CVE & Exploit Intelligence Database

Updated 1h ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

337,819 CVEs tracked 53,239 with exploits 4,725 exploited in wild 1,540 CISA KEV 3,918 Nuclei templates 37,800 vendors 42,488 researchers
12,131 results Clear all
CVE-2007-3719 EPSS 0.00
Linux Kernel - Denial of Service
The process scheduler in the Linux kernel 2.6.16 gives preference to "interactive" processes that perform voluntary sleeps, which allows local users to cause a denial of service (CPU consumption), as described in "Secretly Monopolizing the CPU Without Superuser Privileges."
Jul 12, 2007
CVE-2007-3107 EPSS 0.00
Linux Kernel < 2.6.21.7 - Denial of Service
The signal handling in the Linux kernel before 2.6.22, including 2.6.2, when running on PowerPC systems using HTX, allows local users to cause a denial of service via unspecified vectors involving floating point corruption and concurrency, related to clearing of MSR bits.
Jul 10, 2007
CVE-2007-3642 EPSS 0.02
Linux Kernel < 2.6.20.14 - Numeric Error
The decode_choice function in net/netfilter/nf_conntrack_h323_asn1.c in the Linux kernel before 2.6.20.15, 2.6.21.x before 2.6.21.6, and before 2.6.22 allows remote attackers to cause a denial of service (crash) via an encoded, out-of-range index value for a choice field, which triggers a NULL pointer dereference.
CWE-189 Jul 10, 2007
CVE-2007-3513 EPSS 0.00
Linux Kernel < 2.6.22 - Denial of Service
The lcd_write function in drivers/usb/misc/usblcd.c in the Linux kernel before 2.6.22-rc7 does not limit the amount of memory used by a caller, which allows local users to cause a denial of service (memory consumption).
Jul 03, 2007
CVE-2007-3104 EPSS 0.00
Linux Kernel - Resource Management Error
The sysfs_readdir function in the Linux kernel 2.6, as used in Red Hat Enterprise Linux (RHEL) 4.5 and other distributions, allows users to cause a denial of service (kernel OOPS) by dereferencing a null pointer to an inode in a dentry.
CWE-399 Jun 26, 2007
CVE-2007-2876 EPSS 0.03
Linux kernel <2.6.20.13-2.6.21.4 - DoS
The sctp_new function in (1) ip_conntrack_proto_sctp.c and (2) nf_conntrack_proto_sctp.c in Netfilter in Linux kernel 2.6 before 2.6.20.13, and 2.6.21.x before 2.6.21.4, allows remote attackers to cause a denial of service by causing certain invalid states that trigger a NULL pointer dereference.
Jun 11, 2007
CVE-2007-2453 EPSS 0.00
Linux kernel <2.6.20.13, 2.6.21.x <2.6.21.4 - Info Disclosure
The random number feature in Linux kernel 2.6 before 2.6.20.13, and 2.6.21.x before 2.6.21.4, (1) does not properly seed pools when there is no entropy, or (2) uses an incorrect cast when extracting entropy, which might cause the random number generator to provide the same values after reboots on systems without an entropy source.
Jun 11, 2007
CVE-2007-2875 EPSS 0.00
Linux Kernel <2.6.20.13, <2.6.21.x - Info Disclosure
Integer underflow in the cpuset_tasks_read function in the Linux kernel before 2.6.20.13, and 2.6.21.x before 2.6.21.4, when the cpuset filesystem is mounted, allows local users to obtain kernel memory contents by using a large offset when reading the /dev/cpuset/tasks file.
CWE-189 Jun 11, 2007
CVE-2007-2451 EPSS 0.01
Linux kernel <2.6.21.3 - Info Disclosure
Unspecified vulnerability in drivers/crypto/geode-aes.c in GEODE-AES in the Linux kernel before 2.6.21.3 allows attackers to obtain sensitive information via unspecified vectors.
May 29, 2007
CVE-2007-2878 1 PoC Analysis EPSS 0.00
Linux kernel <2.6.21.2 - DoS
The VFAT compat ioctls in the Linux kernel before 2.6.21.2, when run on a 64-bit system, allow local users to corrupt a kernel_dirent struct and cause a denial of service (system crash) via unknown vectors.
