Linux
linux
13,697 CVEs • 18 products
Products (18)
Click to collapseToggle
Products (18)
Click to collapse
CVEs (13,697)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
mknod in Linux 2.2 follows symbolic links, which could allow local users to overwrite files or gain privileges. |
The pt_chown command in Linux allows local users to modify TTY terminal devices that belong to other users. |
IPChains in Linux kernels 2.2.10 and earlier does not reassemble IP fragments before checking the header information, which allows a remote attacker to bypass the filtering rules using several fragments with 0 offsets. |
Linux 2.0.37 does not properly encode the Custom segment limit, which allows local users to gain root privileges by accessing and modifying kernel memory. |
4Debian LinuxRedhat+1 more4Debian Linux LinuxLinux Kernel+1 moreApr 16, 2026 Jun 1, 1999 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Denial of service in Linux 2.2.x kernels via malformed ICMP packets containing unusual types, codes, and IP header lengths. |
Linux 2.2.3 and earlier allow a remote attacker to perform an IP fragmentation attack, causing a denial of service. |
In Linux before version 2.0.36, remote attackers can spoof a TCP connection and pass data to the application layer before fully establishing the connection. |
2Debian Linux2Debian Linux Linux KernelApr 16, 2026 Feb 26, 1999 N/A· v4 N/A· v3 7.2 HIGH· v2 super 3.11.6 and other versions have a buffer overflow in the syslog utility which allows a local user to gain root access. |
Buffer overflow in Linux autofs module through long directory names allows local users to perform a denial of service. |
Versions of rpcbind including Linux, IRIX, and Wietse Venema's rpcbind allow a remote attacker to insert and delete entries by spoofing a source address. |
Denial of service in Linux 2.2.0 running the ldd command on a core file. |
Denial of service in Linux 2.0.36 allows local users to prevent any server from listening on any non-privileged port. |
The ugidd RPC interface, by design, allows remote attackers to enumerate valid usernames by specifying arbitrary UIDs that ugidd maps to local user and group names. |
A race condition in Linux 2.2.1 allows local users to read arbitrary memory from /proc files. |
Linux 2.1.132 and earlier allows local users to cause a denial of service (resource exhaustion) by reading a large buffer from a random device (e.g. /dev/urandom), which cannot be interrupted until the read has completed...Show more |
fte-console in the fte package before 0.46b-4.1 does not drop root privileges, which allows local users to gain root access via the virtual console device. |
3Freebsd KdeLinux3Freebsd KdeLinux KernelApr 16, 2026 Nov 18, 1998 N/A· v4 N/A· v3 2.1 LOW· v2 KDE kppp allows local users to create a directory in an arbitrary location via the HOME environmental variable. |
3Freebsd KdeLinux3Freebsd KdeLinux KernelApr 16, 2026 Nov 18, 1998 N/A· v4 N/A· v3 7.2 HIGH· v2 KDE allows local users to execute arbitrary commands by setting the KDEDIR environmental variable to modify the search path that KDE uses to locate its executables. |
3Freebsd KdeLinux3Freebsd KdeLinux KernelApr 16, 2026 Nov 18, 1998 N/A· v4 N/A· v3 4.6 MEDIUM· v2 KDE klock allows local users to kill arbitrary processes by specifying an arbitrary PID in the .kss.pid file. |
Linux 2.0.34 does not properly prevent users from sending SIGIO signals to arbitrary processes, which allows local users to cause a denial of service by sending SIGIO to processes that do not catch it. |