CVEs (1,858)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
2Linux Redhat2Enterprise Linux Linux KernelApr 29, 2026 Mar 15, 2013 N/A· v4 N/A· v3 1.9 LOW· v2 The ATM implementation in the Linux kernel before 3.6 does not initialize certain structures, which allows local users to obtain sensitive information from kernel stack memory via a crafted application. |
2Linux Redhat2Enterprise Linux Linux KernelApr 29, 2026 Mar 15, 2013 N/A· v4 N/A· v3 1.9 LOW· v2 The Bluetooth RFCOMM implementation in the Linux kernel before 3.6 does not properly initialize certain structures, which allows local users to obtain sensitive information from kernel memory via a crafted application. |
2Linux Redhat2Enterprise Linux Linux KernelApr 29, 2026 Mar 15, 2013 N/A· v4 N/A· v3 1.9 LOW· v2 The Bluetooth protocol stack in the Linux kernel before 3.6 does not properly initialize certain structures, which allows local users to obtain sensitive information from kernel stack memory via a crafted application tha...Show more |
2Linux Redhat2Enterprise Linux Linux KernelApr 29, 2026 Mar 15, 2013 N/A· v4 N/A· v3 1.9 LOW· v2 The llc_ui_getname function in net/llc/af_llc.c in the Linux kernel before 3.6 has an incorrect return value in certain circumstances, which allows local users to obtain sensitive information from kernel stack memory via...Show more |
2Linux Redhat2Enterprise Linux Linux KernelApr 29, 2026 Mar 15, 2013 N/A· v4 N/A· v3 1.9 LOW· v2 The copy_to_user_auth function in net/xfrm/xfrm_user.c in the Linux kernel before 3.6 uses an incorrect C library function for copying a string, which allows local users to obtain sensitive information from kernel heap m...Show more |
2Linux Redhat2Enterprise Linux Linux KernelApr 29, 2026 Mar 15, 2013 N/A· v4 N/A· v3 1.9 LOW· v2 net/xfrm/xfrm_user.c in the Linux kernel before 3.6 does not initialize certain structures, which allows local users to obtain sensitive information from kernel memory by leveraging the CAP_NET_ADMIN capability. |
2Hp Redhat2Enterprise Linux Linux Imaging And Printing ProjectApr 29, 2026 Mar 6, 2013 N/A· v4 N/A· v3 1.9 LOW· v2 HP Linux Imaging and Printing (HPLIP) through 3.12.4 allows local users to overwrite arbitrary files via a symlink attack on the (1) /tmp/hpcupsfilterc_#.bmp, (2) /tmp/hpcupsfilterk_#.bmp, (3) /tmp/hpcups_job#.out, (4) /...Show more |
2Linux Redhat7Enterprise Linux Enterprise Linux AusEnterprise Linux Desktop+4 moreApr 29, 2026 Mar 1, 2013 N/A· v4 N/A· v3 3.6 LOW· v2 kernel/signal.c in the Linux kernel before 2.6.39 allows local users to spoof the uid and pid of a signal sender via a sigqueueinfo system call. |
2Fedoraproject Redhat2Enterprise Linux FedoraApr 29, 2026 Mar 1, 2013 N/A· v4 N/A· v3 1.9 LOW· v2 The ExecShield feature in a certain Red Hat patch for the Linux kernel in Red Hat Enterprise Linux (RHEL) 5 and 6 and Fedora 15 and 16 does not properly handle use of many shared libraries by a 32-bit executable file, wh...Show more |
2Linux Redhat3Enterprise Linux Enterprise MrgLinux KernelApr 29, 2026 Feb 28, 2013 N/A· v4 N/A· v3 4.0 MEDIUM· v2 The chase_port function in drivers/usb/serial/io_ti.c in the Linux kernel before 3.7.4 allows local users to cause a denial of service (NULL pointer dereference and system crash) via an attempted /dev/ttyUSB read or writ...Show more |
2Linux Redhat3Enterprise Linux Enterprise MrgLinux KernelApr 29, 2026 Feb 28, 2013 N/A· v4 N/A· v3 6.2 MEDIUM· v2 Buffer overflow in the VFAT filesystem implementation in the Linux kernel before 3.3 allows local users to gain privileges or cause a denial of service (system crash) via a VFAT write operation on a filesystem with the u...Show more |
Unspecified vulnerability in autofs, as used in Red Hat Enterprise Linux (RHEL) 5, allows local users to cause a denial of service (autofs crash and delayed mounts) or prevent "mount expiration" via unspecified vectors r...Show more |
2Fedoraproject Redhat2Enterprise Linux SssdApr 29, 2026 Feb 24, 2013 N/A· v4 N/A· v3 3.7 LOW· v2 System Security Services Daemon (SSSD) before 1.9.4, when (1) creating, (2) copying, or (3) removing a user home directory tree, allows local users to create, modify, or delete arbitrary files via a symlink attack on ano...Show more |
2Linux Redhat2Enterprise Linux Linux KernelApr 29, 2026 Feb 22, 2013 N/A· v4 N/A· v3 6.5 MEDIUM· v2 The translate_desc function in drivers/vhost/vhost.c in the Linux kernel before 3.7 does not properly handle cross-region descriptors, which allows guest OS users to obtain host OS privileges by leveraging KVM guest OS p...Show more |
2Linux Redhat2Enterprise Linux Linux KernelApr 29, 2026 Feb 22, 2013 N/A· v4 N/A· v3 6.6 MEDIUM· v2 The cipso_v4_validate function in net/ipv4/cipso_ipv4.c in the Linux kernel before 3.4.8 allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impa...Show more |
2Linux Redhat2Enterprise Linux Linux KernelApr 29, 2026 Feb 22, 2013 N/A· v4 N/A· v3 4.7 MEDIUM· v2 arch/x86/include/asm/pgtable.h in the Linux kernel before 3.6.2, when transparent huge pages are used, does not properly support PROT_NONE memory regions, which allows local users to cause a denial of service (system cra...Show more |
2Fedora Project Redhat2Enterprise Linux Fedora Release RawhideApr 29, 2026 Feb 22, 2013 N/A· v4 N/A· v3 6.2 MEDIUM· v2 A certain Red Hat build of the pam_ssh_agent_auth module on Red Hat Enterprise Linux (RHEL) 6 and Fedora Rawhide calls the glibc error function instead of the error function in the OpenSSH codebase, which allows local us...Show more |
2Palemoon Redhat3Enterprise Linux Enterprise VirtualizationPale MoonApr 29, 2026 Jan 31, 2013 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 Stack-based buffer overflow in libpixman, as used in Pale Moon before 15.4 and possibly other products, has unspecified impact and context-dependent attack vectors. NOTE: this issue might be resultant from an integer ov...Show more |
2Redhat Squirrelmail2Enterprise Linux SquirrelmailApr 29, 2026 Jan 18, 2013 N/A· v4 N/A· v3 5.0 MEDIUM· v2 functions/imap_general.php in SquirrelMail, as used in Red Hat Enterprise Linux (RHEL) 4 and 5, does not properly handle 8-bit characters in passwords, which allows remote attackers to cause a denial of service (disk con...Show more |
4Canonical MariadbOracle+1 more7Enterprise Linux Enterprise Linux DesktopEnterprise Linux Eus+4 moreApr 29, 2026 Jan 17, 2013 N/A· v4 N/A· v3 4.3 MEDIUM· v2 Unspecified vulnerability in the Server component in Oracle MySQL 5.1.66 and earlier, and 5.5.28 and earlier, allows remote attackers to affect availability via unknown vectors related to Server Locking. |