CVEs (14,504)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
3Debian LinuxRedhat3Debian Linux LinuxLinux KernelApr 16, 2026 Mar 27, 2000 N/A· v4 N/A· v3 5.0 MEDIUM· v2 IP masquerading in Linux 2.2.x allows remote attackers to route UDP packets through the internal interface by modifying the external source IP address and port number to match those of an established connection. |
The Linux 2.2.x kernel does not restrict the number of Unix domain sockets as defined by the wmem_max parameter, which allows local users to cause a denial of service by requesting a large number of sockets. |
Vulnerability when Network Address Translation (NAT) is enabled in Linux 2.2.10 and earlier with ipchains, or FreeBSD 3.2 with ipfw, allows remote attackers to cause a denial of service (kernel panic) via a ping -R (reco...Show more |
2Linux Paul Kranenburg2Linux Kernel StraceApr 16, 2026 Dec 25, 1999 N/A· v4 N/A· v3 2.6 LOW· v2 strace allows local users to read arbitrary files via memory mapped file names. |
3Debian LinuxRedhat3Debian Linux LinuxLinux KernelApr 16, 2026 Dec 8, 1999 N/A· v4 N/A· v3 5.0 MEDIUM· v2 The ping command in Linux 2.0.3x allows local users to cause a denial of service by sending large packets with the -R (record route) option. |
Buffer overflow in Linux su command gives root access to local users. |
Linux kernel before 2.3.18 or 2.2.13pre15, with SLIP and PPP options, allows local unprivileged users to forge IP packets via the TIOCSETD option on tty devices. |
mknod in Linux 2.2 follows symbolic links, which could allow local users to overwrite files or gain privileges. |
The pt_chown command in Linux allows local users to modify TTY terminal devices that belong to other users. |
IPChains in Linux kernels 2.2.10 and earlier does not reassemble IP fragments before checking the header information, which allows a remote attacker to bypass the filtering rules using several fragments with 0 offsets. |
Linux 2.0.37 does not properly encode the Custom segment limit, which allows local users to gain root privileges by accessing and modifying kernel memory. |
4Debian LinuxRedhat+1 more4Debian Linux LinuxLinux Kernel+1 moreApr 16, 2026 Jun 1, 1999 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Denial of service in Linux 2.2.x kernels via malformed ICMP packets containing unusual types, codes, and IP header lengths. |
Linux 2.2.3 and earlier allow a remote attacker to perform an IP fragmentation attack, causing a denial of service. |
In Linux before version 2.0.36, remote attackers can spoof a TCP connection and pass data to the application layer before fully establishing the connection. |
2Debian Linux2Debian Linux Linux KernelApr 16, 2026 Feb 26, 1999 N/A· v4 N/A· v3 7.2 HIGH· v2 super 3.11.6 and other versions have a buffer overflow in the syslog utility which allows a local user to gain root access. |
Buffer overflow in Linux autofs module through long directory names allows local users to perform a denial of service. |
Versions of rpcbind including Linux, IRIX, and Wietse Venema's rpcbind allow a remote attacker to insert and delete entries by spoofing a source address. |
Denial of service in Linux 2.2.0 running the ldd command on a core file. |
Denial of service in Linux 2.0.36 allows local users to prevent any server from listening on any non-privileged port. |
The ugidd RPC interface, by design, allows remote attackers to enumerate valid usernames by specifying arbitrary UIDs that ugidd maps to local user and group names. |