Show filters
156 Total Results
Displaying 11-20 of 156
Sort by:
Attacker Value
Unknown
CVE-2022-41858
Disclosure Date: January 17, 2023 (last updated October 08, 2023)
A flaw was found in the Linux kernel. A NULL pointer dereference may occur while a slip driver is in progress to detach in sl_tx_timeout in drivers/net/slip/slip.c. This issue could allow an attacker to crash the system or leak internal kernel information.
0
Attacker Value
Unknown
CVE-2023-23559
Disclosure Date: January 13, 2023 (last updated October 08, 2023)
In rndis_query_oid in drivers/net/wireless/rndis_wlan.c in the Linux kernel through 6.1.5, there is an integer overflow in an addition.
0
Attacker Value
Unknown
CVE-2022-41222
Disclosure Date: September 21, 2022 (last updated November 29, 2024)
mm/mremap.c in the Linux kernel before 5.13.3 has a use-after-free via a stale TLB because an rmap lock is not held during a PUD move.
0
Attacker Value
Unknown
CVE-2022-1729
Disclosure Date: September 01, 2022 (last updated October 08, 2023)
A race condition was found the Linux kernel in perf_event_open() which can be exploited by an unprivileged user to gain root privileges. The bug allows to build several exploit primitives such as kernel address information leak, arbitrary execution, etc.
0
Attacker Value
Unknown
CVE-2022-28390
Disclosure Date: April 03, 2022 (last updated October 07, 2023)
ems_usb_start_xmit in drivers/net/can/usb/ems_usb.c in the Linux kernel through 5.17.1 has a double free.
0
Attacker Value
Unknown
CVE-2021-20322
Disclosure Date: February 18, 2022 (last updated November 10, 2023)
A flaw in the processing of received ICMP errors (ICMP fragment needed and ICMP redirect) in the Linux kernel functionality was found to allow the ability to quickly scan open UDP ports. This flaw allows an off-path remote user to effectively bypass the source port UDP randomization. The highest threat from this vulnerability is to confidentiality and possibly integrity, because software that relies on UDP source port randomization are indirectly affected as well.
0
Attacker Value
Unknown
CVE-2022-25265
Disclosure Date: February 16, 2022 (last updated November 10, 2023)
In the Linux kernel through 5.16.10, certain binary files may have the exec-all attribute if they were built in approximately 2003 (e.g., with GCC 3.2.2 and Linux kernel 2.4.20). This can cause execution of bytes located in supposedly non-executable regions of a file.
0
Attacker Value
Unknown
CVE-2021-4154
Disclosure Date: February 04, 2022 (last updated October 07, 2023)
A use-after-free flaw was found in cgroup1_parse_param in kernel/cgroup/cgroup-v1.c in the Linux kernel's cgroup v1 parser. A local attacker with a user privilege could cause a privilege escalation by exploiting the fsconfig syscall parameter leading to a container breakout and a denial of service on the system.
0
Attacker Value
Unknown
CVE-2021-46143
Disclosure Date: January 06, 2022 (last updated October 07, 2023)
In doProlog in xmlparse.c in Expat (aka libexpat) before 2.4.3, an integer overflow exists for m_groupSize.
0
Attacker Value
Unknown
CVE-2021-45960
Disclosure Date: January 01, 2022 (last updated October 07, 2023)
In Expat (aka libexpat) before 2.4.3, a left shift by 29 (or more) places in the storeAtts function in xmlparse.c can lead to realloc misbehavior (e.g., allocating too few bytes, or only freeing memory).
0