CVE-2021-46659
- EPSS 0.04%
- Veröffentlicht 29.01.2022 23:15:07
- Zuletzt bearbeitet 21.11.2024 06:34:32
MariaDB before 10.7.2 allows an application crash because it does not recognize that SELECT_LEX::nest_level is local to each VIEW.
CVE-2022-24122
- EPSS 0.19%
- Veröffentlicht 29.01.2022 22:15:07
- Zuletzt bearbeitet 21.11.2024 06:49:51
kernel/ucount.c in the Linux kernel 5.14 through 5.16.4, when unprivileged user namespaces are enabled, allows a use-after-free and privilege escalation because a ucounts object can outlive its namespace.
CVE-2022-23598
- EPSS 0.4%
- Veröffentlicht 28.01.2022 22:15:16
- Zuletzt bearbeitet 21.11.2024 06:48:53
laminas-form is a package for validating and displaying simple and complex forms. When rendering validation error messages via the `formElementErrors()` view helper shipped with laminas-form, many messages will contain the submitted value. However, i...
CVE-2022-0393
- EPSS 0.06%
- Veröffentlicht 28.01.2022 22:15:15
- Zuletzt bearbeitet 21.11.2024 06:38:31
Out-of-bounds Read in GitHub repository vim/vim prior to 8.2.
CVE-2022-23990
- EPSS 3.81%
- Veröffentlicht 26.01.2022 19:15:08
- Zuletzt bearbeitet 05.05.2025 17:17:59
Expat (aka libexpat) before 2.4.4 has an integer overflow in the doProlog function.
CVE-2021-22570
- EPSS 0.15%
- Veröffentlicht 26.01.2022 14:15:08
- Zuletzt bearbeitet 21.11.2024 05:50:20
Nullptr dereference when a null char is present in a proto symbol. The symbol is parsed incorrectly, leading to an unchecked call into the proto file's name during generation of the resulting error message. Since the symbol is incorrectly parsed, the...
CVE-2022-23959
- EPSS 0.25%
- Veröffentlicht 26.01.2022 01:15:07
- Zuletzt bearbeitet 21.11.2024 06:49:32
In Varnish Cache before 6.6.2 and 7.x before 7.0.2, Varnish Cache 6.0 LTS before 6.0.10, and and Varnish Enterprise (Cache Plus) 4.1.x before 4.1.11r6 and 6.0.x before 6.0.9r4, request smuggling can occur for HTTP/1 connections.
CVE-2022-23034
- EPSS 0.12%
- Veröffentlicht 25.01.2022 14:15:09
- Zuletzt bearbeitet 21.11.2024 06:47:51
A PV guest could DoS Xen while unmapping a grant To address XSA-380, reference counting was introduced for grant mappings for the case where a PV guest would have the IOMMU enabled. PV guests can request two forms of mappings. When both are in use fo...
CVE-2022-23035
- EPSS 0.13%
- Veröffentlicht 25.01.2022 14:15:09
- Zuletzt bearbeitet 21.11.2024 06:47:51
Insufficient cleanup of passed-through device IRQs The management of IRQs associated with physical devices exposed to x86 HVM guests involves an iterative operation in particular when cleaning up after the guest's use of the device. In the case where...
CVE-2022-23033
- EPSS 0.08%
- Veröffentlicht 25.01.2022 14:15:08
- Zuletzt bearbeitet 21.11.2024 06:47:50
arm: guest_physmap_remove_page not removing the p2m mappings The functions to remove one or more entries from a guest p2m pagetable on Arm (p2m_remove_mapping, guest_physmap_remove_page, and p2m_set_entry with mfn set to INVALID_MFN) do not actually ...