Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 25 377

Количество 25 377

msrc логотип

CVE-2022-0295

больше 4 лет назад

Chromium: CVE-2022-0295 Use after free in Omnibox

EPSS: Низкий
msrc логотип

CVE-2022-0294

больше 4 лет назад

Chromium: CVE-2022-0294 Inappropriate implementation in Push messaging

EPSS: Низкий
msrc логотип

CVE-2022-0293

больше 4 лет назад

Chromium: CVE-2022-0293 Use after free in Web packaging

EPSS: Низкий
msrc логотип

CVE-2022-0292

больше 4 лет назад

Chromium: CVE-2022-0292 Inappropriate implementation in Fenced Frames

EPSS: Низкий
msrc логотип

CVE-2022-0291

больше 4 лет назад

Chromium: CVE-2022-0291 Inappropriate implementation in Storage

EPSS: Низкий
msrc логотип

CVE-2022-0290

больше 4 лет назад

Chromium: CVE-2022-0290 Use after free in Site isolation

EPSS: Низкий
msrc логотип

CVE-2022-0289

больше 4 лет назад

Chromium: CVE-2022-0289 Use after free in Safe browsing

EPSS: Средний
msrc логотип

CVE-2022-0264

больше 4 лет назад

A vulnerability was found in the Linux kernel's eBPF verifier when handling internal data structures. Internal memory locations could be returned to userspace. A local attacker with the permissions to insert eBPF code to the kernel can use this to leak internal kernel memory details defeating some of the exploit mitigations in place for the kernel. This flaws affects kernel versions < v5.16-rc6

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2022-0261

больше 4 лет назад

Heap-based Buffer Overflow in vim/vim

CVSS3: 7.8
EPSS: Низкий
msrc логотип

CVE-2022-0216

10 месяцев назад

A use-after-free vulnerability was found in the LSI53C895A SCSI Host Bus Adapter emulation of QEMU. The flaw occurs while processing repeated messages to cancel the current SCSI request via the lsi_do_msgout function. This flaw allows a malicious privileged user within the guest to crash the QEMU process on the host, resulting in a denial of service.

CVSS3: 4.4
EPSS: Низкий
msrc логотип

CVE-2022-0185

больше 4 лет назад

A heap-based buffer overflow flaw was found in the way the legacy_parse_param function in the Filesystem Context functionality of the Linux kernel verified the supplied parameters length. An unprivileged (in case of unprivileged user namespaces enabled otherwise needs namespaced CAP_SYS_ADMIN privilege) local user able to open a filesystem that does not support the Filesystem Context API (and thus fallbacks to legacy handling) could use this flaw to escalate their privileges on the system.

CVSS3: 8.4
EPSS: Средний
msrc логотип

CVE-2022-0175

почти 4 года назад

A flaw was found in the VirGL virtual OpenGL renderer (virglrenderer). The virgl did not properly initialize memory when allocating a host-backed memory resource. A malicious guest could use this flaw to mmap from the guest kernel and read this uninitialized memory from the host possibly leading to information disclosure.

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2022-0171

почти 4 года назад

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2022-0168

почти 4 года назад

CVSS3: 4.4
EPSS: Низкий
msrc логотип

CVE-2022-0158

больше 4 лет назад

Heap-based Buffer Overflow in vim/vim

CVSS3: 3.3
EPSS: Низкий
msrc логотип

CVE-2022-0156

больше 4 лет назад

Use After Free in vim/vim

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2022-0135

почти 4 года назад

An out-of-bounds write issue was found in the VirGL virtual OpenGL renderer (virglrenderer). This flaw allows a malicious guest to create a specially crafted virgil resource and then issue a VIRTGPU_EXECBUFFER ioctl leading to a denial of service or possible code execution.