May 29, 2007
CVE-2007-2764 EPSS 0.01
Sun-Brocade SilkWorm <20070516 - DoS
The embedded Linux kernel in certain Sun-Brocade SilkWorm switches before 20070516 does not properly handle a situation in which a non-root user creates a kernel process, which allows attackers to cause a denial of service (oops and device reboot) via unspecified vectors.
CWE-20 May 18, 2007
CVE-2006-7203 EPSS 0.00
Linux Kernel < 2.6.20 - Denial of Service
The compat_sys_mount function in fs/compat.c in Linux kernel 2.6.20 and earlier allows local users to cause a denial of service (NULL pointer dereference and oops) by mounting a smbfs file system in compatibility mode ("mount -t smbfs").
May 14, 2007
CVE-2007-2525 EPSS 0.00
Linux Kernel <2.6.21 - DoS
Memory leak in the PPP over Ethernet (PPPoE) socket implementation in the Linux kernel before 2.6.21-git8 allows local users to cause a denial of service (memory consumption) by creating a socket using connect, and releasing it before the PPPIOCGCHAN ioctl is initialized.
May 08, 2007
CVE-2007-1861 1 PoC Analysis EPSS 0.02
Linux Kernel < 2.6.20.8 - Resource Management Error
The nl_fib_lookup function in net/ipv4/fib_frontend.c in Linux Kernel before 2.6.20.8 allows attackers to cause a denial of service (kernel panic) via NETLINK_FIB_LOOKUP replies, which trigger infinite recursion and a stack overflow.
CWE-399 May 07, 2007
CVE-2007-2480 EPSS 0.00
Linux kernel <2.6.21 - Local Privilege Escalation
The _udp_lib_get_port function in net/ipv4/udp.c in Linux kernel 2.6.21 and earlier does not prevent a bind to a port with a local address when there is already a bind to that port with a wildcard local address, which might allow local users to intercept local traffic for daemons or other applications.
May 03, 2007
CVE-2007-0771 EPSS 0.00
Linux kernel <2.6.18 - DoS
The utrace support in Linux kernel 2.6.18, and other versions, allows local users to cause a denial of service (system hang) related to "MT exec + utrace_attach spin failure mode," as demonstrated by ptrace-thrash.c.
May 02, 2007
CVE-2007-1353 EPSS 0.00
Linux kernel <2.4.34.3 - Info Disclosure
The setsockopt function in the L2CAP and HCI Bluetooth support in the Linux kernel before 2.4.34.3 allows context-dependent attackers to read kernel memory and obtain sensitive information via unspecified vectors involving the copy_from_user function accessing an uninitialized stack buffer.
Apr 24, 2007
CVE-2007-2172 EPSS 0.00
Linux Kernel < 2.4.35 - Improper Input Validation
A typo in Linux kernel 2.6 before 2.6.21-rc6 and 2.4 before 2.4.35 causes RTA_MAX to be used as an array size instead of RTN_MAX, which leads to an "out of bound access" by the (1) dn_fib_props (dn_fib.c, DECNet) and (2) fib_props (fib_semantics.c, IPv4) functions.
CWE-20 Apr 22, 2007
CVE-2007-1357 1 PoC Analysis EPSS 0.09
Linux Kernel < 2.6.20.4 - Denial of Service
The atalk_sum_skb function in AppleTalk for Linux kernel 2.6.x before 2.6.21, and possibly 2.4.x, allows remote attackers to cause a denial of service (crash) via an AppleTalk frame that is shorter than the specified length, which triggers a BUG_ON call when an attempt is made to perform a checksum.
Apr 11, 2007
CVE-2007-1734 2 PoCs Analysis EPSS 0.01
Linux Kernel - Denial of Service
The DCCP support in the do_dccp_getsockopt function in net/dccp/proto.c in Linux kernel 2.6.20 and later does not verify the upper bounds of the optlen value, which allows local users running on certain architectures to read kernel memory or cause a denial of service (oops), a related issue to CVE-2007-1730.
Mar 28, 2007