CVE-2022-1122
- EPSS 0.05%
- Published 29.03.2022 18:15:07
- Last modified 03.11.2025 20:15:52
A flaw was found in the opj2_decompress program in openjpeg2 2.4.0 in the way it handles an input directory with a large number of files. When it fails to allocate a buffer to store the filenames of the input directory, it calls free() on an uninitia...
CVE-2022-1055
- EPSS 0.03%
- Published 29.03.2022 15:15:08
- Last modified 21.11.2024 06:39:56
A use-after-free exists in the Linux Kernel in tc_new_tfilter that could allow a local attacker to gain privilege escalation. The exploit requires unprivileged user namespaces. We recommend upgrading past commit 04c2a47ffb13c29778e2a14e414ad4cb5a5db4...
CVE-2022-26280
- EPSS 0.13%
- Published 28.03.2022 22:15:09
- Last modified 03.11.2025 22:15:57
Libarchive v3.6.0 was discovered to contain an out-of-bounds read via the component zipx_lzma_alone_init.
CVE-2022-24303
- EPSS 0.56%
- Published 28.03.2022 02:15:07
- Last modified 21.11.2024 06:50:07
Pillow before 9.0.1 allows attackers to delete files because spaces in temporary pathnames are mishandled.
CVE-2022-27939
- EPSS 0.26%
- Published 26.03.2022 13:15:07
- Last modified 21.11.2024 06:56:30
tcprewrite in Tcpreplay 4.4.1 has a reachable assertion in get_layer4_v6 in common/get.c.
CVE-2022-27940
- EPSS 0.24%
- Published 26.03.2022 13:15:07
- Last modified 21.11.2024 06:56:30
tcprewrite in Tcpreplay 4.4.1 has a heap-based buffer over-read in get_ipv6_next in common/get.c.
CVE-2022-27941
- EPSS 0.24%
- Published 26.03.2022 13:15:07
- Last modified 21.11.2024 06:56:30
tcprewrite in Tcpreplay 4.4.1 has a heap-based buffer over-read in get_l2len_protocol in common/get.c.
CVE-2022-27942
- EPSS 0.24%
- Published 26.03.2022 13:15:07
- Last modified 21.11.2024 06:56:30
tcpprep in Tcpreplay 4.4.1 has a heap-based buffer over-read in parse_mpls in common/get.c.
CVE-2022-27943
- EPSS 0.05%
- Published 26.03.2022 13:15:07
- Last modified 21.11.2024 06:56:31
libiberty/rust-demangle.c in GNU GCC 11.2 allows stack consumption in demangle_const, as demonstrated by nm-new.
CVE-2022-22995
- EPSS 0.18%
- Published 25.03.2022 23:15:08
- Last modified 03.11.2025 22:15:55
The combination of primitives offered by SMB and AFP in their default configuration allows the arbitrary writing of files. By exploiting these combination of primitives, an attacker can execute arbitrary code.