CVE-2022-1355
- EPSS 0.06%
- Published 31.08.2022 16:15:09
- Last modified 21.11.2024 06:40:33
A stack buffer overflow flaw was found in Libtiffs' tiffcp.c in main() function. This flaw allows an attacker to pass a crafted TIFF file to the tiffcp tool, triggering a stack buffer overflow issue, possibly corrupting the memory, and causing a cras...
CVE-2022-0852
- EPSS 0.15%
- Published 29.08.2022 15:15:10
- Last modified 21.11.2024 06:39:31
There is a flaw in convert2rhel. convert2rhel passes the Red Hat account password to subscription-manager via the command line, which could allow unauthorized users locally on the machine to view the password via the process command line via e.g. hto...
CVE-2022-0934
- EPSS 0.03%
- Published 29.08.2022 15:15:10
- Last modified 10.06.2025 14:15:23
A single-byte, non-arbitrary write/use-after-free flaw was found in dnsmasq. This flaw allows an attacker who sends a crafted packet processed by dnsmasq, potentially causing a denial of service.
CVE-2022-1016
- EPSS 0.01%
- Published 29.08.2022 15:15:10
- Last modified 21.11.2024 06:39:51
A flaw was found in the Linux kernel in net/netfilter/nf_tables_core.c:nft_do_chain, which can cause a use-after-free. This issue needs to handle 'return' with proper preconditions, as it can lead to a kernel information leak problem caused by a loca...
CVE-2022-1184
- EPSS 0.03%
- Published 29.08.2022 15:15:10
- Last modified 21.11.2024 06:40:12
A use-after-free flaw was found in fs/ext4/namei.c:dx_insert_block() in the Linux kernel’s filesystem sub-component. This flaw allows a local attacker with a user privilege to cause a denial of service.
CVE-2022-1198
- EPSS 0.03%
- Published 29.08.2022 15:15:10
- Last modified 21.11.2024 06:40:14
A use-after-free vulnerabilitity was discovered in drivers/net/hamradio/6pack.c of linux that allows an attacker to crash linux kernel by simulating ax25 device using 6pack driver from user space.
CVE-2022-1199
- EPSS 0.15%
- Published 29.08.2022 15:15:10
- Last modified 23.04.2025 18:15:47
A flaw was found in the Linux kernel. This flaw allows an attacker to crash the Linux kernel by simulating amateur radio from the user space, resulting in a null-ptr-deref vulnerability and a use-after-free vulnerability.
CVE-2022-0358
- EPSS 0.02%
- Published 29.08.2022 15:15:09
- Last modified 21.11.2024 06:38:27
A flaw was found in the QEMU virtio-fs shared file system daemon (virtiofsd) implementation. This flaw is strictly related to CVE-2018-13405. A local guest user can create files in the directories shared by virtio-fs with unintended group ownership i...
CVE-2022-0480
- EPSS 0.02%
- Published 29.08.2022 15:15:09
- Last modified 21.11.2024 06:38:44
A flaw was found in the filelock_init in fs/locks.c function in the Linux kernel. This issue can lead to host memory exhaustion due to memcg not limiting the number of Portable Operating System Interface (POSIX) file locks.
CVE-2022-0485
- EPSS 0.13%
- Published 29.08.2022 15:15:09
- Last modified 21.11.2024 06:38:45
A flaw was found in the copying tool `nbdcopy` of libnbd. When performing multi-threaded copies using asynchronous nbd calls, nbdcopy was blindly treating the completion of an asynchronous command as successful, rather than checking the *error parame...