CVE & Exploit Intelligence Database

Updated 5h ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

337,661 CVEs tracked 53,243 with exploits 4,725 exploited in wild 1,540 CISA KEV 3,918 Nuclei templates 37,792 vendors 42,472 researchers
12,131 results Clear all
CVE-2006-6304 EPSS 0.01
Linux kernel <2.6.19 - Info Disclosure
The do_coredump function in fs/exec.c in the Linux kernel 2.6.19 sets the flag variable to O_EXCL but does not use it, which allows context-dependent attackers to modify arbitrary files via a rewrite attack during a core dump.
CWE-399 Dec 14, 2006
CVE-2006-5871 EPSS 0.00
Linux kernel <2.6.8 or <2.4.34 - Privilege Escalation
smbfs in Linux kernel 2.6.8 and other versions, and 2.4.x before 2.4.34, when UNIX extensions are enabled, ignores certain mount options, which could cause clients to use server-specified uid, gid and mode settings.
Dec 11, 2006
CVE-2006-6333 EPSS 0.03
Linux kernel 2.6.19 - DoS
The tr_rx function in ibmtr.c for Linux kernel 2.6.19 assigns the wrong flag to the ip_summed field, which allows remote attackers to cause a denial of service (memory corruption) via crafted packets that cause the kernel to interpret another field as an offset.
Dec 06, 2006
CVE-2006-5751 EPSS 0.00
Linux kernel <2.6.18.4 - RCE
Integer overflow in the get_fdb_entries function in net/bridge/br_ioctl.c in the Linux kernel before 2.6.18.4 allows local users to execute arbitrary code via a large maxnum value in an ioctl request.
Dec 02, 2006
CVE-2006-6128 EPSS 0.00
Linux Kernel - Denial of Service
The ReiserFS functionality in Linux kernel 2.6.18, and possibly other versions, allows local users to cause a denial of service via a malformed ReiserFS file system that triggers memory corruption when a sync is performed.
Nov 27, 2006
CVE-2006-6057 EPSS 0.00
Linux Kernel - Denial of Service
The Linux kernel 2.6.x up to 2.6.18, and possibly other versions, on Fedora Core 6 and possibly other operating systems, allows local users to cause a denial of service (crash) via a malformed gfs2 file stream that triggers a NULL pointer dereference in the init_journal function.
Nov 22, 2006
CVE-2006-6058 EPSS 0.00
Linux Kernel - Numeric Error
The minix filesystem code in Linux kernel 2.6.x before 2.6.24, including 2.6.18, allows local users to cause a denial of service (hang) via a malformed minix file stream that triggers an infinite loop in the minix_bmap function. NOTE: this issue might be due to an integer overflow or signedness error.
CWE-189 Nov 22, 2006
CVE-2006-6060 EPSS 0.00
Linux Kernel - Denial of Service
The NTFS filesystem code in Linux kernel 2.6.x up to 2.6.18, and possibly other versions, allows local users to cause a denial of service (CPU consumption) via a malformed NTFS file stream that triggers an infinite loop in the __find_get_block_slow function.
Nov 22, 2006
CVE-2006-6056 EPSS 0.00
Linux Kernel - Denial of Service
Linux kernel 2.6.x up to 2.6.18 and possibly other versions, when SELinux hooks are enabled, allows local users to cause a denial of service (crash) via a malformed file stream that triggers a NULL pointer dereference in the superblock_doinit function, as demonstrated using an HFS filesystem image.
Nov 22, 2006
CVE-2006-6053 EPSS 0.00
Linux Kernel - Denial of Service
The ext3fs_dirhash function in Linux kernel 2.6.x allows local users to cause a denial of service (crash) via an ext3 stream with malformed data structures.
Nov 22, 2006
CVE-2006-6054 EPSS 0.00
Linux Kernel - Denial of Service
The ext2 file system code in Linux kernel 2.6.x allows local users to cause a denial of service (crash) via an ext2 stream with malformed data structures that triggers an error in the ext2_check_page due to a length that is smaller than the minimum.
Nov 22, 2006
CVE-2006-5823 EPSS 0.00
Linux Kernel - Denial of Service
The zlib_inflate function in Linux kernel 2.6.x allows local users to cause a denial of service (crash) via a malformed filesystem that uses zlib compression that triggers memory corruption, as demonstrated using cramfs.
Nov 09, 2006
CVE-2006-4572 EPSS 0.02
Linux Kernel < 2.6.16.30 - Access Control
ip6_tables in netfilter in the Linux kernel before 2.6.16.31 allows remote attackers to (1) bypass a rule that disallows a protocol, via a packet with the protocol header not located immediately after the fragment header, aka "ip6_tables protocol bypass bug;" and (2) bypass a rule that looks for a certain extension header, via a packet with an extension header outside the first fragment, aka "ip6_tables extension header bypass bug."
CWE-264 Nov 07, 2006
CVE-2006-5757 1 PoC Analysis EPSS 0.01
Linux Kernel - Denial of Service
Race condition in the __find_get_block_slow function in the ISO9660 filesystem in Linux 2.6.18 and possibly other versions allows local users to cause a denial of service (infinite loop) by mounting a crafted ISO9660 filesystem containing malformed data structures.
CWE-399 Nov 06, 2006
CVE-2006-5701 1 PoC Analysis EPSS 0.00
Linux Kernel - Denial of Service
Double free vulnerability in squashfs module in the Linux kernel 2.6.x, as used in Fedora Core 5 and possibly other distributions, allows local users to cause a denial of service by mounting a crafted squashfs filesystem.
Nov 03, 2006
CVE-2006-5619 EPSS 0.00
Linux Kernel - Resource Management Error
The seqfile handling (ip6fl_get_n function in ip6_flowlabel.c) in Linux kernel 2.6 up to 2.6.18-stable allows local users to cause a denial of service (hang or oops) via unspecified manipulations that trigger an infinite loop while searching for flowlabels.
CWE-399 Oct 31, 2006
CVE-2006-5173 EPSS 0.00
Linux kernel - DoS
Linux kernel does not properly save or restore EFLAGS during a context switch, or reset the flags when creating new threads, which allows local users to cause a denial of service (process crash), as demonstrated using a process that sets the Alignment Check flag (EFLAGS 0x40000), which triggers a SIGBUS in other processes that have an unaligned access.
Oct 17, 2006
CVE-2006-4813 EPSS 0.00
Linux kernel <2.6.13 - Info Disclosure
The __block_prepare_write function in fs/buffer.c for Linux kernel 2.6.x before 2.6.13 does not properly clear buffers during certain error conditions, which allows local users to read portions of files that have been unlinked.
Oct 12, 2006
CVE-2006-4997 7.5 HIGH EPSS 0.35
Linux kernel - DoS
The clip_mkip function in net/atm/clip.c of the ATM subsystem in Linux kernel allows remote attackers to cause a denial of service (panic) via unknown vectors that cause the ATM subsystem to access the memory of socket buffers after they are freed (freed pointer dereference).
CWE-416 Oct 10, 2006
CVE-2006-5174 EPSS 0.00
Linux kernel <2.6.19-rc1 - Memory Corruption
The copy_from_user function in the uaccess code in Linux kernel 2.6 before 2.6.19-rc1, when running on s390, does not properly clear a kernel buffer, which allows local user space programs to read portions of kernel memory by "appending to a file from a bad address," which triggers a fault that prevents the unused memory from being cleared in the kernel buffer.
Oct 10, 2006