Vulnerabilities > Linux > Linux Kernel > 5.15.98

DATE CVE VULNERABILITY TITLE RISK
2022-10-25 CVE-2022-3344 Expected Behavior Violation vulnerability in Linux Kernel
A flaw was found in the KVM's AMD nested virtualization (SVM).
local
low complexity
linux CWE-440
5.5
2022-10-18 CVE-2022-3594 Improper Resource Shutdown or Release vulnerability in multiple products
A vulnerability was found in Linux Kernel.
network
low complexity
linux debian CWE-404
5.3
2022-10-18 CVE-2022-3595 Double Free vulnerability in Linux Kernel
A vulnerability was found in Linux Kernel.
local
low complexity
linux CWE-415
5.5
2022-10-17 CVE-2022-3543 Memory Leak vulnerability in Linux Kernel
A vulnerability, which was classified as problematic, has been found in Linux Kernel.
local
low complexity
linux CWE-401
5.5
2022-10-14 CVE-2022-42721 Infinite Loop vulnerability in multiple products
A list management bug in BSS handling in the mac80211 stack in the Linux kernel 5.1 through 5.19.x before 5.19.16 could be used by local attackers (able to inject WLAN frames) to corrupt a linked list and, in turn, potentially execute code.
local
low complexity
linux fedoraproject debian CWE-835
5.5
2022-10-14 CVE-2022-42722 NULL Pointer Dereference vulnerability in multiple products
In the Linux kernel 5.8 through 5.19.x before 5.19.16, local attackers able to inject WLAN frames into the mac80211 stack could cause a NULL pointer dereference denial-of-service attack against the beacon protection of P2P devices.
local
low complexity
linux fedoraproject debian CWE-476
5.5
2022-09-30 CVE-2022-41848 Use After Free vulnerability in Linux Kernel
drivers/char/pcmcia/synclink_cs.c in the Linux kernel through 5.19.12 has a race condition and resultant use-after-free if a physically proximate attacker removes a PCMCIA device while calling ioctl, aka a race condition between mgslpc_ioctl and mgslpc_detach.
high complexity
linux CWE-416
4.2
2022-09-30 CVE-2022-41849 Use After Free vulnerability in multiple products
drivers/video/fbdev/smscufx.c in the Linux kernel through 5.19.12 has a race condition and resultant use-after-free if a physically proximate attacker removes a USB device while calling open(), aka a race condition between ufx_ops_open and ufx_usb_disconnect.
high complexity
linux debian CWE-416
4.2
2022-09-30 CVE-2022-41850 Use After Free vulnerability in multiple products
roccat_report_event in drivers/hid/hid-roccat.c in the Linux kernel through 5.19.12 has a race condition and resultant use-after-free in certain situations where a report is received while copying a report->value is in progress.
local
high complexity
linux debian CWE-416
4.7
2022-09-23 CVE-2022-2785 Out-of-bounds Read vulnerability in Linux Kernel
There exists an arbitrary memory read within the Linux Kernel BPF - Constants provided to fill pointers in structs passed in to bpf_sys_bpf are not verified and can point anywhere, including memory not owned by BPF.
local
low complexity
linux CWE-125
5.5