Aggregator
CVE-2022-48978 | Linux Kernel up to 6.0.12 HID hid_field_extract out-of-bounds
6 months 1 week ago
A vulnerability was found in Linux Kernel up to 6.0.12. It has been classified as problematic. This affects the function hid_field_extract of the component HID. The manipulation leads to out-of-bounds read.
This vulnerability is uniquely identified as CVE-2022-48978. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-48975 | Linux Kernel up to 5.15.82/6.0.12 drivers/base/core.c gpiochip_setup_dev memory leak (6daaa84b6214/371363716398/ec851b23084b)
6 months 1 week ago
A vulnerability was found in Linux Kernel up to 5.15.82/6.0.12. It has been rated as critical. This issue affects the function gpiochip_setup_dev of the file drivers/base/core.c. The manipulation leads to memory leak.
The identification of this vulnerability is CVE-2022-48975. Access to the local network is required for this attack. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-48970 | Linux Kernel up to 5.4.226/5.10.158/5.15.82/6.0.12 unix_diag_get_exact null pointer dereference
6 months 1 week ago
A vulnerability classified as critical was found in Linux Kernel up to 5.4.226/5.10.158/5.15.82/6.0.12. Affected by this vulnerability is the function unix_diag_get_exact. The manipulation leads to null pointer dereference.
This vulnerability is known as CVE-2022-48970. The attack needs to be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-48977 | Linux Kernel up to 6.0.12 can_rx_register null pointer dereference
6 months 1 week ago
A vulnerability, which was classified as critical, has been found in Linux Kernel up to 6.0.12. Affected by this issue is the function can_rx_register. The manipulation leads to null pointer dereference.
This vulnerability is handled as CVE-2022-48977. Access to the local network is required for this attack. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-48972 | Linux Kernel up to 6.0.12 mac802154 ieee802154_if_add null pointer dereference
6 months 1 week ago
A vulnerability was found in Linux Kernel up to 6.0.12. It has been classified as critical. This affects the function ieee802154_if_add of the component mac802154. The manipulation leads to null pointer dereference.
This vulnerability is uniquely identified as CVE-2022-48972. The attack can only be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-48973 | Linux Kernel up to 6.0.12 amd8111 for_each_pci_dev reference count
6 months 1 week ago
A vulnerability was found in Linux Kernel up to 6.0.12. It has been declared as critical. This vulnerability affects the function for_each_pci_dev of the component amd8111. The manipulation leads to improper update of reference count.
This vulnerability was named CVE-2022-48973. The attack can only be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-48976 | Linux Kernel up to 6.0.12 netfilter flow_offload_queue_work stack-based overflow (a220a11fda01/a81047154e7c)
6 months 1 week ago
A vulnerability was found in Linux Kernel up to 6.0.12. It has been rated as critical. This issue affects the function flow_offload_queue_work of the component netfilter. The manipulation leads to stack-based buffer overflow.
The identification of this vulnerability is CVE-2022-48976. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-48979 | Linux Kernel up to 6.0.12 AMD Display array index (3d8a298b2e83/aeffc8fb2174)
6 months 1 week ago
A vulnerability classified as critical has been found in Linux Kernel up to 6.0.12. Affected is an unknown function of the component AMD Display. The manipulation leads to improper validation of array index.
This vulnerability is traded as CVE-2022-48979. The attack needs to be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-48974 | Linux Kernel up to 6.0.12 nf_conntrack_hash_check_insert stack-based overflow (d9bf1138a5db/9464d0b68f11)
6 months 1 week ago
A vulnerability was found in Linux Kernel up to 6.0.12. It has been declared as critical. This vulnerability affects the function nf_conntrack_hash_check_insert. The manipulation leads to stack-based buffer overflow.
This vulnerability was named CVE-2022-48974. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-48981 | Linux Kernel up to 5.4.226/5.10.158/5.15.82/6.0.12 drm_gem_shmem_mmap use after free
6 months 1 week ago
A vulnerability was found in Linux Kernel up to 5.4.226/5.10.158/5.15.82/6.0.12. It has been rated as critical. This issue affects the function drm_gem_shmem_mmap. The manipulation leads to use after free.
