CVE-2022-0487
- EPSS 0.42%
- Veröffentlicht 04.02.2022 23:15:12
- Zuletzt bearbeitet 21.11.2024 06:38:45
A use-after-free vulnerability was found in rtsx_usb_ms_drv_remove in drivers/memstick/host/rtsx_usb_ms.c in memstick in the Linux kernel. In this flaw, a local attacker with a user privilege may impact system Confidentiality. This flaw affects kerne...
CVE-2022-24448
- EPSS 0.4%
- Veröffentlicht 04.02.2022 20:15:08
- Zuletzt bearbeitet 21.11.2024 06:50:26
An issue was discovered in fs/nfs/dir.c in the Linux kernel before 5.16.5. If an application sets the O_DIRECTORY flag, and tries to open a regular file, nfs_atomic_open() performs a regular lookup. If a regular file is found, ENOTDIR should occur, b...
- EPSS 0.31%
- Veröffentlicht 18.01.2022 17:15:09
- Zuletzt bearbeitet 21.11.2024 06:36:52
A read-after-free memory flaw was found in the Linux kernel's garbage collection for Unix domain socket file handlers in the way users call close() and fget() simultaneously and can potentially trigger a race condition. This flaw allows a local user ...
CVE-2021-39633
- EPSS 0.18%
- Veröffentlicht 14.01.2022 20:15:11
- Zuletzt bearbeitet 21.11.2024 06:19:50
In gre_handle_offloads of ip_gre.c, there is a possible page fault due to an invalid memory access. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Produc...
CVE-2021-28714
- EPSS 0.33%
- Veröffentlicht 06.01.2022 18:15:07
- Zuletzt bearbeitet 21.11.2024 06:00:12
Guest can force Linux netback driver to hog large amounts of kernel memory T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Incoming data packets for a guest in the Linux...
CVE-2021-28715
- EPSS 0.33%
- Veröffentlicht 06.01.2022 18:15:07
- Zuletzt bearbeitet 22.05.2025 19:15:24
Guest can force Linux netback driver to hog large amounts of kernel memory T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Incoming data packets for a guest in the Linux...
CVE-2021-28711
- EPSS 0.33%
- Veröffentlicht 05.01.2022 17:15:09
- Zuletzt bearbeitet 21.11.2024 06:00:11
Rogue backends can cause DoS of guests via high frequency events T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Xen offers the ability to run PV backends in regular unp...
CVE-2021-28712
- EPSS 0.33%
- Veröffentlicht 05.01.2022 17:15:09
- Zuletzt bearbeitet 21.11.2024 06:00:11
Rogue backends can cause DoS of guests via high frequency events T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Xen offers the ability to run PV backends in regular unp...
CVE-2021-28713
- EPSS 0.33%
- Veröffentlicht 05.01.2022 17:15:09
- Zuletzt bearbeitet 21.11.2024 06:00:11
Rogue backends can cause DoS of guests via high frequency events T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Xen offers the ability to run PV backends in regular unp...
CVE-2021-45485
- EPSS 3.59%
- Veröffentlicht 25.12.2021 02:15:06
- Zuletzt bearbeitet 05.08.2026 18:42:43
In the IPv6 implementation in the Linux kernel before 5.13.3, net/ipv6/output_core.c has an information leak because of certain use of a hash table which, although big, doesn't properly consider that IPv6-based attackers can typically choose among ma...