CVE-2022-1462
- EPSS 0.04%
- Veröffentlicht 02.06.2022 14:15:32
- Zuletzt bearbeitet 21.11.2024 06:40:46
An out-of-bounds read flaw was found in the Linux kernel’s TeleTYpe subsystem. The issue occurs in how a user triggers a race condition using ioctls TIOCSPTLCK and TIOCGPTPEER and TIOCSTI and TCXONC with leakage of memory in the flush_to_ldisc functi...
CVE-2022-1652
- EPSS 0.15%
- Veröffentlicht 02.06.2022 14:15:32
- Zuletzt bearbeitet 21.11.2024 06:41:10
Linux Kernel could allow a local attacker to execute arbitrary code on the system, caused by a concurrency use-after-free flaw in the bad_flp_intr function. By executing a specially-crafted program, an attacker could exploit this vulnerability to exe...
CVE-2022-31001
- EPSS 0.21%
- Veröffentlicht 31.05.2022 20:15:07
- Zuletzt bearbeitet 21.11.2024 07:03:41
Sofia-SIP is an open-source Session Initiation Protocol (SIP) User-Agent library. Prior to version 1.13.8, an attacker can send a message with evil sdp to FreeSWITCH, which may cause crash. This type of crash may be caused by `#define MATCH(s, m) (st...
CVE-2022-31003
- EPSS 9.07%
- Veröffentlicht 31.05.2022 20:15:07
- Zuletzt bearbeitet 21.11.2024 07:03:41
Sofia-SIP is an open-source Session Initiation Protocol (SIP) User-Agent library. Prior to version 1.13.8, when parsing each line of a sdp message, `rest = record + 2` will access the memory behind `\0` and cause an out-of-bounds write. An attacker c...
CVE-2022-31002
- EPSS 0.23%
- Veröffentlicht 31.05.2022 19:15:07
- Zuletzt bearbeitet 21.11.2024 07:03:41
Sofia-SIP is an open-source Session Initiation Protocol (SIP) User-Agent library. Prior to version 1.13.8, an attacker can send a message with evil sdp to FreeSWITCH, which may cause a crash. This type of crash may be caused by a URL ending with `%`....
CVE-2022-1942
- EPSS 0.83%
- Veröffentlicht 31.05.2022 14:15:07
- Zuletzt bearbeitet 03.11.2025 21:15:51
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.
CVE-2022-1897
- EPSS 0.48%
- Veröffentlicht 27.05.2022 15:15:07
- Zuletzt bearbeitet 03.11.2025 21:15:50
Out-of-bounds Write in GitHub repository vim/vim prior to 8.2.
CVE-2022-1898
- EPSS 0.15%
- Veröffentlicht 27.05.2022 09:15:08
- Zuletzt bearbeitet 21.11.2024 06:41:42
Use After Free in GitHub repository vim/vim prior to 8.2.
CVE-2022-26691
- EPSS 0.03%
- Veröffentlicht 26.05.2022 18:15:09
- Zuletzt bearbeitet 21.11.2024 06:54:19
A logic issue was addressed with improved state management. This issue is fixed in Security Update 2022-003 Catalina, macOS Monterey 12.3, macOS Big Sur 11.6.5. An application may be able to gain elevated privileges.
CVE-2022-21831
- EPSS 1.42%
- Veröffentlicht 26.05.2022 17:15:09
- Zuletzt bearbeitet 21.11.2024 06:45:31
A code injection vulnerability exists in the Active Storage >= v5.2.0 that could allow an attacker to execute code via image_processing arguments.