CVE-2022-44792
- EPSS 2.81%
- Veröffentlicht 07.11.2022 03:15:09
- Zuletzt bearbeitet 05.05.2025 16:15:22
handle_ipDefaultTTL in agent/mibgroup/ip-mib/ip_scalars.c in Net-SNMP 5.8 through 5.9.3 has a NULL Pointer Exception bug that can be used by a remote attacker (who has write access) to cause the instance to crash via a crafted UDP packet, resulting i...
CVE-2022-44793
- EPSS 2.09%
- Veröffentlicht 07.11.2022 03:15:09
- Zuletzt bearbeitet 05.05.2025 16:15:22
handle_ipv6IpForwarding in agent/mibgroup/ip-mib/ip_scalars.c in Net-SNMP 5.4.3 through 5.9.3 has a NULL Pointer Exception bug that can be used by a remote attacker to cause the instance to crash via a crafted UDP packet, resulting in Denial of Servi...
CVE-2022-43945
- EPSS 0.94%
- Veröffentlicht 04.11.2022 19:15:11
- Zuletzt bearbeitet 01.05.2025 19:15:55
The Linux kernel NFSD implementation prior to versions 5.19.17 and 6.0.2 are vulnerable to buffer overflow. NFSD tracks the number of pages held by each NFSD thread by combining the receive and send buffers of a remote procedure call (RPC) into a sin...
CVE-2022-42915
- EPSS 0.42%
- Veröffentlicht 29.10.2022 20:15:09
- Zuletzt bearbeitet 07.05.2025 14:15:33
curl before 7.86.0 has a double free. If curl is told to use an HTTP proxy for a transfer with a non-HTTP(S) URL, it sets up the connection to the remote server by issuing a CONNECT request to the proxy, and then tunnels the rest of the protocol thro...
CVE-2022-43680
- EPSS 0.31%
- Veröffentlicht 24.10.2022 14:15:53
- Zuletzt bearbeitet 30.05.2025 20:15:31
In libexpat through 2.4.9, there is a use-after free caused by overeager destruction of a shared DTD in XML_ExternalEntityParserCreate in out-of-memory situations.
- EPSS 0.09%
- Veröffentlicht 21.10.2022 20:15:09
- Zuletzt bearbeitet 21.11.2024 07:19:57
A vulnerability was found in Linux Kernel. It has been classified as problematic. Affected is the function nilfs_new_inode of the file fs/nilfs2/inode.c of the component BPF. The manipulation leads to use after free. It is possible to launch the atta...
CVE-2022-3564
- EPSS 0.07%
- Veröffentlicht 17.10.2022 19:15:10
- Zuletzt bearbeitet 21.11.2024 07:19:46
A vulnerability classified as critical was found in Linux Kernel. Affected by this vulnerability is the function l2cap_reassemble_sdu of the file net/bluetooth/l2cap_core.c of the component Bluetooth. The manipulation leads to use after free. It is r...
CVE-2022-3545
- EPSS 0.02%
- Veröffentlicht 17.10.2022 12:15:11
- Zuletzt bearbeitet 21.11.2024 07:19:44
A vulnerability has been found in Linux Kernel and classified as critical. Affected by this vulnerability is the function area_cache_get of the file drivers/net/ethernet/netronome/nfp/nfpcore/nfp_cppcore.c of the component IPsec. The manipulation lea...
CVE-2022-35252
- EPSS 0.08%
- Veröffentlicht 23.09.2022 14:15:12
- Zuletzt bearbeitet 05.05.2025 17:18:16
When curl is used to retrieve and parse cookies from a HTTP(S) server, itaccepts cookies using control codes that when later are sent back to a HTTPserver might make the server return 400 responses. Effectively allowing a"sister site" to deny service...
CVE-2022-3202
- EPSS 0.02%
- Veröffentlicht 14.09.2022 15:15:11
- Zuletzt bearbeitet 21.11.2024 07:19:02
A NULL pointer dereference flaw in diFree in fs/jfs/inode.c in Journaled File System (JFS)in the Linux kernel. This could allow a local attacker to crash the system or leak kernel internal information.