CVE-2022-27223
- EPSS 0.43%
- Published 16.03.2022 00:15:09
- Last modified 21.11.2024 06:55:26
In drivers/usb/gadget/udc/udc-xilinx.c in the Linux kernel before 5.16.12, the endpoint index is not validated and might be manipulated by the host for out-of-array access.
CVE-2022-26966
- EPSS 0.02%
- Published 12.03.2022 22:15:08
- Last modified 21.11.2024 06:54:52
An issue was discovered in the Linux kernel before 5.16.12. drivers/net/usb/sr9700.c allows attackers to obtain sensitive information from heap memory via crafted frame lengths from a device.
CVE-2022-26878
- EPSS 0.08%
- Published 11.03.2022 07:15:08
- Last modified 05.05.2025 14:12:37
drivers/bluetooth/virtio_bt.c in the Linux kernel before 5.16.3 has a memory leak (socket buffers have memory allocated but not freed).
CVE-2022-0847
- EPSS 85.65%
- Published 10.03.2022 17:44:57
- Last modified 22.10.2025 00:17:51
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in copy_page_to_iter_pipe and push_pipe functions in the Linux kernel and could thus contain stale values. An unprivileged local user co...
CVE-2022-0516
- EPSS 0.09%
- Published 10.03.2022 17:44:56
- Last modified 21.11.2024 06:38:49
A vulnerability was found in kvm_s390_guest_sida_op in the arch/s390/kvm/kvm-s390.c function in KVM for s390 in the Linux kernel. This flaw allows a local attacker with a normal user privilege to obtain unauthorized memory write access. This flaw aff...
CVE-2022-0433
- EPSS 0.04%
- Published 10.03.2022 17:44:55
- Last modified 21.11.2024 06:38:37
A NULL pointer dereference flaw was found in the Linux kernel's BPF subsystem in the way a user triggers the map_get_next_key function of the BPF bloom filter. This flaw allows a local user to crash the system. This flaw affects Linux kernel versions...
CVE-2021-4095
- EPSS 0.11%
- Published 10.03.2022 17:44:53
- Last modified 21.11.2024 06:36:53
A NULL pointer dereference was found in the Linux kernel's KVM when dirty ring logging is enabled without an active vCPU context. An unprivileged local attacker on the host may use this flaw to cause a kernel oops condition and thus a denial of servi...
CVE-2021-4023
- EPSS 0.09%
- Published 10.03.2022 17:44:50
- Last modified 21.11.2024 06:36:44
A flaw was found in the io-workqueue implementation in the Linux kernel versions prior to 5.15-rc1. The kernel can panic when an improper cancellation operation triggers the submission of new io-uring operations during a shortage of free space. This ...
CVE-2021-3739
- EPSS 0.03%
- Published 10.03.2022 17:43:01
- Last modified 21.11.2024 06:22:18
A NULL pointer dereference flaw was found in the btrfs_rm_device function in fs/btrfs/volumes.c in the Linux Kernel, where triggering the bug requires ‘CAP_SYS_ADMIN’. This flaw allows a local attacker to crash the system or leak kernel internal info...
CVE-2021-3732
- EPSS 0.02%
- Published 10.03.2022 17:42:59
- Last modified 21.11.2024 06:22:16
A flaw was found in the Linux kernel's OverlayFS subsystem in the way the user mounts the TmpFS filesystem with OverlayFS. This flaw allows a local user to gain access to hidden files that should not be accessible.