CVE-2022-0322
- EPSS 0.08%
- Published 25.03.2022 19:15:09
- Last modified 21.11.2024 06:38:22
A flaw was found in the sctp_make_strreset_req function in net/sctp/sm_make_chunk.c in the SCTP network protocol in the Linux kernel with a local user privilege access. In this flaw, an attempt to use more buffer than is allocated triggers a BUG_ON i...
CVE-2021-4150
- EPSS 0.04%
- Published 23.03.2022 20:15:10
- Last modified 21.11.2024 06:37:00
A use-after-free flaw was found in the add_partition in block/partitions/core.c in the Linux kernel. A local attacker with user privileges could cause a denial of service on the system. The issue results from the lack of code cleanup when device_add ...
CVE-2021-4197
- EPSS 0.01%
- Published 23.03.2022 20:15:10
- Last modified 21.11.2024 06:37:07
An unprivileged write to the file handler flaw in the Linux kernel's control groups and namespaces subsystem was found in the way users have access to some less privileged process that are controlled by cgroups and have higher privileged parent proce...
CVE-2022-0854
- EPSS 0.01%
- Published 23.03.2022 20:15:10
- Last modified 21.11.2024 06:39:32
A memory leak flaw was found in the Linux kernel’s DMA subsystem, in the way a user calls DMA_FROM_DEVICE. This flaw allows a local user to read random memory from the kernel space.
CVE-2021-4148
- EPSS 0.01%
- Published 23.03.2022 20:15:09
- Last modified 21.11.2024 06:37:00
A vulnerability was found in the Linux kernel's block_invalidatepage in fs/buffer.c in the filesystem. A missing sanity check may allow a local attacker with user privilege to cause a denial of service (DOS) problem.
CVE-2021-4149
- EPSS 0.02%
- Published 23.03.2022 20:15:09
- Last modified 21.11.2024 06:37:00
A vulnerability was found in btrfs_alloc_tree_b in fs/btrfs/extent-tree.c in the Linux kernel due to an improper lock operation in btrfs. In this flaw, a user with a local privilege may cause a denial of service (DOS) due to a deadlock problem.
CVE-2022-27666
- EPSS 0.78%
- Published 23.03.2022 06:15:06
- Last modified 21.11.2024 06:56:08
A heap buffer overflow flaw was found in IPsec ESP transformation code in net/ipv4/esp4.c and net/ipv6/esp6.c. This flaw allows a local attacker with a normal user privilege to overwrite kernel heap objects and may cause a local privilege escalation ...
CVE-2022-1011
- EPSS 0.2%
- Published 18.03.2022 18:15:12
- Last modified 21.11.2024 06:39:51
A use-after-free flaw was found in the Linux kernel’s FUSE filesystem in the way a user triggers write(). This flaw allows a local user to gain unauthorized access to data from the FUSE filesystem, resulting in privilege escalation.
CVE-2022-0742
- EPSS 2.19%
- Published 18.03.2022 12:15:07
- Last modified 21.11.2024 06:39:18
Memory leak in icmp6 implementation in Linux Kernel 5.13+ allows a remote attacker to DoS a host by making it go out-of-memory via icmp6 packets of type 130 or 131. We recommend upgrading past commit 2d3916f3189172d5c69d33065c3c21119fe539fc.
CVE-2021-45868
- EPSS 0.13%
- Published 18.03.2022 07:15:06
- Last modified 21.11.2024 06:33:10
In the Linux kernel before 5.15.3, fs/quota/quota_tree.c does not validate the block number in the quota tree (on disk). This can, for example, lead to a kernel/locking/rwsem.c use-after-free if there is a corrupted quota file.