- EPSS 0.07%
- Veröffentlicht 06.07.2022 16:15:08
- Zuletzt bearbeitet 21.11.2024 06:22:10
A crafted JPEG image may lead the JPEG reader to underflow its data pointer, allowing user-controlled data to be written in heap. To a successful to be performed the attacker needs to perform some triage over the heap layout and craft an image with a...
CVE-2022-1852
- EPSS 0.02%
- Veröffentlicht 30.06.2022 13:15:08
- Zuletzt bearbeitet 21.11.2024 06:41:36
A NULL pointer dereference flaw was found in the Linux kernel’s KVM module, which can lead to a denial of service in the x86_emulate_insn in arch/x86/kvm/emulate.c. This flaw occurs while executing an illegal instruction in guest in the Intel CPU.
CVE-2022-2078
- EPSS 0.43%
- Veröffentlicht 30.06.2022 13:15:08
- Zuletzt bearbeitet 21.11.2024 07:00:16
A vulnerability was found in the Linux kernel's nft_set_desc_concat_parse() function .This flaw allows an attacker to trigger a buffer overflow via nft_set_desc_concat_parse() , causing a denial of service and possibly to run code.
CVE-2022-0987
- EPSS 0.04%
- Veröffentlicht 28.06.2022 17:15:08
- Zuletzt bearbeitet 21.11.2024 06:39:48
A flaw was found in PackageKit in the way some of the methods exposed by the Transaction interface examines files. This issue allows a local user to measure the time the methods take to execute and know whether a file owned by root or other users exi...
CVE-2022-1665
- EPSS 0.01%
- Veröffentlicht 21.06.2022 15:15:08
- Zuletzt bearbeitet 21.11.2024 06:41:12
A set of pre-production kernel packages of Red Hat Enterprise Linux for IBM Power architecture can be booted by the grub in Secure Boot mode even though it shouldn't. These kernel builds don't have the secure boot lockdown patches applied to it and c...
CVE-2022-32545
- EPSS 0.06%
- Veröffentlicht 16.06.2022 18:15:10
- Zuletzt bearbeitet 21.11.2024 07:06:35
A vulnerability was found in ImageMagick, causing an outside the range of representable values of type 'unsigned char' at coders/psd.c, when crafted or untrusted input is processed. This leads to a negative impact to application availability or other...
CVE-2022-32546
- EPSS 0.08%
- Veröffentlicht 16.06.2022 18:15:10
- Zuletzt bearbeitet 21.11.2024 07:06:36
A vulnerability was found in ImageMagick, causing an outside the range of representable values of type 'unsigned long' at coders/pcl.c, when crafted or untrusted input is processed. This leads to a negative impact to application availability or other...
CVE-2022-32547
- EPSS 0.06%
- Veröffentlicht 16.06.2022 18:15:10
- Zuletzt bearbeitet 21.11.2024 07:06:36
In ImageMagick, there is load of misaligned address for type 'double', which requires 8 byte alignment and for type 'float', which requires 4 byte alignment at MagickCore/property.c. Whenever crafted or untrusted input is processed by ImageMagick, th...
CVE-2022-1998
- EPSS 0.04%
- Veröffentlicht 09.06.2022 15:15:09
- Zuletzt bearbeitet 21.11.2024 06:41:55
A use after free in the Linux kernel File System notify functionality was found in the way user triggers copy_info_records_to_user() call to fail in copy_event_to_user(). A local user could use this flaw to crash the system or potentially escalate th...
CVE-2022-1708
- EPSS 0.53%
- Veröffentlicht 07.06.2022 18:15:11
- Zuletzt bearbeitet 21.11.2024 06:41:17
A vulnerability was found in CRI-O that causes memory or disk space exhaustion on the node for anyone with access to the Kube API. The ExecSync request runs commands in a container and logs the output of the command. This output is then read by CRI-O...