CVE-2023-23454
- EPSS 0.04%
- Veröffentlicht 12.01.2023 07:15:08
- Zuletzt bearbeitet 20.03.2025 21:15:18
cbq_classify in net/sched/sch_cbq.c in the Linux kernel through 6.1.4 allows attackers to cause a denial of service (slab-out-of-bounds read) because of type confusion (non-negative numbers can sometimes indicate a TC_ACT_SHOT condition rather than v...
CVE-2022-4543
- EPSS 0.34%
- Veröffentlicht 11.01.2023 15:15:09
- Zuletzt bearbeitet 08.04.2025 20:15:18
A flaw named "EntryBleed" was found in the Linux Kernel Page Table Isolation (KPTI). This issue could allow a local attacker to leak KASLR base via prefetch side-channels based on TLB timing for Intel systems.
CVE-2022-4379
- EPSS 0.26%
- Veröffentlicht 10.01.2023 22:15:14
- Zuletzt bearbeitet 08.04.2025 19:15:46
A use-after-free vulnerability was found in __nfs42_ssc_open() in fs/nfs/nfs4file.c in the Linux kernel. This flaw allows an attacker to conduct a remote denial
CVE-2022-4382
- EPSS 0.03%
- Veröffentlicht 10.01.2023 22:15:14
- Zuletzt bearbeitet 09.04.2025 16:15:21
A use-after-free flaw caused by a race among the superblock operations in the gadgetfs Linux driver was found. It could be triggered by yanking out a device that is running the gadgetfs side.
CVE-2022-2196
- EPSS 0.03%
- Veröffentlicht 09.01.2023 11:15:10
- Zuletzt bearbeitet 13.02.2025 17:15:40
A regression exists in the Linux Kernel within KVM: nVMX that allowed for speculative execution attacks. L2 can carry out Spectre v2 attacks on L1 due to L1 thinking it doesn't need retpolines or IBPB after running L2 due to KVM (L0) advertising eIBR...
CVE-2022-4378
- EPSS 0.03%
- Veröffentlicht 05.01.2023 16:15:11
- Zuletzt bearbeitet 10.04.2025 15:16:01
A stack overflow flaw was found in the Linux kernel's SYSCTL subsystem in how a user changes certain kernel parameters and variables. This flaw allows a local user to crash or potentially escalate their privileges on the system.
CVE-2022-47943
- EPSS 1.26%
- Veröffentlicht 23.12.2022 17:15:08
- Zuletzt bearbeitet 15.04.2025 14:15:39
An issue was discovered in ksmbd in the Linux kernel 5.15 through 5.19 before 5.19.2. There is an out-of-bounds read and OOPS for SMB2_WRITE, when there is a large length in the zero DataOffset case.
CVE-2022-47938
- EPSS 10.48%
- Veröffentlicht 23.12.2022 16:15:12
- Zuletzt bearbeitet 15.04.2025 04:15:35
An issue was discovered in ksmbd in the Linux kernel 5.15 through 5.19 before 5.19.2. fs/ksmbd/smb2misc.c has an out-of-bounds read and OOPS for SMB2_TREE_CONNECT.
CVE-2022-47939
- EPSS 0.62%
- Veröffentlicht 23.12.2022 16:15:12
- Zuletzt bearbeitet 14.04.2025 19:15:32
An issue was discovered in ksmbd in the Linux kernel 5.15 through 5.19 before 5.19.2. fs/ksmbd/smb2pdu.c has a use-after-free and OOPS for SMB2_TREE_DISCONNECT.
CVE-2022-47940
- EPSS 1.13%
- Veröffentlicht 23.12.2022 16:15:12
- Zuletzt bearbeitet 14.04.2025 19:15:33
An issue was discovered in ksmbd in the Linux kernel 5.15 through 5.18 before 5.18.18. fs/ksmbd/smb2pdu.c lacks length validation in the non-padding case in smb2_write.