CVE-2021-3744
- EPSS 0.01%
- Veröffentlicht 04.03.2022 16:15:08
- Zuletzt bearbeitet 21.11.2024 06:22:19
A memory leak flaw was found in the Linux kernel in the ccp_run_aes_gcm_cmd() function in drivers/crypto/ccp/ccp-ops.c, which allows attackers to cause a denial of service (memory consumption). This vulnerability is similar with the older CVE-2019-18...
CVE-2021-3638
- EPSS 0.02%
- Veröffentlicht 03.03.2022 23:15:08
- Zuletzt bearbeitet 21.11.2024 06:22:02
An out-of-bounds memory access flaw was found in the ATI VGA device emulation of QEMU. This flaw occurs in the ati_2d_blt() routine while handling MMIO write operations when the guest provides invalid values for the destination display parameters. A ...
- EPSS 0%
- Veröffentlicht 03.03.2022 23:15:08
- Zuletzt bearbeitet 21.11.2024 06:22:03
A flaw use-after-free in function sco_sock_sendmsg() of the Linux kernel HCI subsystem was found in the way user calls ioct UFFDIO_REGISTER or other way triggers race condition of the call sco_conn_del() together with the call sco_sock_sendmsg() with...
CVE-2022-0730
- EPSS 0.31%
- Veröffentlicht 03.03.2022 23:15:08
- Zuletzt bearbeitet 21.11.2024 06:39:16
Under certain ldap conditions, Cacti authentication can be bypassed with certain credential types.
CVE-2021-4002
- EPSS 0.02%
- Veröffentlicht 03.03.2022 22:15:08
- Zuletzt bearbeitet 21.11.2024 06:36:42
A memory leak flaw in the Linux kernel's hugetlbfs memory usage was found in the way the user maps some regions of memory twice using shmget() which are aligned to PUD alignment with the fault of some of the memory pages. A local user could use this ...
CVE-2022-21716
- EPSS 0.82%
- Veröffentlicht 03.03.2022 21:15:07
- Zuletzt bearbeitet 25.11.2024 18:12:24
Twisted is an event-based framework for internet applications, supporting Python 3.6+. Prior to 22.2.0, Twisted SSH client and server implement is able to accept an infinite amount of data for the peer's SSH version identifier. This ends up with a bu...
CVE-2022-24724
- EPSS 4.19%
- Veröffentlicht 03.03.2022 20:15:07
- Zuletzt bearbeitet 21.11.2024 06:50:57
cmark-gfm is GitHub's extended version of the C reference implementation of CommonMark. Prior to versions 0.29.0.gfm.3 and 0.28.3.gfm.21, an integer overflow in cmark-gfm's table row parsing `table.c:row_from_string` may lead to heap memory corruptio...
CVE-2022-0492
- EPSS 5.88%
- Veröffentlicht 03.03.2022 19:15:08
- Zuletzt bearbeitet 21.11.2024 06:38:46
A vulnerability was found in the Linux kernel’s cgroup_release_agent_write in the kernel/cgroup/cgroup-v1.c function. This flaw, under certain circumstances, allows the use of the cgroups v1 release_agent feature to escalate privileges and bypass the...
CVE-2022-26126
- EPSS 0.08%
- Veröffentlicht 03.03.2022 18:15:08
- Zuletzt bearbeitet 04.11.2025 16:15:48
Buffer overflow vulnerabilities exist in FRRouting through 8.1.0 due to the use of strdup with a non-zero-terminated binary string in isis_nb_notifications.c.
CVE-2022-23648
- EPSS 5.12%
- Veröffentlicht 03.03.2022 14:15:07
- Zuletzt bearbeitet 21.11.2024 06:49:00
containerd is a container runtime available as a daemon for Linux and Windows. A bug was found in containerd prior to versions 1.6.1, 1.5.10, and 1.14.12 where containers launched through containerd’s CRI implementation on Linux with a specially-craf...