Количество 25 377
Количество 25 377
CVE-2022-1664
directory traversal for in-place extracts with untrusted v2 and v3 source packages with debian.tar
CVE-2022-1652
Linux Kernel could allow a local attacker to execute arbitrary code on the system caused by a concurrency use-after-free flaw in the bad_flp_intr function. By executing a specially-crafted program an attacker could exploit this vulnerability to execute arbitrary code or cause a denial of service condition on the system.
CVE-2022-1651
A memory leak flaw was found in the Linux kernel in acrn_dev_ioctl in the drivers/virt/acrn/hsm.c function in how the ACRN Device Model emulates virtual NICs in VM. This flaw allows a local privileged attacker to leak unauthorized kernel information causing a denial of service.
CVE-2022-1640
Chromium: CVE-2022-1640 Use after free in Sharing
CVE-2022-1639
Chromium: CVE-2022-1639 Use after free in ANGLE
CVE-2022-1638
Chromium: CVE-2022-1638 Heap buffer overflow in V8 Internationalization
CVE-2022-1637
Chromium: CVE-2022-1637 Inappropriate implementation in Web Contents
CVE-2022-1636
Chromium: CVE-2022-1636 Use after free in Performance APIs
CVE-2022-1635
Chromium: CVE-2022-1635 Use after free in Permission Prompts
CVE-2022-1634
Chromium: CVE-2022-1634 Use after free in Browser UI
CVE-2022-1629
Buffer Over-read in function find_next_quote in vim/vim
CVE-2022-1623
LibTIFF master branch has an out-of-bounds read in LZWDecode in libtiff/tif_lzw.c:624 allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources the fix is available with commit b4e79bfa.
CVE-2022-1622
LibTIFF master branch has an out-of-bounds read in LZWDecode in libtiff/tif_lzw.c:619 allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources the fix is available with commit b4e79bfa.
CVE-2022-1621
Heap buffer overflow in vim_strncpy find_word in vim/vim
CVE-2022-1620
NULL Pointer Dereference in function vim_regexec_string at regexp.c:2729 in vim/vim
CVE-2022-1619
Heap-based Buffer Overflow in function cmdline_erase_chars in vim/vim
CVE-2022-1616
Use after free in append_command in vim/vim
CVE-2022-1615
In Samba, GnuTLS gnutls_rnd() can fail and give predictable random values.
CVE-2022-1587
An out-of-bounds read vulnerability was discovered in the PCRE2 library in the get_recurse_data_length() function of the pcre2_jit_compile.c file. This issue affects recursions in JIT-compiled regular expressions caused by duplicate data transfers.
CVE-2022-1586
An out-of-bounds read vulnerability was discovered in the PCRE2 library in the compile_xclass_matchingpath() function of the pcre2_jit_compile.c file. This involves a unicode property matching issue in JIT-compiled regular expressions. The issue occurs because the character was not fully read in case-less matching within JIT.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2022-1664 directory traversal for in-place extracts with untrusted v2 and v3 source packages with debian.tar | CVSS3: 9.8 | 3% Низкий | около 4 лет назад | |
CVE-2022-1652 Linux Kernel could allow a local attacker to execute arbitrary code on the system caused by a concurrency use-after-free flaw in the bad_flp_intr function. By executing a specially-crafted program an attacker could exploit this vulnerability to execute arbitrary code or cause a denial of service condition on the system. | CVSS3: 7.8 | 1% Низкий | около 4 лет назад | |
CVE-2022-1651 A memory leak flaw was found in the Linux kernel in acrn_dev_ioctl in the drivers/virt/acrn/hsm.c function in how the ACRN Device Model emulates virtual NICs in VM. This flaw allows a local privileged attacker to leak unauthorized kernel information causing a denial of service. | CVSS3: 7.1 | 0% Низкий | около 4 лет назад | |
CVE-2022-1640 Chromium: CVE-2022-1640 Use after free in Sharing | 1% Низкий | около 4 лет назад | ||
CVE-2022-1639 Chromium: CVE-2022-1639 Use after free in ANGLE | 1% Низкий | около 4 лет назад | ||
CVE-2022-1638 Chromium: CVE-2022-1638 Heap buffer overflow in V8 Internationalization | 1% Низкий | около 4 лет назад | ||
CVE-2022-1637 Chromium: CVE-2022-1637 Inappropriate implementation in Web Contents | 1% Низкий | около 4 лет назад | ||
CVE-2022-1636 Chromium: CVE-2022-1636 Use after free in Performance APIs | 1% Низкий | около 4 лет назад | ||
CVE-2022-1635 Chromium: CVE-2022-1635 Use after free in Permission Prompts | 1% Низкий | около 4 лет назад | ||
CVE-2022-1634 Chromium: CVE-2022-1634 Use after free in Browser UI | 1% Низкий | около 4 лет назад | ||
CVE-2022-1629 Buffer Over-read in function find_next_quote in vim/vim | CVSS3: 7.8 | 2% Низкий | около 4 лет назад | |
CVE-2022-1623 LibTIFF master branch has an out-of-bounds read in LZWDecode in libtiff/tif_lzw.c:624 allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources the fix is available with commit b4e79bfa. | CVSS3: 5.5 | 1% Низкий | около 4 лет назад | |
CVE-2022-1622 LibTIFF master branch has an out-of-bounds read in LZWDecode in libtiff/tif_lzw.c:619 allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources the fix is available with commit b4e79bfa. | CVSS3: 5.5 | 2% Низкий | около 4 лет назад | |
CVE-2022-1621 Heap buffer overflow in vim_strncpy find_word in vim/vim | CVSS3: 7.8 | 2% Низкий | около 4 лет назад | |
CVE-2022-1620 NULL Pointer Dereference in function vim_regexec_string at regexp.c:2729 in vim/vim | CVSS3: 7.5 | 2% Низкий | около 4 лет назад | |
CVE-2022-1619 Heap-based Buffer Overflow in function cmdline_erase_chars in vim/vim | CVSS3: 7.8 | 3% Низкий | около 4 лет назад | |
CVE-2022-1616 Use after free in append_command in vim/vim | CVSS3: 7.8 | 3% Низкий | около 4 лет назад | |
CVE-2022-1615 In Samba, GnuTLS gnutls_rnd() can fail and give predictable random values. | CVSS3: 5.5 | 0% Низкий | 10 месяцев назад | |
CVE-2022-1587 An out-of-bounds read vulnerability was discovered in the PCRE2 library in the get_recurse_data_length() function of the pcre2_jit_compile.c file. This issue affects recursions in JIT-compiled regular expressions caused by duplicate data transfers. | CVSS3: 9.1 | 3% Низкий | около 4 лет назад | |
CVE-2022-1586 An out-of-bounds read vulnerability was discovered in the PCRE2 library in the compile_xclass_matchingpath() function of the pcre2_jit_compile.c file. This involves a unicode property matching issue in JIT-compiled regular expressions. The issue occurs because the character was not fully read in case-less matching within JIT. | CVSS3: 9.1 | 3% Низкий | около 4 лет назад |
Уязвимостей на страницу