CVE-2022-36946
- EPSS 7.16%
- Veröffentlicht 27.07.2022 20:15:08
- Zuletzt bearbeitet 05.05.2025 16:15:18
nfqnl_mangle in net/netfilter/nfnetlink_queue.c in the Linux kernel through 5.18.14 allows remote attackers to cause a denial of service (panic) because, in the case of an nf_queue verdict with a one-byte nfta_payload attribute, an skb_pull can encou...
CVE-2022-36879
- EPSS 0.32%
- Veröffentlicht 27.07.2022 04:15:10
- Zuletzt bearbeitet 05.05.2025 16:15:17
An issue was discovered in the Linux kernel through 5.18.14. xfrm_expand_policies in net/xfrm/xfrm_policy.c can cause a refcount to be dropped twice.
- EPSS 0.05%
- Veröffentlicht 22.07.2022 11:15:07
- Zuletzt bearbeitet 07.11.2023 03:46:17
Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. Reason: This CVE has been rejected as it was incorrectly assigned. All references and descriptions in this candidate have been removed to prevent accidental usage
CVE-2021-33656
- EPSS 0.57%
- Veröffentlicht 18.07.2022 15:15:08
- Zuletzt bearbeitet 02.04.2025 18:33:53
When setting font with malicous data by ioctl cmd PIO_FONT,kernel will write memory out of bounds.
CVE-2021-33655
- EPSS 0.31%
- Veröffentlicht 18.07.2022 15:15:07
- Zuletzt bearbeitet 21.11.2024 06:09:17
When sending malicous data to kernel by ioctl cmd FBIOPUT_VSCREENINFO,kernel will write memory out of bounds.
CVE-2022-23825
- EPSS 0.78%
- Veröffentlicht 14.07.2022 20:15:08
- Zuletzt bearbeitet 21.11.2024 06:49:19
Aliases in the branch predictor may cause some AMD processors to predict the wrong branch type potentially leading to information disclosure.
CVE-2022-2380
- EPSS 0.22%
- Veröffentlicht 13.07.2022 19:15:09
- Zuletzt bearbeitet 23.04.2025 18:15:48
The Linux kernel was found vulnerable out of bounds memory access in the drivers/video/fbdev/sm712fb.c:smtcfb_read() function. The vulnerability could result in local attackers being able to crash the kernel.
CVE-2022-29900
- EPSS 3.76%
- Veröffentlicht 12.07.2022 19:15:08
- Zuletzt bearbeitet 21.11.2024 06:59:55
Mis-trained branch predictions for return instructions may allow arbitrary speculative code execution under certain microarchitecture-dependent conditions.
CVE-2022-29901
- EPSS 4.83%
- Veröffentlicht 12.07.2022 19:15:08
- Zuletzt bearbeitet 21.11.2024 06:59:56
Intel microprocessor generations 6 to 8 are affected by a new Spectre variant that is able to bypass their retpoline mitigation in the kernel to leak arbitrary data. An attacker with unprivileged user access can hijack return instructions to achieve ...
CVE-2022-2318
- EPSS 0.42%
- Veröffentlicht 06.07.2022 19:15:08
- Zuletzt bearbeitet 21.11.2024 07:00:45
There are use-after-free vulnerabilities caused by timer handler in net/rose/rose_timer.c of linux that allow attackers to crash linux kernel without any privileges.