CVE-2023-33288
- EPSS 0.01%
- Veröffentlicht 22.05.2023 03:15:09
- Zuletzt bearbeitet 18.03.2025 19:15:41
An issue was discovered in the Linux kernel before 6.2.9. A use-after-free was found in bq24190_remove in drivers/power/supply/bq24190_charger.c. It could allow a local attacker to crash the system due to a race condition.
CVE-2023-2007
- EPSS 0.04%
- Veröffentlicht 24.04.2023 23:15:18
- Zuletzt bearbeitet 21.11.2024 07:57:45
The specific flaw exists within the DPT I2O Controller driver. The issue results from the lack of proper locking when performing operations on an object. An attacker can leverage this in conjunction with other vulnerabilities to escalate privileges a...
CVE-2023-31082
- EPSS 0.05%
- Veröffentlicht 24.04.2023 06:15:07
- Zuletzt bearbeitet 21.11.2024 08:01:22
An issue was discovered in drivers/tty/n_gsm.c in the Linux kernel 6.2. There is a sleeping function called from an invalid context in gsmld_write, which will block the kernel. Note: This has been disputed by 3rd parties as not a valid vulnerability.
CVE-2023-1582
- EPSS 0.02%
- Veröffentlicht 05.04.2023 20:15:07
- Zuletzt bearbeitet 13.02.2025 15:15:13
A race problem was found in fs/proc/task_mmu.c in the memory management sub-component in the Linux kernel. This issue may allow a local attacker with user privilege to cause a denial of service.
CVE-2023-0030
- EPSS 0.1%
- Veröffentlicht 08.03.2023 23:15:10
- Zuletzt bearbeitet 05.03.2025 21:15:15
A use-after-free flaw was found in the Linux kernel’s nouveau driver in how a user triggers a memory overflow that causes the nvkm_vma_tail function to fail. This flaw allows a local user to crash or potentially escalate their privileges on the syste...
CVE-2023-26242
- EPSS 0.02%
- Veröffentlicht 21.02.2023 01:15:11
- Zuletzt bearbeitet 05.05.2025 16:15:31
afu_mmio_region_get_by_offset in drivers/fpga/dfl-afu-region.c in the Linux kernel through 6.1.12 has an integer overflow.
CVE-2022-4543
- EPSS 0.34%
- Veröffentlicht 11.01.2023 15:15:09
- Zuletzt bearbeitet 08.04.2025 20:15:18
A flaw named "EntryBleed" was found in the Linux Kernel Page Table Isolation (KPTI). This issue could allow a local attacker to leak KASLR base via prefetch side-channels based on TLB timing for Intel systems.
CVE-2022-47518
- EPSS 0.03%
- Veröffentlicht 18.12.2022 06:15:09
- Zuletzt bearbeitet 17.04.2025 15:15:52
An issue was discovered in the Linux kernel before 6.0.11. Missing validation of the number of channels in drivers/net/wireless/microchip/wilc1000/cfg80211.c in the WILC1000 wireless driver can trigger a heap-based buffer overflow when copying the li...
CVE-2022-47519
- EPSS 0.14%
- Veröffentlicht 18.12.2022 06:15:09
- Zuletzt bearbeitet 17.04.2025 15:15:52
An issue was discovered in the Linux kernel before 6.0.11. Missing validation of IEEE80211_P2P_ATTR_OPER_CHANNEL in drivers/net/wireless/microchip/wilc1000/cfg80211.c in the WILC1000 wireless driver can trigger an out-of-bounds write when parsing the...
CVE-2022-25836
- EPSS 0.25%
- Veröffentlicht 12.12.2022 04:15:09
- Zuletzt bearbeitet 22.04.2025 21:15:42
Bluetooth® Low Energy Pairing in Bluetooth Core Specification v4.0 through v5.3 may permit an unauthenticated MITM to acquire credentials with two pairing devices via adjacent access when the MITM negotiates Legacy Passkey Pairing with the pairing In...