CVE-2022-1968
- EPSS 0.14%
- Published 02.06.2022 14:15:34
- Last modified 21.11.2024 06:41:51
Use After Free in GitHub repository vim/vim prior to 8.2.
CVE-2022-1789
- EPSS 0.02%
- Published 02.06.2022 14:15:33
- Last modified 21.11.2024 06:41:28
With shadow paging enabled, the INVPCID instruction results in a call to kvm_mmu_invpcid_gva. If INVPCID is executed with CR0.PG=0, the invlpg callback is not set and the result is a NULL pointer dereference.
CVE-2022-1419
- EPSS 0.02%
- Published 02.06.2022 14:15:32
- Last modified 21.11.2024 06:40:41
The root cause of this vulnerability is that the ioctl$DRM_IOCTL_MODE_DESTROY_DUMB can decrease refcount of *drm_vgem_gem_object *(created in *vgem_gem_dumb_create*) concurrently, and *vgem_gem_dumb_create *will access the freed drm_vgem_gem_object.
CVE-2022-1462
- EPSS 0.04%
- Published 02.06.2022 14:15:32
- Last modified 21.11.2024 06:40:46
An out-of-bounds read flaw was found in the Linux kernel’s TeleTYpe subsystem. The issue occurs in how a user triggers a race condition using ioctls TIOCSPTLCK and TIOCGPTPEER and TIOCSTI and TCXONC with leakage of memory in the flush_to_ldisc functi...
CVE-2022-1652
- EPSS 0.2%
- Published 02.06.2022 14:15:32
- Last modified 21.11.2024 06:41:10
Linux Kernel could allow a local attacker to execute arbitrary code on the system, caused by a concurrency use-after-free flaw in the bad_flp_intr function. By executing a specially-crafted program, an attacker could exploit this vulnerability to exe...
CVE-2022-31001
- EPSS 0.18%
- Published 31.05.2022 20:15:07
- Last modified 21.11.2024 07:03:41
Sofia-SIP is an open-source Session Initiation Protocol (SIP) User-Agent library. Prior to version 1.13.8, an attacker can send a message with evil sdp to FreeSWITCH, which may cause crash. This type of crash may be caused by `#define MATCH(s, m) (st...
CVE-2022-31003
- EPSS 8.57%
- Published 31.05.2022 20:15:07
- Last modified 21.11.2024 07:03:41
Sofia-SIP is an open-source Session Initiation Protocol (SIP) User-Agent library. Prior to version 1.13.8, when parsing each line of a sdp message, `rest = record + 2` will access the memory behind `\0` and cause an out-of-bounds write. An attacker c...
CVE-2022-31002
- EPSS 0.21%
- Published 31.05.2022 19:15:07
- Last modified 21.11.2024 07:03:41
Sofia-SIP is an open-source Session Initiation Protocol (SIP) User-Agent library. Prior to version 1.13.8, an attacker can send a message with evil sdp to FreeSWITCH, which may cause a crash. This type of crash may be caused by a URL ending with `%`....
CVE-2022-1942
- EPSS 0.59%
- Published 31.05.2022 14:15:07
- Last modified 21.11.2024 06:41:48
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.
CVE-2022-1897
- EPSS 0.43%
- Published 27.05.2022 15:15:07
- Last modified 21.11.2024 06:41:42
Out-of-bounds Write in GitHub repository vim/vim prior to 8.2.