The identification of this vulnerability is CVE-2022-48981. The attack needs to be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2015-0235 | Oracle Communications 10.0 EAGLE LNP Application Processor memory corruption (EDB-35951 / Nessus ID 81024)
6 months 1 week ago
A vulnerability was found in Oracle Communications 10.0. It has been declared as critical. This vulnerability affects unknown code of the component EAGLE LNP Application Processor. The manipulation leads to memory corruption.
This vulnerability was named CVE-2015-0235. The attack can be initiated remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
North Korean Hackers Spreading Malware Via Fake Interviews
6 months 1 week ago
Hackers Backdoor Software Libraries to Deliver Malware
Security researchers found backdoored software packages in the NPM software library, apparent evidence of an ongoing campaign by North Korean hackers to social engineer coders into installing infostealers. Pyongyang hackers have a history of bizarre methods for stealing money.
Security researchers found backdoored software packages in the NPM software library, apparent evidence of an ongoing campaign by North Korean hackers to social engineer coders into installing infostealers. Pyongyang hackers have a history of bizarre methods for stealing money.
CVE-2024-50018 | Linux Kernel up to 6.10.13/6.11.2 napi_defer_hard_irqs buffer overflow (d694ad8b7e50/5e753b743d3b/08062af0a521)
6 months 1 week ago
A vulnerability has been found in Linux Kernel up to 6.10.13/6.11.2 and classified as critical. Affected by this vulnerability is the function napi_defer_hard_irqs of the file /sys/class/net/eth4/napi_defer_hard_irqs. The manipulation leads to buffer overflow.
This vulnerability is known as CVE-2024-50018. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-48946 | Linux Kernel up to 6.1.0 udf_delete_aext allocation of resources
6 months 1 week ago
A vulnerability was found in Linux Kernel up to 6.1.0. It has been rated as problematic. Affected by this issue is the function udf_delete_aext. The manipulation leads to allocation of resources.
This vulnerability is handled as CVE-2022-48946. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-48947 | Linux Kernel up to 6.0.14 Bluetooth buffer overflow
6 months 1 week ago
A vulnerability, which was classified as critical, was found in Linux Kernel up to 6.0.14. Affected is an unknown function of the component Bluetooth. The manipulation leads to buffer overflow.
This vulnerability is traded as CVE-2022-48947. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-48969 | Linux Kernel up to 4.19.268/5.4.226/5.10.158/5.15.82/6.0.12 xen-netfront busy_poll/busy_read null pointer dereference
6 months 1 week ago
A vulnerability was found in Linux Kernel up to 4.19.268/5.4.226/5.10.158/5.15.82/6.0.12. It has been declared as critical. This vulnerability affects the function busy_poll/busy_read of the component xen-netfront. The manipulation leads to null pointer dereference.
This vulnerability was named CVE-2022-48969. The attack needs to be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-48952 | Linux Kernel up to 5.15.85/6.0.14/6.1.0 mt7621 soc_device_attribute Privilege Escalation
6 months 1 week ago
A vulnerability was found in Linux Kernel up to 5.15.85/6.0.14/6.1.0. It has been rated as problematic. This issue affects the function soc_device_attribute of the component mt7621. The manipulation leads to Privilege Escalation.
The identification of this vulnerability is CVE-2022-48952. The attack can only be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-48950 | Linux Kernel up to 5.15.83/6.0.13 perf_pending_task use after free (8bffa95ac19f/78e1317a174e/517e6a301f34)
6 months 1 week ago
A vulnerability classified as critical was found in Linux Kernel up to 5.15.83/6.0.13. Affected by this vulnerability is the function perf_pending_task. The manipulation leads to use after free.
This vulnerability is known as CVE-2022-48950. The attack can only be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-48965 | Linux Kernel up to 5.15.82/6.0.12 rockchip_gpiolib_register reference count (5cb8f1a784fd/033c79b7ee8a/63ff545af73f)
6 months 1 week ago
A vulnerability, which was classified as critical, has been found in Linux Kernel up to 5.15.82/6.0.12. This issue affects the function rockchip_gpiolib_register. The manipulation leads to improper update of reference count.
The identification of this vulnerability is CVE-2022-48965. The attack needs to be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com