CVE & Exploit Intelligence Database

Updated 5h ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

337,661 CVEs tracked 53,243 with exploits 4,725 exploited in wild 1,540 CISA KEV 3,918 Nuclei templates 37,792 vendors 42,472 researchers
12,131 results Clear all
CVE-2006-3741 EPSS 0.00
Linux Kernel - Denial of Service
The perfmonctl system call (sys_perfmonctl) in Linux kernel 2.4.x and 2.6 before 2.6.18, when running on Itanium systems, does not properly track the reference count for file descriptors, which allows local users to cause a denial of service (file descriptor consumption).
Oct 10, 2006
CVE-2006-5158 7.5 HIGH EPSS 0.04
Linux kernel <2.6.16 - DoS
The nlmclnt_mark_reclaim in clntlock.c in NFS lockd in Linux kernel before 2.6.16 allows remote attackers to cause a denial of service (process crash) and deny access to NFS exports via unspecified vectors that trigger a kernel oops (null dereference) and a deadlock.
CWE-667 Oct 05, 2006
CVE-2006-4535 EPSS 0.00
Linux Kernel - Resource Management Error
The Linux kernel 2.6.17.10 and 2.6.17.11 and 2.6.18-rc5 allows local users to cause a denial of service (crash) via an SCTP socket with a certain SO_LINGER value, possibly related to the patch for CVE-2006-3745. NOTE: older kernel versions for specific Linux distributions are also affected, due to backporting of the CVE-2006-3745 patch.
CWE-399 Sep 19, 2006
CVE-2006-4623 EPSS 0.14
Linux kernel 2.6.17.8 - DoS
The Unidirectional Lightweight Encapsulation (ULE) decapsulation component in dvb-core/dvb_net.c in the dvb driver in the Linux kernel 2.6.17.8 allows remote attackers to cause a denial of service (crash) via an SNDU length of 0 in a ULE packet.
Sep 11, 2006
CVE-2006-4663 7.8 HIGH EPSS 0.00
Linux Kernel <2.6.17.11 - Local Info Disclosure
The source code tar archive of the Linux kernel 2.6.16, 2.6.17.11, and possibly other versions specifies weak permissions (0666 and 0777) for certain files and directories, which might allow local users to insert Trojan horse source code that would be used during the next kernel compilation. NOTE: another researcher disputes the vulnerability, stating that he finds "Not a single world-writable file or directory." CVE analysis as of 20060908 indicates that permissions will only be weak under certain unusual or insecure scenarios
Sep 09, 2006
CVE-2006-4538 EPSS 0.00
Linux Kernel - Denial of Service
Linux kernel 2.6.17 and earlier, when running on IA64 or SPARC platforms, allows local users to cause a denial of service (crash) via a malformed ELF file that triggers memory maps that cross region boundaries.
Sep 05, 2006
CVE-2006-3745 EPSS 0.00
Linux Kernel < 2.6.17.9 - Denial of Service
Unspecified vulnerability in the sctp_make_abort_user function in the SCTP implementation in Linux 2.6.x before 2.6.17.10 and 2.4.23 up to 2.4.33 allows local users to cause a denial of service (panic) and possibly gain root privileges via unknown attack vectors.
Aug 23, 2006
CVE-2006-2932 EPSS 0.00
Red Hat Linux <4 - DoS
A regression error in the restore_all code path of the 4/4GB split support for non-hugemem Linux kernels on Red Hat Linux Desktop and Enterprise Linux 4 allows local users to cause a denial of service (panic) via unspecified vectors.
Aug 23, 2006
CVE-2006-4093 EPSS 0.00
Linux Kernel < 2.4.33.1 - Denial of Service
Linux kernel 2.x.6 before 2.6.17.9 and 2.4.x before 2.4.33.1 on PowerPC PPC970 systems allows local users to cause a denial of service (crash) related to the "HID0 attention enable on PPC970 at boot time."
