Vulnerabilities > Linux > Medium

DATE CVE VULNERABILITY TITLE RISK
2007-02-24 CVE-2006-7051 Denial-Of-Service vulnerability in kernel
The sys_timer_create function in posix-timers.c for Linux kernel 2.6.x allows local users to cause a denial of service (memory consumption) and possibly bypass memory limits or cause other processes to be killed by creating a large number of posix timers, which are allocated in kernel memory but are not treated as part of the process' memory.
local
low complexity
linux
4.9
2007-01-30 CVE-2006-5754 Local Denial of Service vulnerability in Linux Kernel AIO_Setup_Ring
The aio_setup_ring function in Linux kernel does not properly initialize a variable, which allows local users to cause a denial of service (crash) via an unspecified error path that causes an incorrect free operation.
local
low complexity
linux
4.9
2006-12-20 CVE-2006-4814 Resource Management Errors vulnerability in Linux Kernel
The mincore function in the Linux kernel before 2.4.33.6 does not properly lock access to user space, which has unspecified impact and attack vectors, possibly related to a deadlock.
local
low complexity
linux CWE-399
4.6
2006-12-11 CVE-2006-5871 Multiple vulnerability in Linux Kernel 2.4.33/2.6.8
smbfs in Linux kernel 2.6.8 and other versions, and 2.4.x before 2.4.34, when UNIX extensions are enabled, ignores certain mount options, which could cause clients to use server-specified uid, gid and mode settings.
local
linux
4.1
2006-11-22 CVE-2006-6060 Denial-Of-Service vulnerability in kernel
The NTFS filesystem code in Linux kernel 2.6.x up to 2.6.18, and possibly other versions, allows local users to cause a denial of service (CPU consumption) via a malformed NTFS file stream that triggers an infinite loop in the __find_get_block_slow function.
local
low complexity
linux
4.9
2006-11-22 CVE-2006-6058 Numeric Errors vulnerability in Linux Kernel
The minix filesystem code in Linux kernel 2.6.x before 2.6.24, including 2.6.18, allows local users to cause a denial of service (hang) via a malformed minix file stream that triggers an infinite loop in the minix_bmap function.
local
high complexity
linux CWE-189
4.0
2006-11-22 CVE-2006-6057 Denial-Of-Service vulnerability in kernel
The Linux kernel 2.6.x up to 2.6.18, and possibly other versions, on Fedora Core 6 and possibly other operating systems, allows local users to cause a denial of service (crash) via a malformed gfs2 file stream that triggers a NULL pointer dereference in the init_journal function.
local
low complexity
linux
4.9
2006-11-22 CVE-2006-6056 Denial-Of-Service vulnerability in kernel
Linux kernel 2.6.x up to 2.6.18 and possibly other versions, when SELinux hooks are enabled, allows local users to cause a denial of service (crash) via a malformed file stream that triggers a NULL pointer dereference in the superblock_doinit function, as demonstrated using an HFS filesystem image.
local
low complexity
linux
4.9
2006-11-22 CVE-2006-6054 Denial-Of-Service vulnerability in kernel
The ext2 file system code in Linux kernel 2.6.x allows local users to cause a denial of service (crash) via an ext2 stream with malformed data structures that triggers an error in the ext2_check_page due to a length that is smaller than the minimum.
local
high complexity
linux
4.0
2006-11-22 CVE-2006-6053 Denial-Of-Service vulnerability in kernel
The ext3fs_dirhash function in Linux kernel 2.6.x allows local users to cause a denial of service (crash) via an ext3 stream with malformed data structures.
local
low complexity
linux
4.9