CVE-2022-49368
- EPSS 0.03%
- Veröffentlicht 26.02.2025 07:01:13
- Zuletzt bearbeitet 01.10.2025 20:16:13
In the Linux kernel, the following vulnerability has been resolved: net: ethernet: mtk_eth_soc: out of bounds read in mtk_hwlro_get_fdir_entry() The "fsp->location" variable comes from user via ethtool_get_rxnfc(). Check that it is valid to prevent...
CVE-2022-49369
- EPSS 0.03%
- Veröffentlicht 26.02.2025 07:01:13
- Zuletzt bearbeitet 01.10.2025 20:16:13
In the Linux kernel, the following vulnerability has been resolved: amt: fix possible memory leak in amt_rcv() If an amt receives packets and it finds socket. If it can't find a socket, it should free a received skb. But it doesn't. So, a memory le...
CVE-2022-49370
- EPSS 0.03%
- Veröffentlicht 26.02.2025 07:01:13
- Zuletzt bearbeitet 01.10.2025 20:16:13
In the Linux kernel, the following vulnerability has been resolved: firmware: dmi-sysfs: Fix memory leak in dmi_sysfs_register_handle kobject_init_and_add() takes reference even when it fails. According to the doc of kobject_init_and_add() If t...
CVE-2022-49371
- EPSS 0.03%
- Veröffentlicht 26.02.2025 07:01:13
- Zuletzt bearbeitet 01.10.2025 20:16:14
In the Linux kernel, the following vulnerability has been resolved: driver core: fix deadlock in __device_attach In __device_attach function, The lock holding logic is as follows: ... __device_attach device_lock(dev) // get lock dev async_sc...
CVE-2022-49372
- EPSS 0.03%
- Veröffentlicht 26.02.2025 07:01:13
- Zuletzt bearbeitet 21.10.2025 12:16:14
In the Linux kernel, the following vulnerability has been resolved: tcp: tcp_rtx_synack() can be called from process context Laurent reported the enclosed report [1] This bug triggers with following coditions: 0) Kernel built with CONFIG_DEBUG_PR...
CVE-2022-49373
- EPSS 0.04%
- Veröffentlicht 26.02.2025 07:01:13
- Zuletzt bearbeitet 01.10.2025 20:16:14
In the Linux kernel, the following vulnerability has been resolved: watchdog: ts4800_wdt: Fix refcount leak in ts4800_wdt_probe of_parse_phandle() returns a node pointer with refcount incremented, we should use of_node_put() on it when done. Add m...
CVE-2022-49353
- EPSS 0.04%
- Veröffentlicht 26.02.2025 07:01:12
- Zuletzt bearbeitet 01.10.2025 20:16:11
In the Linux kernel, the following vulnerability has been resolved: powerpc/papr_scm: don't requests stats with '0' sized stats buffer Sachin reported [1] that on a POWER-10 lpar he is seeing a kernel panic being reported with vPMEM when papr_scm p...
CVE-2022-49354
- EPSS 0.03%
- Veröffentlicht 26.02.2025 07:01:12
- Zuletzt bearbeitet 01.10.2025 20:16:11
In the Linux kernel, the following vulnerability has been resolved: ata: pata_octeon_cf: Fix refcount leak in octeon_cf_probe of_find_device_by_node() takes reference, we should use put_device() to release it when not need anymore. Add missing put_...
CVE-2022-49356
- EPSS 0.07%
- Veröffentlicht 26.02.2025 07:01:12
- Zuletzt bearbeitet 21.10.2025 12:17:26
In the Linux kernel, the following vulnerability has been resolved: SUNRPC: Trap RDMA segment overflows Prevent svc_rdma_build_writes() from walking off the end of a Write chunk's segment array. Caught with KASAN. The test that this fix replaces i...
CVE-2022-49357
- EPSS 0.02%
- Veröffentlicht 26.02.2025 07:01:12
- Zuletzt bearbeitet 21.10.2025 12:17:13
In the Linux kernel, the following vulnerability has been resolved: efi: Do not import certificates from UEFI Secure Boot for T2 Macs On Apple T2 Macs, when Linux attempts to read the db and dbx efi variables at early boot to load UEFI Secure Boot ...