CVE-2021-35937
- EPSS 0.01%
- Veröffentlicht 25.08.2022 20:15:09
- Zuletzt bearbeitet 21.11.2024 06:12:47
A race condition vulnerability was found in rpm. A local unprivileged user could use this flaw to bypass the checks that were introduced in response to CVE-2017-7500 and CVE-2017-7501, potentially gaining root privileges. The highest threat from this...
CVE-2021-35938
- EPSS 0.15%
- Veröffentlicht 25.08.2022 20:15:09
- Zuletzt bearbeitet 21.11.2024 06:12:47
A symbolic link issue was found in rpm. It occurs when rpm sets the desired permissions and credentials after installing a file. A local unprivileged user could use this flaw to exchange the original file with a symbolic link to a security-critical f...
CVE-2021-3929
- EPSS 4.88%
- Veröffentlicht 25.08.2022 20:15:09
- Zuletzt bearbeitet 28.02.2025 13:15:25
A DMA reentrancy issue was found in the NVM Express Controller (NVME) emulation in QEMU. This CVE is similar to CVE-2021-3750 and, just like it, when the reentrancy write triggers the reset function nvme_ctrl_reset(), data structs will be freed leadi...
CVE-2021-3979
- EPSS 0.26%
- Veröffentlicht 25.08.2022 20:15:09
- Zuletzt bearbeitet 03.11.2025 19:15:40
A key length flaw was found in Red Hat Ceph Storage. An attacker can exploit the fact that the key length is incorrectly passed in an encryption algorithm to create a non random key, which is weaker and can be exploited for loss of confidentiality an...
CVE-2022-2980
- EPSS 0.05%
- Veröffentlicht 25.08.2022 20:15:09
- Zuletzt bearbeitet 21.11.2024 07:02:01
NULL Pointer Dereference in GitHub repository vim/vim prior to 9.0.0259.
CVE-2022-2982
- EPSS 0.06%
- Veröffentlicht 25.08.2022 20:15:09
- Zuletzt bearbeitet 21.11.2024 07:02:01
Use After Free in GitHub repository vim/vim prior to 9.0.0260.
CVE-2022-22728
- EPSS 2.19%
- Veröffentlicht 25.08.2022 15:15:08
- Zuletzt bearbeitet 21.11.2024 06:47:20
A flaw in Apache libapreq2 versions 2.16 and earlier could cause a buffer overflow while processing multipart form uploads. A remote attacker could send a request causing a process crash which could lead to a denial of service attack.
CVE-2022-32893
- EPSS 0.23%
- Veröffentlicht 24.08.2022 20:15:09
- Zuletzt bearbeitet 23.10.2025 18:02:27
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 15.6.1 and iPadOS 15.6.1, macOS Monterey 12.5.1, Safari 15.6.1. Processing maliciously crafted web content may lead to arbitrary code execution. Appl...
CVE-2022-32793
- EPSS 0.77%
- Veröffentlicht 24.08.2022 20:15:08
- Zuletzt bearbeitet 30.05.2025 17:15:25
Multiple out-of-bounds write issues were addressed with improved bounds checking. This issue is fixed in macOS Monterey 12.5, watchOS 8.7, tvOS 15.6, iOS 15.6 and iPadOS 15.6. An app may be able to disclose kernel memory.
CVE-2021-4217
- EPSS 0.2%
- Veröffentlicht 24.08.2022 16:15:10
- Zuletzt bearbeitet 21.11.2024 06:37:10
A flaw was found in unzip. The vulnerability occurs due to improper handling of Unicode strings, which can lead to a null pointer dereference. This flaw allows an attacker to input a specially crafted zip file, leading to a crash or code execution.