Количество 25 377
Количество 25 377
CVE-2022-0295
Chromium: CVE-2022-0295 Use after free in Omnibox
CVE-2022-0294
Chromium: CVE-2022-0294 Inappropriate implementation in Push messaging
CVE-2022-0293
Chromium: CVE-2022-0293 Use after free in Web packaging
CVE-2022-0292
Chromium: CVE-2022-0292 Inappropriate implementation in Fenced Frames
CVE-2022-0291
Chromium: CVE-2022-0291 Inappropriate implementation in Storage
CVE-2022-0290
Chromium: CVE-2022-0290 Use after free in Site isolation
CVE-2022-0289
Chromium: CVE-2022-0289 Use after free in Safe browsing
CVE-2022-0264
A vulnerability was found in the Linux kernel's eBPF verifier when handling internal data structures. Internal memory locations could be returned to userspace. A local attacker with the permissions to insert eBPF code to the kernel can use this to leak internal kernel memory details defeating some of the exploit mitigations in place for the kernel. This flaws affects kernel versions < v5.16-rc6
CVE-2022-0261
Heap-based Buffer Overflow in vim/vim
CVE-2022-0216
A use-after-free vulnerability was found in the LSI53C895A SCSI Host Bus Adapter emulation of QEMU. The flaw occurs while processing repeated messages to cancel the current SCSI request via the lsi_do_msgout function. This flaw allows a malicious privileged user within the guest to crash the QEMU process on the host, resulting in a denial of service.
CVE-2022-0185
A heap-based buffer overflow flaw was found in the way the legacy_parse_param function in the Filesystem Context functionality of the Linux kernel verified the supplied parameters length. An unprivileged (in case of unprivileged user namespaces enabled otherwise needs namespaced CAP_SYS_ADMIN privilege) local user able to open a filesystem that does not support the Filesystem Context API (and thus fallbacks to legacy handling) could use this flaw to escalate their privileges on the system.
CVE-2022-0175
A flaw was found in the VirGL virtual OpenGL renderer (virglrenderer). The virgl did not properly initialize memory when allocating a host-backed memory resource. A malicious guest could use this flaw to mmap from the guest kernel and read this uninitialized memory from the host possibly leading to information disclosure.
CVE-2022-0171
CVE-2022-0168
CVE-2022-0158
Heap-based Buffer Overflow in vim/vim
CVE-2022-0156
Use After Free in vim/vim
CVE-2022-0135
An out-of-bounds write issue was found in the VirGL virtual OpenGL renderer (virglrenderer). This flaw allows a malicious guest to create a specially crafted virgil resource and then issue a VIRTGPU_EXECBUFFER ioctl leading to a denial of service or possible code execution.
CVE-2022-0128
Out-of-bounds Read in vim/vim
CVE-2022-0120
Chromium: CVE-2022-0120 Inappropriate implementation in Passwords
CVE-2022-0118
Chromium: CVE-2022-0118 Inappropriate implementation in WebShare
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2022-0295 Chromium: CVE-2022-0295 Use after free in Omnibox | 1% Низкий | больше 4 лет назад | ||
CVE-2022-0294 Chromium: CVE-2022-0294 Inappropriate implementation in Push messaging | 1% Низкий | больше 4 лет назад | ||
CVE-2022-0293 Chromium: CVE-2022-0293 Use after free in Web packaging | 1% Низкий | больше 4 лет назад | ||
CVE-2022-0292 Chromium: CVE-2022-0292 Inappropriate implementation in Fenced Frames | 1% Низкий | больше 4 лет назад | ||
CVE-2022-0291 Chromium: CVE-2022-0291 Inappropriate implementation in Storage | 1% Низкий | больше 4 лет назад | ||
CVE-2022-0290 Chromium: CVE-2022-0290 Use after free in Site isolation | 2% Низкий | больше 4 лет назад | ||
CVE-2022-0289 Chromium: CVE-2022-0289 Use after free in Safe browsing | 28% Средний | больше 4 лет назад | ||
CVE-2022-0264 A vulnerability was found in the Linux kernel's eBPF verifier when handling internal data structures. Internal memory locations could be returned to userspace. A local attacker with the permissions to insert eBPF code to the kernel can use this to leak internal kernel memory details defeating some of the exploit mitigations in place for the kernel. This flaws affects kernel versions < v5.16-rc6 | CVSS3: 5.5 | 0% Низкий | больше 4 лет назад | |
CVE-2022-0261 Heap-based Buffer Overflow in vim/vim | CVSS3: 7.8 | 2% Низкий | больше 4 лет назад | |
CVE-2022-0216 A use-after-free vulnerability was found in the LSI53C895A SCSI Host Bus Adapter emulation of QEMU. The flaw occurs while processing repeated messages to cancel the current SCSI request via the lsi_do_msgout function. This flaw allows a malicious privileged user within the guest to crash the QEMU process on the host, resulting in a denial of service. | CVSS3: 4.4 | 0% Низкий | 10 месяцев назад | |
CVE-2022-0185 A heap-based buffer overflow flaw was found in the way the legacy_parse_param function in the Filesystem Context functionality of the Linux kernel verified the supplied parameters length. An unprivileged (in case of unprivileged user namespaces enabled otherwise needs namespaced CAP_SYS_ADMIN privilege) local user able to open a filesystem that does not support the Filesystem Context API (and thus fallbacks to legacy handling) could use this flaw to escalate their privileges on the system. | CVSS3: 8.4 | 25% Средний | больше 4 лет назад | |
CVE-2022-0175 A flaw was found in the VirGL virtual OpenGL renderer (virglrenderer). The virgl did not properly initialize memory when allocating a host-backed memory resource. A malicious guest could use this flaw to mmap from the guest kernel and read this uninitialized memory from the host possibly leading to information disclosure. | CVSS3: 5.5 | 0% Низкий | почти 4 года назад | |
CVSS3: 5.5 | 0% Низкий | почти 4 года назад | ||
CVSS3: 4.4 | 0% Низкий | почти 4 года назад | ||
CVE-2022-0158 Heap-based Buffer Overflow in vim/vim | CVSS3: 3.3 | 2% Низкий | больше 4 лет назад | |
CVE-2022-0156 Use After Free in vim/vim | CVSS3: 5.5 | 2% Низкий | больше 4 лет назад | |
CVE-2022-0135 An out-of-bounds write issue was found in the VirGL virtual OpenGL renderer (virglrenderer). This flaw allows a malicious guest to create a specially crafted virgil resource and then issue a VIRTGPU_EXECBUFFER ioctl leading to a denial of service or possible code execution. | CVSS3: 7.8 | 0% Низкий | почти 4 года назад | |
CVE-2022-0128 Out-of-bounds Read in vim/vim | CVSS3: 7.8 | 2% Низкий | больше 4 лет назад | |
CVE-2022-0120 Chromium: CVE-2022-0120 Inappropriate implementation in Passwords | 1% Низкий | больше 4 лет назад | ||
CVE-2022-0118 Chromium: CVE-2022-0118 Inappropriate implementation in WebShare | 1% Низкий | больше 4 лет назад |
Уязвимостей на страницу