CVE-2022-0851
- EPSS 0.12%
- Published 29.08.2022 15:15:09
- Last modified 21.11.2024 06:39:31
There is a flaw in convert2rhel. When the --activationkey option is used with convert2rhel, the activation key is subsequently passed to subscription-manager via the command line, which could allow unauthorized users locally on the machine to view th...
CVE-2022-34301
- EPSS 0.12%
- Published 26.08.2022 18:15:09
- Last modified 21.11.2024 07:09:15
A flaw was found in CryptoPro Secure Disk bootloaders before 2022-06-01. An attacker may use this bootloader to bypass or tamper with Secure Boot protections. In order to load and execute arbitrary code in the pre-boot stage, an attacker simply needs...
CVE-2022-34302
- EPSS 0.13%
- Published 26.08.2022 18:15:09
- Last modified 21.11.2024 07:09:15
A flaw was found in New Horizon Datasys bootloaders before 2022-06-01. An attacker may use this bootloader to bypass or tamper with Secure Boot protections. In order to load and execute arbitrary code in the pre-boot stage, an attacker simply needs t...
CVE-2022-34303
- EPSS 0.11%
- Published 26.08.2022 18:15:09
- Last modified 21.11.2024 07:09:15
A flaw was found in Eurosoft bootloaders before 2022-06-01. An attacker may use this bootloader to bypass or tamper with Secure Boot protections. In order to load and execute arbitrary code in the pre-boot stage, an attacker simply needs to replace t...
CVE-2022-0168
- EPSS 0.02%
- Published 26.08.2022 18:15:08
- Last modified 21.11.2024 06:38:03
A denial of service (DOS) issue was found in the Linux kernel’s smb2_ioctl_query_info function in the fs/cifs/smb2ops.c Common Internet File System (CIFS) due to an incorrect return from the memdup_user function. This flaw allows a local, privileged ...
CVE-2022-0171
- EPSS 0.03%
- Published 26.08.2022 18:15:08
- Last modified 21.11.2024 06:38:04
A flaw was found in the Linux kernel. The existing KVM SEV API has a vulnerability that allows a non-root (host) user-level application to crash the host kernel by creating a confidential guest VM instance in AMD CPU that supports Secure Encrypted Vi...
CVE-2022-0175
- EPSS 0.04%
- Published 26.08.2022 18:15:08
- Last modified 21.11.2024 06:38:04
A flaw was found in the VirGL virtual OpenGL renderer (virglrenderer). The virgl did not properly initialize memory when allocating a host-backed memory resource. A malicious guest could use this flaw to mmap from the guest kernel and read this unini...
CVE-2021-3669
- EPSS 0.01%
- Published 26.08.2022 16:15:09
- Last modified 21.11.2024 06:22:06
A flaw was found in the Linux kernel. Measuring usage of the shared memory does not scale with large shared memory segment counts which could lead to resource exhaustion and DoS.
- EPSS 0.36%
- Published 26.08.2022 16:15:09
- Last modified 21.11.2024 06:22:41
A flaw was found in the way the dumpable flag setting was handled when certain SUID binaries executed its descendants. The prerequisite is a SUID binary that sets real UID equal to effective UID, and real GID equal to effective GID. The descendant wi...
CVE-2021-35939
- EPSS 0.15%
- Published 26.08.2022 16:15:08
- Last modified 21.11.2024 06:12:47
It was found that the fix for CVE-2017-7500 and CVE-2017-7501 was incomplete: the check was only implemented for the parent directory of the file to be created. A local unprivileged user who owns another ancestor directory could potentially use this ...