Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
alan cox vulnerabilities and exploits
(subscribe to this query)
169
VMScore
CVE-2007-4308
The (1) aac_cfg_open and (2) aac_compat_ioctl functions in the SCSI layer ioctl path in aacraid in the Linux kernel prior to 2.6.23-rc2 do not check permissions for ioctls, which might allow local users to cause a denial of service or gain privileges.
Adaptec Aacraid Controller
418
VMScore
CVE-2007-2172
A typo in Linux kernel 2.6 prior to 2.6.21-rc6 and 2.4 prior to 2.4.35 causes RTA_MAX to be used as an array size instead of RTN_MAX, which leads to an "out of bound access" by the (1) dn_fib_props (dn_fib.c, DECNet) and (2) fib_props (fib_semantics.c, IPv4) functions.
Linux Linux Kernel 2.6.21
Linux Linux Kernel
Debian Debian Linux 3.1
Debian Debian Linux 4.0
Canonical Ubuntu Linux 6.06
Canonical Ubuntu Linux 7.04
Canonical Ubuntu Linux 6.10
418
VMScore
CVE-2008-5701
Array index error in arch/mips/kernel/scall64-o32.S in the Linux kernel prior to 2.6.28-rc8 on 64-bit MIPS platforms allows local users to cause a denial of service (system crash) via an o32 syscall with a small syscall number, which leads to an attempted read operation outside t...
Linux Linux Kernel 2.6.28
Linux Linux Kernel
Debian Debian Linux 4.0
356
VMScore
CVE-2008-4307
Race condition in the do_setlk function in fs/nfs/file.c in the Linux kernel prior to 2.6.26 allows local users to cause a denial of service (crash) via vectors resulting in an interrupted RPC call that leads to a stray FL_POSIX lock, related to improper handling of a race betwee...
Linux Linux Kernel 2.6.25.4
Linux Linux Kernel 2.6.25.11
Linux Linux Kernel 2.6.18
Linux Linux Kernel 2.6.25.9
Linux Linux Kernel 2.6.22.15
Linux Linux Kernel 2.6.24.7
Linux Linux Kernel 2.6.23.13
Linux Linux Kernel 2.6.24.2
Linux Linux Kernel 2.4.36.6
Linux Linux Kernel 2.6.22.21
Linux Linux Kernel 2.6.25.12
Linux Linux Kernel 2.6.25.5
Linux Linux Kernel 2.6.23.8
Linux Linux Kernel 2.6.25
Linux Linux Kernel 2.6.22.12
Linux Linux Kernel 2.6.25.8
Linux Linux Kernel 2.6.21.6
Linux Linux Kernel 2.4.36.2
Linux Linux Kernel 2.6.22.1
Linux Linux Kernel 2.6.23.16
Linux Linux Kernel 2.6.24.1
Linux Linux Kernel 2.6.25.6
436
VMScore
CVE-2008-5395
The parisc_show_stack function in arch/parisc/kernel/traps.c in the Linux kernel prior to 2.6.28-rc7 on PA-RISC allows local users to cause a denial of service (system crash) via vectors associated with an attempt to unwind a stack that contains userspace addresses.
Linux Linux Kernel
Linux Linux Kernel 2.2.27
Linux Linux Kernel 2.4.36
Linux Linux Kernel 2.4.36.1
Linux Linux Kernel 2.4.36.2
Linux Linux Kernel 2.4.36.3
Linux Linux Kernel 2.4.36.4
Linux Linux Kernel 2.4.36.5
Linux Linux Kernel 2.4.36.6
Linux Linux Kernel 2.6
Linux Linux Kernel 2.6.18
Linux Linux Kernel 2.6.19.4
Linux Linux Kernel 2.6.19.5
Linux Linux Kernel 2.6.19.6
Linux Linux Kernel 2.6.19.7
Linux Linux Kernel 2.6.20.16
Linux Linux Kernel 2.6.20.17
Linux Linux Kernel 2.6.20.18
Linux Linux Kernel 2.6.20.19
Linux Linux Kernel 2.6.20.20
Linux Linux Kernel 2.6.20.21
Linux Linux Kernel 2.6.21.5
169
VMScore
CVE-2008-5700
libata in the Linux kernel prior to 2.6.27.9 does not set minimum timeouts for SG_IO requests, which allows local users to cause a denial of service (Programmed I/O mode on drives) via multiple simultaneous invocations of an unspecified test program.
