CVE-2022-37454
- EPSS 1.33%
- Veröffentlicht 21.10.2022 06:15:09
- Zuletzt bearbeitet 08.05.2025 15:15:47
The Keccak XKCP SHA-3 reference implementation before fdc6fef has an integer overflow and resultant buffer overflow that allows attackers to execute arbitrary code or eliminate expected cryptographic properties. This occurs in the sponge function int...
CVE-2022-3625
- EPSS 0.02%
- Veröffentlicht 21.10.2022 06:15:09
- Zuletzt bearbeitet 21.11.2024 07:19:54
A vulnerability was found in Linux Kernel. It has been classified as critical. This affects the function devlink_param_set/devlink_param_get of the file net/core/devlink.c of the component IPsec. The manipulation leads to use after free. It is recomm...
CVE-2022-3629
- EPSS 0.06%
- Veröffentlicht 21.10.2022 06:15:09
- Zuletzt bearbeitet 21.11.2024 07:19:54
A vulnerability was found in Linux Kernel. It has been declared as problematic. This vulnerability affects the function vsock_connect of the file net/vmw_vsock/af_vsock.c. The manipulation leads to memory leak. The complexity of an attack is rather h...
CVE-2022-3621
- EPSS 0.2%
- Veröffentlicht 20.10.2022 20:15:09
- Zuletzt bearbeitet 21.11.2024 07:19:53
A vulnerability was found in Linux Kernel. It has been classified as problematic. Affected is the function nilfs_bmap_lookup_at_level of the file fs/nilfs2/inode.c of the component nilfs2. The manipulation leads to null pointer dereference. It is pos...
CVE-2022-3623
- EPSS 0.07%
- Veröffentlicht 20.10.2022 20:15:09
- Zuletzt bearbeitet 21.11.2024 07:19:54
A vulnerability was found in Linux Kernel. It has been declared as problematic. Affected by this vulnerability is the function follow_page_pte of the file mm/gup.c of the component BPF. The manipulation leads to race condition. The attack can be laun...
CVE-2022-41741
- EPSS 0.95%
- Veröffentlicht 19.10.2022 22:15:12
- Zuletzt bearbeitet 21.11.2024 07:23:46
NGINX Open Source before versions 1.23.2 and 1.22.1, NGINX Open Source Subscription before versions R2 P1 and R1 P1, and NGINX Plus before versions R27 P1 and R26 P1 have a vulnerability in the module ngx_http_mp4_module that might allow a local atta...
CVE-2022-41742
- EPSS 0.1%
- Veröffentlicht 19.10.2022 22:15:12
- Zuletzt bearbeitet 21.11.2024 07:23:46
NGINX Open Source before versions 1.23.2 and 1.22.1, NGINX Open Source Subscription before versions R2 P1 and R1 P1, and NGINX Plus before versions R27 P1 and R26 P1 have a vulnerability in the module ngx_http_mp4_module that might allow a local atta...
CVE-2022-3586
- EPSS 0.06%
- Veröffentlicht 19.10.2022 18:15:13
- Zuletzt bearbeitet 25.06.2025 20:59:25
A flaw was found in the Linux kernel’s networking code. A use-after-free was found in the way the sch_sfb enqueue function used the socket buffer (SKB) cb field after the same SKB had been enqueued (and freed) into a child qdisc. This flaw allows a l...
CVE-2022-39260
- EPSS 1.27%
- Veröffentlicht 19.10.2022 12:15:10
- Zuletzt bearbeitet 21.11.2024 07:17:54
Git is an open source, scalable, distributed revision control system. `git shell` is a restricted login shell that can be used to implement Git's push/pull functionality via SSH. In versions prior to 2.30.6, 2.31.5, 2.32.4, 2.33.5, 2.34.5, 2.35.5, 2....
CVE-2022-39253
- EPSS 2.79%
- Veröffentlicht 19.10.2022 11:15:11
- Zuletzt bearbeitet 21.11.2024 07:17:53
Git is an open source, scalable, distributed revision control system. Versions prior to 2.30.6, 2.31.5, 2.32.4, 2.33.5, 2.34.5, 2.35.5, 2.36.3, and 2.37.4 are subject to exposure of sensitive information to a malicious actor. When performing a local ...