Количество 26 087
Количество 26 087
CVE-2022-39253
GitHub: CVE-2022-39253 Local clone optimization dereferences symbolic links by default
CVE-2022-3924
named configured to answer from stale cache may terminate unexpectedly at recursive-clients soft quota
CVE-2022-39227
Python-jwt subject to Authentication Bypass by Spoofing
CVE-2022-39190
An issue was discovered in net/netfilter/nf_tables_api.c in the Linux kernel before 5.19.6. A denial of service can occur upon binding to an already bound chain.
CVE-2022-39189
An issue was discovered the x86 KVM subsystem in the Linux kernel before 5.18.17. Unprivileged guest users can compromise the guest kernel because TLB flush operations are mishandled in certain KVM_VCPU_PREEMPTED situations.
CVE-2022-39188
An issue was discovered in include/asm-generic/tlb.h in the Linux kernel before 5.19. Because of a race condition (unmap_mapping_range versus munmap) a device driver can free a page while it still has stale TLB entries. This only occurs in situations with VM_PFNMAP VMAs.
CVE-2022-3910
CVE-2022-3890
Chromium: CVE-2022-3890 Heap buffer overflow in Crashpad
CVE-2022-3889
Chromium: CVE-2022-3889 Type Confusion in V8
CVE-2022-3888
Chromium: CVE-2022-3888 Use after free in WebCodecs
CVE-2022-3887
Chromium: CVE-2022-3887 Use after free in Web Workers
CVE-2022-3886
Chromium: CVE-2022-3886 Use after free in Speech Recognition
CVE-2022-3885
Chromium: CVE-2022-3885 Use after free in V8
CVE-2022-38791
CVE-2022-38752
DoS in SnakeYAML
CVE-2022-38751
DoS in SnakeYAML
CVE-2022-38750
DoS in SnakeYAML
CVE-2022-38749
DoS in SnakeYAML
CVE-2022-3872
CVE-2022-38725
An integer overflow in the RFC3164 parser in One Identity syslog-ng 3.0 through 3.37 allows remote attackers to cause a Denial of Service via crafted syslog input that is mishandled by the tcp or network function. syslog-ng Premium Edition 7.0.30 and syslog-ng Store Box 6.10.0 are also affected.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2022-39253 GitHub: CVE-2022-39253 Local clone optimization dereferences symbolic links by default | 1% Низкий | почти 4 года назад | ||
CVE-2022-3924 named configured to answer from stale cache may terminate unexpectedly at recursive-clients soft quota | CVSS3: 7.5 | 16% Средний | больше 3 лет назад | |
CVE-2022-39227 Python-jwt subject to Authentication Bypass by Spoofing | CVSS3: 9.1 | 4% Низкий | почти 4 года назад | |
CVE-2022-39190 An issue was discovered in net/netfilter/nf_tables_api.c in the Linux kernel before 5.19.6. A denial of service can occur upon binding to an already bound chain. | CVSS3: 5.5 | 0% Низкий | почти 4 года назад | |
CVE-2022-39189 An issue was discovered the x86 KVM subsystem in the Linux kernel before 5.18.17. Unprivileged guest users can compromise the guest kernel because TLB flush operations are mishandled in certain KVM_VCPU_PREEMPTED situations. | CVSS3: 7.8 | 0% Низкий | почти 4 года назад | |
CVE-2022-39188 An issue was discovered in include/asm-generic/tlb.h in the Linux kernel before 5.19. Because of a race condition (unmap_mapping_range versus munmap) a device driver can free a page while it still has stale TLB entries. This only occurs in situations with VM_PFNMAP VMAs. | CVSS3: 4.7 | 0% Низкий | почти 4 года назад | |
CVSS3: 7.8 | 1% Низкий | больше 3 лет назад | ||
CVE-2022-3890 Chromium: CVE-2022-3890 Heap buffer overflow in Crashpad | 1% Низкий | почти 4 года назад | ||
CVE-2022-3889 Chromium: CVE-2022-3889 Type Confusion in V8 | 1% Низкий | почти 4 года назад | ||
CVE-2022-3888 Chromium: CVE-2022-3888 Use after free in WebCodecs | 1% Низкий | почти 4 года назад | ||
CVE-2022-3887 Chromium: CVE-2022-3887 Use after free in Web Workers | 1% Низкий | почти 4 года назад | ||
CVE-2022-3886 Chromium: CVE-2022-3886 Use after free in Speech Recognition | 1% Низкий | почти 4 года назад | ||
CVE-2022-3885 Chromium: CVE-2022-3885 Use after free in V8 | 1% Низкий | почти 4 года назад | ||
CVSS3: 5.5 | 0% Низкий | почти 4 года назад | ||
CVE-2022-38752 DoS in SnakeYAML | CVSS3: 6.5 | 2% Низкий | 11 месяцев назад | |
CVE-2022-38751 DoS in SnakeYAML | CVSS3: 6.5 | 2% Низкий | 11 месяцев назад | |
CVE-2022-38750 DoS in SnakeYAML | CVSS3: 6.5 | 1% Низкий | 11 месяцев назад | |
CVE-2022-38749 DoS in SnakeYAML | CVSS3: 6.5 | 2% Низкий | 11 месяцев назад | |
CVSS3: 8.6 | 1% Низкий | около 2 лет назад | ||
CVE-2022-38725 An integer overflow in the RFC3164 parser in One Identity syslog-ng 3.0 through 3.37 allows remote attackers to cause a Denial of Service via crafted syslog input that is mishandled by the tcp or network function. syslog-ng Premium Edition 7.0.30 and syslog-ng Store Box 6.10.0 are also affected. | CVSS3: 7.5 | 2% Низкий | 6 дней назад |
Уязвимостей на страницу