CVE-2022-4283
- EPSS 0.19%
- Published 14.12.2022 21:15:14
- Last modified 29.08.2025 13:42:30
A vulnerability was found in X.Org. This security flaw occurs because the XkbCopyNames function left a dangling pointer to freed memory, resulting in out-of-bounds memory access on subsequent XkbGetKbdByName requests.. This issue can lead to local pr...
CVE-2022-4144
- EPSS 0.01%
- Published 29.11.2022 18:15:10
- Last modified 14.04.2025 18:15:24
An out-of-bounds read flaw was found in the QXL display device emulation in QEMU. The qxl_phys2virt() function does not check the size of the structure pointed to by the guest physical address, potentially reading past the end of the bar space into a...
CVE-2022-3500
- EPSS 0.03%
- Published 22.11.2022 19:15:17
- Last modified 29.04.2025 05:15:43
A vulnerability was found in keylime. This security issue happens in some circumstances, due to some improperly handled exceptions, there exists the possibility that a rogue agent could create errors on the verifier that stopped attestation attempts ...
CVE-2022-3821
- EPSS 0.02%
- Published 08.11.2022 22:15:16
- Last modified 02.05.2025 18:15:24
An off-by-one Error issue was discovered in Systemd in format_timespan() function of time-util.c. An attacker could supply specific values for time and accuracy that leads to buffer overrun in format_timespan(), leading to a Denial of Service.
CVE-2022-2963
- EPSS 0.1%
- Published 14.10.2022 18:15:15
- Last modified 15.05.2025 15:15:53
A vulnerability found in jasper. This security vulnerability happens because of a memory leak bug in function cmdopts_parse that can cause a crash or segmentation fault.
CVE-2022-2850
- EPSS 0.27%
- Published 14.10.2022 18:15:14
- Last modified 15.05.2025 15:15:53
A flaw was found In 389-ds-base. When the Content Synchronization plugin is enabled, an authenticated user can reach a NULL pointer dereference using a specially crafted query. This flaw allows an authenticated attacker to cause a denial of service. ...
CVE-2022-2989
- EPSS 0.04%
- Published 13.09.2022 14:15:08
- Last modified 05.06.2025 19:15:23
An incorrect handling of the supplementary groups in the Podman container engine might lead to the sensitive information disclosure or possible data modification if an attacker has direct access to the affected container where supplementary groups ar...
CVE-2022-2990
- EPSS 0.13%
- Published 13.09.2022 14:15:08
- Last modified 21.11.2024 07:02:02
An incorrect handling of the supplementary groups in the Buildah container engine might lead to the sensitive information disclosure or possible data modification if an attacker has direct access to the affected container where supplementary groups a...
CVE-2022-2905
- EPSS 0.02%
- Published 09.09.2022 15:15:10
- Last modified 21.11.2024 07:01:54
An out-of-bounds memory read flaw was found in the Linux kernel's BPF subsystem in how a user calls the bpf_tail_call function with a key larger than the max_entries of the map. This flaw allows a local user to gain unauthorized access to data.
CVE-2022-2964
- EPSS 0.05%
- Published 09.09.2022 15:15:10
- Last modified 21.11.2024 07:01:59
A flaw was found in the Linux kernel’s driver for the ASIX AX88179_178A-based USB 2.0/3.0 Gigabit Ethernet Devices. The vulnerability contains multiple out-of-bounds reads and possible out-of-bounds writes.