CVE-2022-3140
- EPSS 1.32%
- Veröffentlicht 11.10.2022 21:15:16
- Zuletzt bearbeitet 21.11.2024 07:18:54
LibreOffice supports Office URI Schemes to enable browser integration of LibreOffice with MS SharePoint server. An additional scheme 'vnd.libreoffice.command' specific to LibreOffice was added. In the affected versions of LibreOffice links using that...
CVE-2022-20421
- EPSS 6.26%
- Veröffentlicht 11.10.2022 20:15:12
- Zuletzt bearbeitet 21.11.2024 06:42:46
In binder_inc_ref_for_node of binder.c, there is a possible way to corrupt memory due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitatio...
- EPSS 0.05%
- Veröffentlicht 11.10.2022 20:15:12
- Zuletzt bearbeitet 21.11.2024 06:42:47
In emulation_proc_handler of armv8_deprecated.c, there is a possible way to corrupt memory due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for ex...
CVE-2022-33746
- EPSS 0.04%
- Veröffentlicht 11.10.2022 13:15:10
- Zuletzt bearbeitet 21.11.2024 07:08:27
P2M pool freeing may take excessively long The P2M pool backing second level address translation for guests may be of significant size. Therefore its freeing may take more time than is reasonable without intermediate preemption checks. Such checking ...
CVE-2022-33747
- EPSS 0.03%
- Veröffentlicht 11.10.2022 13:15:10
- Zuletzt bearbeitet 21.11.2024 07:08:27
Arm: unbounded memory consumption for 2nd-level page tables Certain actions require e.g. removing pages from a guest's P2M (Physical-to-Machine) mapping. When large pages are in use to map guest pages in the 2nd-stage page tables, such a removal oper...
CVE-2022-33748
- EPSS 0.04%
- Veröffentlicht 11.10.2022 13:15:10
- Zuletzt bearbeitet 21.11.2024 07:08:27
lock order inversion in transitive grant copy handling As part of XSA-226 a missing cleanup call was inserted on an error handling path. While doing so, locking requirements were not paid attention to. As a result two cooperating guests granting each...
CVE-2022-37616
- EPSS 1.18%
- Veröffentlicht 11.10.2022 05:15:10
- Zuletzt bearbeitet 21.11.2024 07:15:03
A prototype pollution vulnerability exists in the function copy in dom.js in the xmldom (published as @xmldom/xmldom) package before 0.8.3 for Node.js via the p variable. NOTE: the vendor states "we are in the process of marking this report as invali...
CVE-2022-3435
- EPSS 0.07%
- Veröffentlicht 08.10.2022 11:15:10
- Zuletzt bearbeitet 21.11.2024 07:19:30
A vulnerability classified as problematic has been found in Linux Kernel. This affects the function fib_nh_match of the file net/ipv4/fib_semantics.c of the component IPv4 Handler. The manipulation leads to out-of-bounds read. It is possible to initi...
CVE-2022-2929
- EPSS 0.08%
- Veröffentlicht 07.10.2022 05:15:11
- Zuletzt bearbeitet 21.11.2024 07:01:56
In ISC DHCP 1.0 -> 4.4.3, ISC DHCP 4.1-ESV-R1 -> 4.1-ESV-R16-P1 a system with access to a DHCP server, sending DHCP packets crafted to include fqdn labels longer than 63 bytes, could eventually cause the server to run out of memory.
CVE-2022-2928
- EPSS 0.08%
- Veröffentlicht 07.10.2022 05:15:08
- Zuletzt bearbeitet 21.11.2024 07:01:56
In ISC DHCP 4.4.0 -> 4.4.3, ISC DHCP 4.1-ESV-R1 -> 4.1-ESV-R16-P1, when the function option_code_hash_lookup() is called from add_option(), it increases the option's refcount field. However, there is not a corresponding call to option_dereference() t...