VendorsLinuxlinux_kernel2.0.37
Vulnerabilities

Linux Kernel 2.0.37

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

9CVEs
CVE-2000-0506
The "capabilities" feature in Linux before 2.2.16 allows local users to cause a denial of service or gain privileges by setting the capabilities to prevent a setuid program from dropping privileges, aka the "Linux kernel setuid/setcap vulnerability."
Published 2000-10-13 · Modified
10.02 PoCEPSS 0.114
CVE-1999-1166
Linux 2.0.37 does not properly encode the Custom segment limit, which allows local users to gain root privileges by accessing and modifying kernel memory.
Published 2001-09-12 · Modified
7.21 PoCEPSS 0.010
CVE-2005-0749
The load_elf_library in the Linux kernel before 2.6.11.6 allows local users to cause a denial of service (kernel crash) via a crafted ELF library or executable, which causes a free of an invalid pointer.
Published 2005-04-05 · Modified
7.2EPSS 0.004
CVE-2004-1057
Multiple drivers in Linux kernel 2.4.19 and earlier do not properly mark memory with the VM_IO flag, which causes incorrect reference counts and may lead to a denial of service (kernel panic) when accessing freed kernel pages.
Published 2005-01-29 · Modified
7.2EPSS 0.004
CVE-2005-0815
Multiple "range checking flaws" in the ISO9660 filesystem handler in Linux 2.6.11 and earlier may allow attackers to cause a denial of service or corrupt memory via a crafted filesystem.
Published 2005-03-20 · Modified
6.41 PoCEPSS 0.134
CVE-2005-0178
Race condition in the setsid function in Linux before 2.6.8.1 allows local users to cause a denial of service (crash) and possibly access portions of kernel memory, related to TTY changes, locking, and semaphores.
Published 2005-02-16 · Modified
6.2EPSS 0.004
CVE-1999-0414
In Linux before version 2.0.36, remote attackers can spoof a TCP connection and pass data to the application layer before fully establishing the connection.
Published 1999-09-29 · Modified
5.01 PoCEPSS 0.069
CVE-1999-0986
The ping command in Linux 2.0.3x allows local users to cause a denial of service by sending large packets with the -R (record route) option.
Published 2000-01-04 · Modified
5.01 PoCEPSS 0.043
CVE-2003-0418
The Linux 2.0 kernel IP stack does not properly calculate the size of an ICMP citation, which causes it to include portions of unauthorized memory in ICMP error responses.
Published 2003-06-18 · Modified
5.0EPSS 0.028