Aug 21, 2006
CVE-2006-4145 EPSS 0.00
Linux Kernel < 2.6.17 - Resource Management Error
The Universal Disk Format (UDF) filesystem driver in Linux kernel 2.6.17 and earlier allows local users to cause a denial of service (hang and crash) via certain operations involving truncated files, as demonstrated via the dd command.
CWE-399 Aug 21, 2006
CVE-2006-2446 EPSS 0.02
Linux Kernel - Denial of Service
Race condition between the kfree_skb and __skb_unlink functions in the socket buffer handling in Linux kernel 2.6.9, and possibly other versions, allows remote attackers to cause a denial of service (crash), as demonstrated using the TCP stress tests from the LTP test suite.
Aug 15, 2006
CVE-2006-3634 EPSS 0.00
Linux Kernel - Denial of Service
The (1) __futex_atomic_op and (2) futex_atomic_cmpxchg_inatomic functions in Linux kernel 2.6.17-rc4 to 2.6.18-rc2 perform the atomic futex operation in the kernel address space instead of the user address space, which allows local users to cause a denial of service (crash).
Aug 04, 2006
CVE-2006-3468 1 PoC Analysis EPSS 0.27
Linux kernel 2.6.x - DoS
Linux kernel 2.6.x, when using both NFS and EXT3, allows remote attackers to cause a denial of service (file system panic) via a crafted UDP packet with a V2 lookup procedure that specifies a bad file handle (inode number), which triggers an error and causes an exported directory to be remounted read-only.
Jul 21, 2006
CVE-2006-3626 EPSS 0.00
Linux kernel <2.6.17.4 - Privilege Escalation
Race condition in Linux kernel 2.6.17.4 and earlier allows local users to gain root privileges by using prctl with PR_SET_DUMPABLE in a way that causes /proc/self/environ to become setuid root.
Jul 18, 2006
CVE-2006-2936 EPSS 0.10
Linux kernel <2.6.17 - DoS
The ftdi_sio driver (usb/serial/ftdi_sio.c) in Linux kernel 2.6.x up to 2.6.17, and possibly later versions, allows local users to cause a denial of service (memory consumption) by writing more data to the serial port than the hardware can handle, which causes the data to be queued.
CWE-399 Jul 10, 2006
CVE-2006-2451 5 PoCs Analysis EPSS 0.07
Linux Kernel - Resource Management Error
The suid_dumpable support in Linux kernel 2.6.13 up to versions before 2.6.17.4, and 2.6.16 before 2.6.16.24, allows a local user to cause a denial of service (disk consumption) and possibly gain privileges via the PR_SET_DUMPABLE argument of the prctl function and a program that causes a core dump file to be created in a directory for which the user does not have permissions.
CWE-399 Jul 07, 2006
CVE-2006-2935 EPSS 0.00
Linux kernel <2.2.16 - Buffer Overflow
The dvd_read_bca function in the DVD handling code in drivers/cdrom/cdrom.c in Linux kernel 2.2.16, and later versions, assigns the wrong value to a length variable, which allows local users to execute arbitrary code via a crafted USB Storage device that triggers a buffer overflow.
CWE-120 Jul 05, 2006
CVE-2006-2934 EPSS 0.23
Linux kernel <2.6.17.3-2.6.16.23 - DoS
SCTP conntrack (ip_conntrack_proto_sctp.c) in netfilter for Linux kernel 2.6.17 before 2.6.17.3 and 2.6.16 before 2.6.16.23 allows remote attackers to cause a denial of service (crash) via a packet without any chunks, which causes a variable to contain an invalid value that is later used to dereference a pointer.
CWE-399 Jun 30, 2006
CVE-2006-0456 EPSS 0.00
Linux Kernel - Denial of Service
The strnlen_user function in Linux kernel before 2.6.16 on IBM S/390 can return an incorrect value, which allows local users to cause a denial of service via unknown vectors.
Jun 27, 2006
CVE-2006-3085 EPSS 0.02
Linux kernel <2.6.17.1 - DoS
xt_sctp in netfilter for Linux kernel before 2.6.17.1 allows attackers to cause a denial of service (infinite loop) via an SCTP chunk with a 0 length.
Jun 23, 2006