Brad Spengler

3 exploits Active since Aug 2004
CVE-2012-6537 WRITEUP WRITEUP
Linux Kernel < 3.6 - Information Exposure via Uninitialized Structures in xfrm_user
net/xfrm/xfrm_user.c in the Linux kernel before 3.6 does not initialize certain structures, which allows local users to obtain sensitive information from kernel memory by leveraging the CAP_NET_ADMIN capability.
CVE-2004-0228 EXPLOITDB c WORKING POC
Linux kernel <2.6 - Privilege Escalation
Integer signedness error in the cpufreq proc handler (cpufreq_procctl) in Linux kernel 2.6 allows local users to gain privileges.
CVE-2012-0957 EXPLOITDB c WORKING POC
Linux kernel <3.4.16 - Info Disclosure
The override_release function in kernel/sys.c in the Linux kernel before 3.4.16 allows local users to obtain sensitive information from kernel stack memory via a uname system call in conjunction with a UNAME26 personality.