CVSS3: 7.8
EPSS: Низкий
msrc логотип

CVE-2022-0128

больше 4 лет назад

Out-of-bounds Read in vim/vim

CVSS3: 7.8
EPSS: Низкий
msrc логотип

CVE-2022-0120

больше 4 лет назад

Chromium: CVE-2022-0120 Inappropriate implementation in Passwords

EPSS: Низкий
msrc логотип

CVE-2022-0118

больше 4 лет назад

Chromium: CVE-2022-0118 Inappropriate implementation in WebShare

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
msrc логотип
CVE-2022-0295

Chromium: CVE-2022-0295 Use after free in Omnibox

1%
Низкий
больше 4 лет назад
msrc логотип
CVE-2022-0294

Chromium: CVE-2022-0294 Inappropriate implementation in Push messaging

1%
Низкий
больше 4 лет назад
msrc логотип
CVE-2022-0293

Chromium: CVE-2022-0293 Use after free in Web packaging

1%
Низкий
больше 4 лет назад
msrc логотип
CVE-2022-0292

Chromium: CVE-2022-0292 Inappropriate implementation in Fenced Frames

1%
Низкий
больше 4 лет назад
msrc логотип
CVE-2022-0291

Chromium: CVE-2022-0291 Inappropriate implementation in Storage

1%
Низкий
больше 4 лет назад
msrc логотип
CVE-2022-0290

Chromium: CVE-2022-0290 Use after free in Site isolation

2%
Низкий
больше 4 лет назад
msrc логотип
CVE-2022-0289

Chromium: CVE-2022-0289 Use after free in Safe browsing

28%
Средний
больше 4 лет назад
msrc логотип
CVE-2022-0264

A vulnerability was found in the Linux kernel's eBPF verifier when handling internal data structures. Internal memory locations could be returned to userspace. A local attacker with the permissions to insert eBPF code to the kernel can use this to leak internal kernel memory details defeating some of the exploit mitigations in place for the kernel. This flaws affects kernel versions < v5.16-rc6

CVSS3: 5.5
0%
Низкий
больше 4 лет назад
msrc логотип
CVE-2022-0261

Heap-based Buffer Overflow in vim/vim

CVSS3: 7.8
2%
Низкий
больше 4 лет назад
msrc логотип
CVE-2022-0216

A use-after-free vulnerability was found in the LSI53C895A SCSI Host Bus Adapter emulation of QEMU. The flaw occurs while processing repeated messages to cancel the current SCSI request via the lsi_do_msgout function. This flaw allows a malicious privileged user within the guest to crash the QEMU process on the host, resulting in a denial of service.

CVSS3: 4.4
0%
Низкий
10 месяцев назад
msrc логотип
CVE-2022-0185

A heap-based buffer overflow flaw was found in the way the legacy_parse_param function in the Filesystem Context functionality of the Linux kernel verified the supplied parameters length. An unprivileged (in case of unprivileged user namespaces enabled otherwise needs namespaced CAP_SYS_ADMIN privilege) local user able to open a filesystem that does not support the Filesystem Context API (and thus fallbacks to legacy handling) could use this flaw to escalate their privileges on the system.

CVSS3: 8.4
25%
Средний
больше 4 лет назад
msrc логотип
CVE-2022-0175

A flaw was found in the VirGL virtual OpenGL renderer (virglrenderer). The virgl did not properly initialize memory when allocating a host-backed memory resource. A malicious guest could use this flaw to mmap from the guest kernel and read this uninitialized memory from the host possibly leading to information disclosure.

CVSS3: 5.5
0%
Низкий
почти 4 года назад
msrc логотип
CVSS3: 5.5
0%
Низкий
почти 4 года назад
msrc логотип
CVSS3: 4.4
0%
Низкий
почти 4 года назад
msrc логотип
CVE-2022-0158

Heap-based Buffer Overflow in vim/vim

CVSS3: 3.3
2%
Низкий
больше 4 лет назад
msrc логотип
CVE-2022-0156

Use After Free in vim/vim

CVSS3: 5.5
2%
Низкий
больше 4 лет назад
msrc логотип
CVE-2022-0135

An out-of-bounds write issue was found in the VirGL virtual OpenGL renderer (virglrenderer). This flaw allows a malicious guest to create a specially crafted virgil resource and then issue a VIRTGPU_EXECBUFFER ioctl leading to a denial of service or possible code execution.

CVSS3: 7.8
0%
Низкий
почти 4 года назад
msrc логотип
CVE-2022-0128

Out-of-bounds Read in vim/vim

CVSS3: 7.8
2%
Низкий
больше 4 лет назад
msrc логотип
CVE-2022-0120

Chromium: CVE-2022-0120 Inappropriate implementation in Passwords

1%
Низкий
больше 4 лет назад
msrc логотип
CVE-2022-0118

Chromium: CVE-2022-0118 Inappropriate implementation in WebShare

1%
Низкий
больше 4 лет назад

Уязвимостей на страницу