CVE-2023-0394
- EPSS 1.02%
- Veröffentlicht 26.01.2023 21:18:07
- Zuletzt bearbeitet 31.03.2025 15:15:38
A NULL pointer dereference flaw was found in rawv6_push_pending_frames in net/ipv6/raw.c in the network subcomponent in the Linux kernel. This flaw causes the system to crash.
CVE-2022-41858
- EPSS 0.28%
- Veröffentlicht 17.01.2023 18:15:11
- Zuletzt bearbeitet 07.04.2025 17:15:33
A flaw was found in the Linux kernel. A NULL pointer dereference may occur while a slip driver is in progress to detach in sl_tx_timeout in drivers/net/slip/slip.c. This issue could allow an attacker to crash the system or leak internal kernel inform...
- EPSS -
- Veröffentlicht 17.01.2023 06:15:10
- Zuletzt bearbeitet 07.11.2023 03:44:19
Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes: none.
CVE-2023-23559
- EPSS 0.3%
- Veröffentlicht 13.01.2023 01:15:10
- Zuletzt bearbeitet 05.05.2025 16:15:30
In rndis_query_oid in drivers/net/wireless/rndis_wlan.c in the Linux kernel through 6.1.5, there is an integer overflow in an addition.
CVE-2022-3628
- EPSS 0.5%
- Veröffentlicht 12.01.2023 19:15:24
- Zuletzt bearbeitet 08.04.2025 15:15:45
A buffer overflow flaw was found in the Linux kernel Broadcom Full MAC Wi-Fi driver. This issue occurs when a user connects to a malicious USB device. This can allow a local user to crash the system or escalate their privileges.
CVE-2023-23455
- EPSS 0.27%
- Veröffentlicht 12.01.2023 07:15:09
- Zuletzt bearbeitet 20.03.2025 21:15:18
atm_tc_enqueue in net/sched/sch_atm.c in the Linux kernel through 6.1.4 allows attackers to cause a denial of service because of type confusion (non-negative numbers can sometimes indicate a TC_ACT_SHOT condition rather than valid classification resu...
CVE-2023-23454
- EPSS 0.31%
- Veröffentlicht 12.01.2023 07:15:08
- Zuletzt bearbeitet 20.03.2025 21:15:18
cbq_classify in net/sched/sch_cbq.c in the Linux kernel through 6.1.4 allows attackers to cause a denial of service (slab-out-of-bounds read) because of type confusion (non-negative numbers can sometimes indicate a TC_ACT_SHOT condition rather than v...
CVE-2022-4543
- EPSS 0.95%
- Veröffentlicht 11.01.2023 15:15:09
- Zuletzt bearbeitet 08.04.2025 20:15:18
A flaw named "EntryBleed" was found in the Linux Kernel Page Table Isolation (KPTI). This issue could allow a local attacker to leak KASLR base via prefetch side-channels based on TLB timing for Intel systems.
CVE-2022-4662
- EPSS 0.32%
- Veröffentlicht 22.12.2022 22:15:16
- Zuletzt bearbeitet 09.04.2025 19:15:46
A flaw incorrect access control in the Linux kernel USB core subsystem was found in the way user attaches usb device. A local user could use this flaw to crash the system.
CVE-2022-20566
- EPSS 0.17%
- Veröffentlicht 16.12.2022 16:15:19
- Zuletzt bearbeitet 21.04.2025 14:15:26
In l2cap_chan_put of l2cap_core, there is a possible use after free due to improper locking. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: And...