CVE-2022-4378
- EPSS 0.03%
- Veröffentlicht 05.01.2023 16:15:11
- Zuletzt bearbeitet 10.04.2025 15:16:01
A stack overflow flaw was found in the Linux kernel's SYSCTL subsystem in how a user changes certain kernel parameters and variables. This flaw allows a local user to crash or potentially escalate their privileges on the system.
CVE-2022-47943
- EPSS 1.26%
- Veröffentlicht 23.12.2022 17:15:08
- Zuletzt bearbeitet 15.04.2025 14:15:39
An issue was discovered in ksmbd in the Linux kernel 5.15 through 5.19 before 5.19.2. There is an out-of-bounds read and OOPS for SMB2_WRITE, when there is a large length in the zero DataOffset case.
CVE-2022-47938
- EPSS 10.48%
- Veröffentlicht 23.12.2022 16:15:12
- Zuletzt bearbeitet 15.04.2025 04:15:35
An issue was discovered in ksmbd in the Linux kernel 5.15 through 5.19 before 5.19.2. fs/ksmbd/smb2misc.c has an out-of-bounds read and OOPS for SMB2_TREE_CONNECT.
CVE-2022-47939
- EPSS 0.62%
- Veröffentlicht 23.12.2022 16:15:12
- Zuletzt bearbeitet 14.04.2025 19:15:32
An issue was discovered in ksmbd in the Linux kernel 5.15 through 5.19 before 5.19.2. fs/ksmbd/smb2pdu.c has a use-after-free and OOPS for SMB2_TREE_DISCONNECT.
CVE-2022-47940
- EPSS 1.13%
- Veröffentlicht 23.12.2022 16:15:12
- Zuletzt bearbeitet 14.04.2025 19:15:33
An issue was discovered in ksmbd in the Linux kernel 5.15 through 5.18 before 5.18.18. fs/ksmbd/smb2pdu.c lacks length validation in the non-padding case in smb2_write.
CVE-2022-47941
- EPSS 7.51%
- Veröffentlicht 23.12.2022 16:15:12
- Zuletzt bearbeitet 15.04.2025 14:15:39
An issue was discovered in ksmbd in the Linux kernel 5.15 through 5.19 before 5.19.2. fs/ksmbd/smb2pdu.c omits a kfree call in certain smb2_handle_negotiate error conditions, aka a memory leak.
CVE-2022-47942
- EPSS 0.81%
- Veröffentlicht 23.12.2022 16:15:12
- Zuletzt bearbeitet 15.04.2025 14:15:39
An issue was discovered in ksmbd in the Linux kernel 5.15 through 5.19 before 5.19.2. There is a heap-based buffer overflow in set_ntacl_dacl, related to use of SMB2_QUERY_INFO_HE after a malformed SMB2_SET_INFO_HE command.
CVE-2022-4662
- EPSS 0.01%
- Veröffentlicht 22.12.2022 22:15:16
- Zuletzt bearbeitet 09.04.2025 19:15:46
A flaw incorrect access control in the Linux kernel USB core subsystem was found in the way user attaches usb device. A local user could use this flaw to crash the system.
CVE-2022-47518
- EPSS 0.03%
- Veröffentlicht 18.12.2022 06:15:09
- Zuletzt bearbeitet 17.04.2025 15:15:52
An issue was discovered in the Linux kernel before 6.0.11. Missing validation of the number of channels in drivers/net/wireless/microchip/wilc1000/cfg80211.c in the WILC1000 wireless driver can trigger a heap-based buffer overflow when copying the li...
CVE-2022-47519
- EPSS 0.14%
- Veröffentlicht 18.12.2022 06:15:09
- Zuletzt bearbeitet 17.04.2025 15:15:52
An issue was discovered in the Linux kernel before 6.0.11. Missing validation of IEEE80211_P2P_ATTR_OPER_CHANNEL in drivers/net/wireless/microchip/wilc1000/cfg80211.c in the WILC1000 wireless driver can trigger an out-of-bounds write when parsing the...