CVE-2022-2850
- EPSS 0.27%
- Veröffentlicht 14.10.2022 18:15:14
- Zuletzt bearbeitet 15.05.2025 15:15:53
A flaw was found In 389-ds-base. When the Content Synchronization plugin is enabled, an authenticated user can reach a NULL pointer dereference using a specially crafted query. This flaw allows an authenticated attacker to cause a denial of service. ...
CVE-2022-41674
- EPSS 0.2%
- Veröffentlicht 14.10.2022 00:15:09
- Zuletzt bearbeitet 15.05.2025 15:16:06
An issue was discovered in the Linux kernel before 5.19.16. Attackers able to inject WLAN frames could cause a buffer overflow in the ieee80211_bss_info_update function in net/mac80211/scan.c.
CVE-2022-42720
- EPSS 0.3%
- Veröffentlicht 14.10.2022 00:15:09
- Zuletzt bearbeitet 15.05.2025 21:15:49
Various refcounting bugs in the multi-BSS handling in the mac80211 stack in the Linux kernel 5.1 through 5.19.x before 5.19.16 could be used by local attackers (able to inject WLAN frames) to trigger use-after-free conditions to potentially execute c...
CVE-2022-42721
- EPSS 0.08%
- Veröffentlicht 14.10.2022 00:15:09
- Zuletzt bearbeitet 15.05.2025 21:15:49
A list management bug in BSS handling in the mac80211 stack in the Linux kernel 5.1 through 5.19.x before 5.19.16 could be used by local attackers (able to inject WLAN frames) to corrupt a linked list and, in turn, potentially execute code.
CVE-2022-42722
- EPSS 0.06%
- Veröffentlicht 14.10.2022 00:15:09
- Zuletzt bearbeitet 21.11.2024 07:25:13
In the Linux kernel 5.8 through 5.19.x before 5.19.16, local attackers able to inject WLAN frames into the mac80211 stack could cause a NULL pointer dereference denial-of-service attack against the beacon protection of P2P devices.
CVE-2022-42719
- EPSS 0.27%
- Veröffentlicht 13.10.2022 23:15:11
- Zuletzt bearbeitet 15.05.2025 21:15:48
A use-after-free in the mac80211 stack when parsing a multi-BSSID element in the Linux kernel 5.2 through 5.19.x before 5.19.16 could be used by attackers (able to inject WLAN frames) to crash the kernel and potentially execute code.
CVE-2022-39282
- EPSS 0.08%
- Veröffentlicht 12.10.2022 23:15:09
- Zuletzt bearbeitet 21.11.2024 07:17:57
FreeRDP is a free remote desktop protocol library and clients. FreeRDP based clients on unix systems using `/parallel` command line switch might read uninitialized data and send it to the server the client is currently connected to. FreeRDP based ser...
CVE-2022-39283
- EPSS 0.09%
- Veröffentlicht 12.10.2022 23:15:09
- Zuletzt bearbeitet 21.11.2024 07:17:57
FreeRDP is a free remote desktop protocol library and clients. All FreeRDP based clients when using the `/video` command line switch might read uninitialized data, decode it as audio/video and display the result. FreeRDP based server implementations ...
CVE-2022-3171
- EPSS 0.08%
- Veröffentlicht 12.10.2022 23:15:09
- Zuletzt bearbeitet 21.11.2024 07:18:58
A parsing issue with binary data in protobuf-java core and lite versions prior to 3.21.7, 3.20.3, 3.19.6 and 3.16.3 can lead to a denial of service attack. Inputs containing multiple instances of non-repeated embedded messages with repeated or unknow...
CVE-2022-3140
- EPSS 1.1%
- Veröffentlicht 11.10.2022 21:15:16
- Zuletzt bearbeitet 21.11.2024 07:18:54
LibreOffice supports Office URI Schemes to enable browser integration of LibreOffice with MS SharePoint server. An additional scheme 'vnd.libreoffice.command' specific to LibreOffice was added. In the affected versions of LibreOffice links using that...