CVE-2022-1158
- EPSS 0.02%
- Veröffentlicht 05.08.2022 17:15:08
- Zuletzt bearbeitet 21.11.2024 06:40:09
A flaw was found in KVM. When updating a guest's page table entry, vm_pgoff was improperly used as the offset to get the page's pfn. As vaddr and vm_pgoff are controllable by user-mode processes, this flaw allows unprivileged local users on the host ...
CVE-2022-1973
- EPSS 0.16%
- Veröffentlicht 05.08.2022 17:15:08
- Zuletzt bearbeitet 21.11.2024 06:41:51
A use-after-free flaw was found in the Linux kernel in log_replay in fs/ntfs3/fslog.c in the NTFS journal. This flaw allows a local attacker to crash the system and leads to a kernel information leak problem.
CVE-2022-1012
- EPSS 0.44%
- Veröffentlicht 05.08.2022 16:15:11
- Zuletzt bearbeitet 21.11.2024 06:39:51
A memory leak problem was found in the TCP source port generation algorithm in net/ipv4/tcp.c due to the small table perturb size. This flaw may allow an attacker to information leak and may cause a denial of service problem.
CVE-2022-36946
- EPSS 5.08%
- Veröffentlicht 27.07.2022 20:15:08
- Zuletzt bearbeitet 05.05.2025 16:15:18
nfqnl_mangle in net/netfilter/nfnetlink_queue.c in the Linux kernel through 5.18.14 allows remote attackers to cause a denial of service (panic) because, in the case of an nf_queue verdict with a one-byte nfta_payload attribute, an skb_pull can encou...
CVE-2022-36879
- EPSS 0.04%
- Veröffentlicht 27.07.2022 04:15:10
- Zuletzt bearbeitet 05.05.2025 16:15:17
An issue was discovered in the Linux kernel through 5.18.14. xfrm_expand_policies in net/xfrm/xfrm_policy.c can cause a refcount to be dropped twice.
CVE-2022-1651
- EPSS 0.05%
- Veröffentlicht 26.07.2022 17:15:08
- Zuletzt bearbeitet 21.11.2024 06:41:10
A memory leak flaw was found in the Linux kernel in acrn_dev_ioctl in the drivers/virt/acrn/hsm.c function in how the ACRN Device Model emulates virtual NICs in VM. This flaw allows a local privileged attacker to leak unauthorized kernel information,...
CVE-2022-1671
- EPSS 0.17%
- Veröffentlicht 26.07.2022 17:15:08
- Zuletzt bearbeitet 21.11.2024 06:41:13
A NULL pointer dereference flaw was found in rxrpc_preparse_s in net/rxrpc/server_key.c in the Linux kernel. This flaw allows a local attacker to crash the system or leak internal kernel information.
- EPSS 0.05%
- Veröffentlicht 22.07.2022 11:15:07
- Zuletzt bearbeitet 07.11.2023 03:46:17
Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. Reason: This CVE has been rejected as it was incorrectly assigned. All references and descriptions in this candidate have been removed to prevent accidental usage
CVE-2021-33655
- EPSS 0.02%
- Veröffentlicht 18.07.2022 15:15:07
- Zuletzt bearbeitet 21.11.2024 06:09:17
When sending malicous data to kernel by ioctl cmd FBIOPUT_VSCREENINFO,kernel will write memory out of bounds.
CVE-2022-23825
- EPSS 0.14%
- Veröffentlicht 14.07.2022 20:15:08
- Zuletzt bearbeitet 21.11.2024 06:49:19
Aliases in the branch predictor may cause some AMD processors to predict the wrong branch type potentially leading to information disclosure.