Vulnerabilities > Linux > Linux Kernel > 5.15.31

DATE CVE VULNERABILITY TITLE RISK
2023-04-25 CVE-2023-0045 Externally Controlled Reference to a Resource in Another Sphere vulnerability in multiple products
The current implementation of the prctl syscall does not issue an IBPB immediately during the syscall.
network
low complexity
linux debian netapp CWE-610
7.5
2023-04-24 CVE-2023-2007 Improper Locking vulnerability in multiple products
The specific flaw exists within the DPT I2O Controller driver.
local
low complexity
linux debian netapp CWE-667
7.8
2023-04-24 CVE-2023-2006 Race Condition vulnerability in multiple products
A race condition was found in the Linux kernel's RxRPC network protocol, within the processing of RxRPC bundles.
local
high complexity
linux netapp CWE-362
7.0
2023-04-24 CVE-2023-2019 A flaw was found in the Linux kernel's netdevsim device driver, within the scheduling of events.
local
low complexity
linux redhat
4.4
2023-04-21 CVE-2023-1998 Information Exposure Through Discrepancy vulnerability in multiple products
The Linux kernel allows userspace processes to enable mitigations by calling prctl with PR_SET_SPECULATION_CTRL which disables the speculation feature as well as by using seccomp.
local
high complexity
linux debian CWE-203
5.6
2023-04-20 CVE-2023-2177 NULL Pointer Dereference vulnerability in Linux Kernel
A null pointer dereference issue was found in the sctp network protocol in net/sctp/stream_sched.c in Linux Kernel.
local
low complexity
linux CWE-476
5.5
2023-04-20 CVE-2023-2194 Out-of-bounds Write vulnerability in multiple products
An out-of-bounds write vulnerability was found in the Linux kernel's SLIMpro I2C device driver.
local
low complexity
linux fedoraproject redhat CWE-787
6.7
2023-04-19 CVE-2023-1382 NULL Pointer Dereference vulnerability in Linux Kernel
A data race flaw was found in the Linux kernel, between where con is allocated and con->sock is set.
local
high complexity
linux CWE-476
4.7
2023-04-19 CVE-2023-28328 NULL Pointer Dereference vulnerability in multiple products
A NULL pointer dereference flaw was found in the az6027 driver in drivers/media/usb/dev-usb/az6027.c in the Linux Kernel.
local
low complexity
linux redhat CWE-476
5.5
2023-04-19 CVE-2023-2166 NULL Pointer Dereference vulnerability in Linux Kernel
A null pointer dereference issue was found in can protocol in net/can/af_can.c in the Linux before Linux.
local
low complexity
linux CWE-476
5.5