Linux Linux Kernel 2.6.25.4
Linux Linux Kernel 2.6.25.11
Linux Linux Kernel 2.6.18
Linux Linux Kernel 2.6.25.9
Linux Linux Kernel 2.6.22.15
Linux Linux Kernel 2.6.27.3
Linux Linux Kernel 2.6.27.1
Linux Linux Kernel 2.6.24.7
Linux Linux Kernel 2.6.23.13
Linux Linux Kernel 2.6.24.2
Linux Linux Kernel 2.4.36.6
Linux Linux Kernel 2.6.26.5
Linux Linux Kernel 2.6.22.21
Linux Linux Kernel 2.6.25.12
Linux Linux Kernel 2.6.25.5
Linux Linux Kernel 2.6.23.8
Linux Linux Kernel 2.6.25
Linux Linux Kernel 2.6.22.12
Linux Linux Kernel 2.6.25.8
Linux Linux Kernel 2.6.21.6
Linux Linux Kernel 2.6.26.6
Linux Linux Kernel 2.4.36.2
641
VMScore
CVE-2008-5702
Buffer underflow in the ibwdt_ioctl function in drivers/watchdog/ib700wdt.c in the Linux kernel prior to 2.6.28-rc1 might allow local users to have an unknown impact via a certain /dev/watchdog WDIOC_SETTIMEOUT IOCTL call.
Linux Linux Kernel 2.6.25.4
Linux Linux Kernel 2.6.25.11
Linux Linux Kernel 2.6.18
Linux Linux Kernel 2.6.25.9
Linux Linux Kernel 2.6.22.15
Linux Linux Kernel 2.6.24.7
Linux Linux Kernel 2.6.23.13
Linux Linux Kernel 2.6.24.2
Linux Linux Kernel 2.4.36.6
Linux Linux Kernel 2.6.26.5
Linux Linux Kernel
Linux Linux Kernel 2.6.22.21
Linux Linux Kernel 2.6.25.12
Linux Linux Kernel 2.6.25.5
Linux Linux Kernel 2.6.23.8
Linux Linux Kernel 2.6.25
Linux Linux Kernel 2.6.22.12
Linux Linux Kernel 2.6.25.8
Linux Linux Kernel 2.6.21.6
Linux Linux Kernel 2.4.36.2
Linux Linux Kernel 2.6.22.1
Linux Linux Kernel 2.6.23.16
215
VMScore
CVE-2009-0028
The clone system call in the Linux kernel 2.6.28 and previous versions allows local users to send arbitrary signals to a parent process from an unprivileged child process by launching an additional child process with the CLONE_PARENT flag, and then letting this new process exit.
Linux Linux Kernel 2.6
Linux Linux Kernel 2.4.36.6
Linux Linux Kernel 2.6.11
Linux Linux Kernel 2.6.11.1
Linux Linux Kernel 2.6.12.2
Linux Linux Kernel 2.6.11.4
Linux Linux Kernel 2.6.11.5
Linux Linux Kernel 2.6.12.5
Linux Linux Kernel 2.6.12.4
Linux Linux Kernel 2.6.13.3
Linux Linux Kernel 2.6.13.4
Linux Linux Kernel 2.6.14.4
Linux Linux Kernel 2.6.14.1
Linux Linux Kernel 2.6.16
Linux Linux Kernel 2.6.15.7
Linux Linux Kernel 2.6.16.19
Linux Linux Kernel 2.6.16.14
Linux Linux Kernel 2.6.16.26
Linux Linux Kernel 2.6.16.25
Linux Linux Kernel 2.6.16.33
Linux Linux Kernel 2.6.16.34
Linux Linux Kernel 2.6.16.38
1 EDB exploit
641
VMScore
CVE-2008-0007
Linux kernel prior to 2.6.22.17, when using certain drivers that register a fault handler that does not perform range checks, allows local users to access kernel memory via an out-of-range offset.
Linux Linux Kernel
605
VMScore
CVE-2007-4311
The xfer_secondary_pool function in drivers/char/random.c in the Linux kernel 2.4 prior to 2.4.35 performs reseed operations on only the first few bytes of a buffer, which might make it easier for malicious users to predict the output of the random number generator, related to in...
Linux Linux Kernel
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-49333
CVE-2024-33901
CVE-2024-36001
CVE-2024-2835
firewall
XPath injection
authentication bypass
CVE-2024-22120
CVE-2024-32002
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
NEXT »