CVE-2022-27223
- EPSS 0.43%
- Veröffentlicht 16.03.2022 00:15:09
- Zuletzt bearbeitet 21.11.2024 06:55:26
In drivers/usb/gadget/udc/udc-xilinx.c in the Linux kernel before 5.16.12, the endpoint index is not validated and might be manipulated by the host for out-of-array access.
CVE-2022-26966
- EPSS 0.02%
- Veröffentlicht 12.03.2022 22:15:08
- Zuletzt bearbeitet 21.11.2024 06:54:52
An issue was discovered in the Linux kernel before 5.16.12. drivers/net/usb/sr9700.c allows attackers to obtain sensitive information from heap memory via crafted frame lengths from a device.
CVE-2022-26878
- EPSS 0.08%
- Veröffentlicht 11.03.2022 07:15:08
- Zuletzt bearbeitet 05.05.2025 14:12:37
drivers/bluetooth/virtio_bt.c in the Linux kernel before 5.16.3 has a memory leak (socket buffers have memory allocated but not freed).
CVE-2022-0847
- EPSS 85.65%
- Veröffentlicht 10.03.2022 17:44:57
- Zuletzt bearbeitet 22.10.2025 00:17:51
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in copy_page_to_iter_pipe and push_pipe functions in the Linux kernel and could thus contain stale values. An unprivileged local user co...
CVE-2022-0516
- EPSS 0.09%
- Veröffentlicht 10.03.2022 17:44:56
- Zuletzt bearbeitet 21.11.2024 06:38:49
A vulnerability was found in kvm_s390_guest_sida_op in the arch/s390/kvm/kvm-s390.c function in KVM for s390 in the Linux kernel. This flaw allows a local attacker with a normal user privilege to obtain unauthorized memory write access. This flaw aff...
CVE-2022-0433
- EPSS 0.04%
- Veröffentlicht 10.03.2022 17:44:55
- Zuletzt bearbeitet 21.11.2024 06:38:37
A NULL pointer dereference flaw was found in the Linux kernel's BPF subsystem in the way a user triggers the map_get_next_key function of the BPF bloom filter. This flaw allows a local user to crash the system. This flaw affects Linux kernel versions...
CVE-2021-4095
- EPSS 0.11%
- Veröffentlicht 10.03.2022 17:44:53
- Zuletzt bearbeitet 21.11.2024 06:36:53
A NULL pointer dereference was found in the Linux kernel's KVM when dirty ring logging is enabled without an active vCPU context. An unprivileged local attacker on the host may use this flaw to cause a kernel oops condition and thus a denial of servi...
CVE-2021-4023
- EPSS 0.09%
- Veröffentlicht 10.03.2022 17:44:50
- Zuletzt bearbeitet 21.11.2024 06:36:44
A flaw was found in the io-workqueue implementation in the Linux kernel versions prior to 5.15-rc1. The kernel can panic when an improper cancellation operation triggers the submission of new io-uring operations during a shortage of free space. This ...
CVE-2021-3739
- EPSS 0.03%
- Veröffentlicht 10.03.2022 17:43:01
- Zuletzt bearbeitet 21.11.2024 06:22:18
A NULL pointer dereference flaw was found in the btrfs_rm_device function in fs/btrfs/volumes.c in the Linux Kernel, where triggering the bug requires ‘CAP_SYS_ADMIN’. This flaw allows a local attacker to crash the system or leak kernel internal info...
CVE-2021-3732
- EPSS 0.02%
- Veröffentlicht 10.03.2022 17:42:59
- Zuletzt bearbeitet 21.11.2024 06:22:16
A flaw was found in the Linux kernel's OverlayFS subsystem in the way the user mounts the TmpFS filesystem with OverlayFS. This flaw allows a local user to gain access to hidden files that should not be accessible.