VYPR

Kernel

by Linux

Source repositories

CVEs (18,769)

  • CVE-2002-0570Jul 3, 2002
    risk 0.00cvss epss 0.00

    The encrypted loop device in Linux kernel 2.4.10 and earlier does not authenticate the entity that is encrypting data, which allows local users to modify encrypted data without knowing the key.

  • CVE-2002-0060Mar 8, 2002
    risk 0.00cvss epss 0.05

    IRC connection tracking helper module in the netfilter subsystem for Linux 2.4.18-pre9 and earlier does not properly set the mask for conntrack expectations for incoming DCC connections, which could allow remote attackers to bypass intended firewall restrictions.

  • CVE-2002-0046Jan 31, 2002
    risk 0.00cvss epss 0.03

    Linux kernel, and possibly other operating systems, allows remote attackers to read portions of memory via a series of fragmented ICMP packets that generate an ICMP TTL Exceeded response, which includes portions of the memory in the response packet.

  • CVE-2001-1572Dec 31, 2001
    risk 0.00cvss epss 0.03

    The MAC module in Netfilter in Linux kernel 2.4.1 through 2.4.11, when configured to filter based on MAC addresses, allows remote attackers to bypass packet filters via small packets.

  • CVE-2001-1551Dec 31, 2001
    risk 0.00cvss epss 0.00

    Linux kernel 2.2.19 enables CAP_SYS_RESOURCE for setuid processes, which allows local users to exceed disk quota restrictions during execution of setuid programs.

  • CVE-2001-0851Dec 6, 2001
    risk 0.00cvss epss 0.03

    Linux kernel 2.0, 2.2 and 2.4 with syncookies enabled allows remote attackers to bypass firewall rules by brute force guessing the cookie.

  • CVE-2001-0914Nov 21, 2001
    risk 0.00cvss epss 0.00

    Linux kernel before 2.4.11pre3 in multiple Linux distributions allows local users to cause a denial of service (crash) by starting the core vmlinux kernel, possibly related to poor error checking during ELF loading.

  • CVE-2001-1056Jul 30, 2001
    risk 0.00cvss epss 0.02

    IRC DCC helper in the ip_masq_irc IP masquerading module 2.2 allows remote attackers to bypass intended firewall restrictions by causing the target system to send a "DCC SEND" request to a malicious server which listens on port 6667, which may cause the module to believe that…

  • CVE-2001-1244Jul 7, 2001
    risk 0.00cvss epss 0.22

    Multiple TCP implementations could allow remote attackers to cause a denial of service (bandwidth and CPU exhaustion) by setting the maximum segment size (MSS) to a very small number and requesting large amounts of data, which generates more packets with less TCP-level data that…

  • CVE-2001-1400Apr 17, 2001
    risk 0.00cvss epss 0.00

    Unknown vulnerabilities in the UDP port allocation for Linux kernel before 2.2.19 could allow local users to cause a denial of service (deadlock).

  • CVE-2001-1395Apr 17, 2001
    risk 0.00cvss epss 0.00

    Unknown vulnerability in sockfilter for Linux kernel before 2.2.19 related to "boundary cases," with unknown impact.

  • CVE-2001-1390Apr 17, 2001
    risk 0.00cvss epss 0.00

    Unknown vulnerability in binfmt_misc in the Linux kernel before 2.2.19, related to user pages.

  • CVE-2001-1396Apr 17, 2001
    risk 0.00cvss epss 0.00

    Unknown vulnerabilities in strnlen_user for Linux kernel before 2.2.19, with unknown impact.

  • CVE-2001-1393Apr 17, 2001
    risk 0.00cvss epss 0.00

    Unknown vulnerability in classifier code for Linux kernel before 2.2.19 could result in denial of service (hang).

  • CVE-2001-1392Apr 17, 2001
    risk 0.00cvss epss 0.00

    The Linux kernel before 2.2.19 does not have unregister calls for (1) CPUID and (2) MSR drivers, which could cause a DoS (crash) by unloading and reloading the drivers.

  • CVE-2001-1399Apr 17, 2001
    risk 0.00cvss epss 0.00

    Certain operations in Linux kernel before 2.2.19 on the x86 architecture copy the wrong number of bytes, which might allow attackers to modify memory, aka "User access asm bug on x86."

  • CVE-2001-1398Apr 17, 2001
    risk 0.00cvss epss 0.03

    Masquerading code for Linux kernel before 2.2.19 does not fully check packet lengths in certain cases, which may lead to a vulnerability.

  • CVE-2001-1394Apr 17, 2001
    risk 0.00cvss epss 0.00

    Signedness error in (1) getsockopt and (2) setsockopt for Linux kernel before 2.2.19 allows local users to cause a denial of service.

  • CVE-2001-1397Apr 17, 2001
    risk 0.00cvss epss 0.00

    The System V (SYS5) shared memory implementation for Linux kernel before 2.2.19 could allow attackers to modify recently freed memory.

  • CVE-2001-1273Feb 12, 2001
    risk 0.00cvss epss 0.00

    The "mxcsr P4" vulnerability in the Linux kernel before 2.2.17-14, when running on certain Intel CPUs, allows local users to cause a denial of service (system halt).