Vulnerabilities > Debian > Debian Linux > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-09-09 CVE-2022-36280 Out-of-bounds Write vulnerability in multiple products
An out-of-bounds(OOB) memory access vulnerability was found in vmwgfx driver in drivers/gpu/vmxgfx/vmxgfx_kms.c in GPU component in the Linux kernel with device file '/dev/dri/renderD128 (or Dxxx)'.
local
low complexity
linux debian CWE-787
5.5
2022-09-09 CVE-2022-3169 Improper Input Validation vulnerability in multiple products
A flaw was found in the Linux kernel.
local
low complexity
linux fedoraproject debian CWE-20
5.5
2022-09-09 CVE-2022-40307 Race Condition vulnerability in multiple products
An issue was discovered in the Linux kernel through 5.19.8.
local
high complexity
linux debian CWE-362
4.7
2022-09-05 CVE-2022-38749 Out-of-bounds Write vulnerability in multiple products
Using snakeYAML to parse untrusted YAML files may be vulnerable to Denial of Service attacks (DOS).
network
low complexity
snakeyaml-project debian CWE-787
6.5
2022-09-05 CVE-2022-38750 Out-of-bounds Write vulnerability in multiple products
Using snakeYAML to parse untrusted YAML files may be vulnerable to Denial of Service attacks (DOS).
local
low complexity
snakeyaml-project debian CWE-787
5.5
2022-09-05 CVE-2022-38751 Out-of-bounds Write vulnerability in multiple products
Using snakeYAML to parse untrusted YAML files may be vulnerable to Denial of Service attacks (DOS).
network
low complexity
snakeyaml-project debian CWE-787
6.5
2022-09-05 CVE-2022-39842 Integer Overflow or Wraparound vulnerability in multiple products
An issue was discovered in the Linux kernel before 5.19.
local
low complexity
linux debian CWE-190
6.1
2022-09-02 CVE-2022-39188 Race Condition vulnerability in multiple products
An issue was discovered in include/asm-generic/tlb.h in the Linux kernel before 5.19.
local
high complexity
linux debian CWE-362
4.7
2022-09-02 CVE-2022-39190 An issue was discovered in net/netfilter/nf_tables_api.c in the Linux kernel before 5.19.6.
local
low complexity
linux debian
5.5
2022-09-01 CVE-2022-2663 Improper Restriction of Communication Channel to Intended Endpoints vulnerability in multiple products
An issue was found in the Linux kernel in nf_conntrack_irc where the message handling can be confused and incorrectly matches the message.
network
low complexity
linux debian CWE-923
5.3