and earlier does not properly set the mask for conntrack expectations for incoming DCC connections, which could allow remote attackers to bypass intended firewall restrictions.
network
low complexity
linux
7.5
2001-12-31 CVE-2001-1572 Unspecified vulnerability in Linux Kernel
The MAC module in Netfilter in Linux kernel 2.4.1 through 2.4.11, when configured to filter based on MAC addresses, allows remote attackers to bypass packet filters via small packets.
network
low complexity
linux
7.5
2001-10-18 CVE-2001-1384 Unspecified vulnerability in Linux Kernel
ptrace in Linux 2.2.x through 2.2.19, and 2.4.x through 2.4.9, allows local users to gain root privileges by running ptrace on a setuid or setgid program that itself calls an unprivileged program, such as newgrp.
local
low complexity
linux
7.2
2001-07-30 CVE-2001-1056 Unspecified vulnerability in Linux Kernel
IRC DCC helper in the ip_masq_irc IP masquerading module 2.2 allows remote attackers to bypass intended firewall restrictions by causing the target system to send a "DCC SEND" request to a malicious server which listens on port 6667, which may cause the module to believe that the traffic is a valid request and allow the connection to the port specified in the DCC SEND request.
network
low complexity
linux
7.5
2001-07-02 CVE-2001-0405 Unspecified vulnerability in Linux Kernel
ip_conntrack_ftp in the IPTables firewall for Linux 2.4 allows remote attackers to bypass access restrictions for an FTP server via a PORT command that lists an arbitrary IP address and port number, which is added to the RELATED table and allowed by the firewall.
network
low complexity
linux
7.5
2001-04-17 CVE-2001-1398 Remote Security vulnerability in kernel
Masquerading code for Linux kernel before 2.2.19 does not fully check packet lengths in certain cases, which may lead to a vulnerability.
network
low complexity
linux
7.5
1999-11-25 CVE-1999-0317 Unspecified vulnerability in Linux Kernel 2.6.20.1
Buffer overflow in Linux su command gives root access to local users.
local
low complexity
linux
7.2
1999-07-27 CVE-1999-1018 Unspecified vulnerability in Linux Kernel
IPChains in Linux kernels 2.2.10 and earlier does not reassemble IP fragments before checking the header information, which allows a remote attacker to bypass the filtering rules using several fragments with 0 offsets.
network
low complexity
linux
7.5