CVE-2022-0742
- EPSS 2.21%
- Veröffentlicht 18.03.2022 12:15:07
- Zuletzt bearbeitet 21.11.2024 06:39:18
Memory leak in icmp6 implementation in Linux Kernel 5.13+ allows a remote attacker to DoS a host by making it go out-of-memory via icmp6 packets of type 130 or 131. We recommend upgrading past commit 2d3916f3189172d5c69d33065c3c21119fe539fc.
CVE-2021-45868
- EPSS 0.14%
- Veröffentlicht 18.03.2022 07:15:06
- Zuletzt bearbeitet 21.11.2024 06:33:10
In the Linux kernel before 5.15.3, fs/quota/quota_tree.c does not validate the block number in the quota tree (on disk). This can, for example, lead to a kernel/locking/rwsem.c use-after-free if there is a corrupted quota file.
CVE-2022-27223
- EPSS 0.32%
- Veröffentlicht 16.03.2022 00:15:09
- Zuletzt bearbeitet 21.11.2024 06:55:26
In drivers/usb/gadget/udc/udc-xilinx.c in the Linux kernel before 5.16.12, the endpoint index is not validated and might be manipulated by the host for out-of-array access.
CVE-2022-26966
- EPSS 0.03%
- Veröffentlicht 12.03.2022 22:15:08
- Zuletzt bearbeitet 21.11.2024 06:54:52
An issue was discovered in the Linux kernel before 5.16.12. drivers/net/usb/sr9700.c allows attackers to obtain sensitive information from heap memory via crafted frame lengths from a device.
CVE-2022-26878
- EPSS 0.11%
- Veröffentlicht 11.03.2022 07:15:08
- Zuletzt bearbeitet 05.05.2025 14:12:37
drivers/bluetooth/virtio_bt.c in the Linux kernel before 5.16.3 has a memory leak (socket buffers have memory allocated but not freed).
CVE-2022-0847
- EPSS 83.44%
- Veröffentlicht 10.03.2022 17:44:57
- Zuletzt bearbeitet 06.11.2025 14:50:37
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in copy_page_to_iter_pipe and push_pipe functions in the Linux kernel and could thus contain stale values. An unprivileged local user co...
CVE-2022-0516
- EPSS 0.11%
- Veröffentlicht 10.03.2022 17:44:56
- Zuletzt bearbeitet 21.11.2024 06:38:49
A vulnerability was found in kvm_s390_guest_sida_op in the arch/s390/kvm/kvm-s390.c function in KVM for s390 in the Linux kernel. This flaw allows a local attacker with a normal user privilege to obtain unauthorized memory write access. This flaw aff...
CVE-2022-0433
- EPSS 0.04%
- Veröffentlicht 10.03.2022 17:44:55
- Zuletzt bearbeitet 21.11.2024 06:38:37
A NULL pointer dereference flaw was found in the Linux kernel's BPF subsystem in the way a user triggers the map_get_next_key function of the BPF bloom filter. This flaw allows a local user to crash the system. This flaw affects Linux kernel versions...
CVE-2021-4095
- EPSS 0.11%
- Veröffentlicht 10.03.2022 17:44:53
- Zuletzt bearbeitet 21.11.2024 06:36:53
A NULL pointer dereference was found in the Linux kernel's KVM when dirty ring logging is enabled without an active vCPU context. An unprivileged local attacker on the host may use this flaw to cause a kernel oops condition and thus a denial of servi...
CVE-2021-4023
- EPSS 0.03%
- Veröffentlicht 10.03.2022 17:44:50
- Zuletzt bearbeitet 21.11.2024 06:36:44
A flaw was found in the io-workqueue implementation in the Linux kernel versions prior to 5.15-rc1. The kernel can panic when an improper cancellation operation triggers the submission of new io-uring operations during a shortage of free space. This ...