| 20193 |
CVE-2016-4580 |
The x25_negotiate_facilities function in net/x25/x25_facilities.c in the Linux kernel before 4.5.5 does not properly initialize a certain data structure, which allows attackers to obtain sensitive information from kernel stack memory via an X.25 Call Request. |
|
2 |
5 |
Medium |
2017-01-19 |
2016-11-28 |
View
|
| 42005 |
CVE-2013-7271 |
The x25_recvmsg function in net/x25/af_x25.c in the Linux kernel before 3.12.4 updates a certain length value without ensuring that an associated data structure has been initialized, which allows local users to obtain sensitive information from kernel memory via a (1) recvfrom, (2) recvmmsg, or (3) recvmsg system call. |
|
2 |
4.9 |
Medium |
2017-01-18 |
2014-03-16 |
View
|
| 39939 |
CVE-2013-4314 |
The X509Extension in pyOpenSSL before 0.13.1 does not properly handle a " |