Vulnerabilities > Linux > Linux Kernel > High

DATE CVE VULNERABILITY TITLE RISK
2022-11-23 CVE-2022-42896 Use After Free vulnerability in Linux Kernel
There are use-after-free vulnerabilities in the Linux kernel's net/bluetooth/l2cap_core.c's l2cap_connect and l2cap_le_connect_req functions which may allow code execution and leaking kernel memory (respectively) remotely via Bluetooth. A remote attacker could execute code leaking kernel memory via Bluetooth if within proximity of the victim. We recommend upgrading past commit  https://www.google.com/url https://github.com/torvalds/linux/commit/711f8c3fb3db61897080468586b970c87c61d9e4 https://www.google.com/url
low complexity
linux CWE-416
8.8
2022-11-22 CVE-2022-3910 Unspecified vulnerability in Linux Kernel
Use After Free vulnerability in Linux Kernel allows Privilege Escalation.
local
low complexity
linux
7.8
2022-11-14 CVE-2022-3238 Double Free vulnerability in Linux Kernel 6.1
A double-free flaw was found in the Linux kernel’s NTFS3 subsystem in how a user triggers remount and umount simultaneously.
local
low complexity
linux CWE-415
7.8
2022-11-04 CVE-2022-43945 Allocation of Resources Without Limits or Throttling vulnerability in multiple products
The Linux kernel NFSD implementation prior to versions 5.19.17 and 6.0.2 are vulnerable to buffer overflow.
network
low complexity
linux netapp CWE-770
7.5
2022-10-21 CVE-2022-3649 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
A vulnerability was found in Linux Kernel.
local
high complexity
linux debian netapp CWE-119
7.0
2022-10-21 CVE-2022-3640 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
A vulnerability, which was classified as critical, was found in Linux Kernel.
8.8
2022-10-21 CVE-2022-3635 Race Condition vulnerability in multiple products
A vulnerability, which was classified as critical, has been found in Linux Kernel.
local
high complexity
linux debian CWE-362
7.0
2022-10-21 CVE-2022-3636 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
A vulnerability, which was classified as critical, was found in Linux Kernel.
local
low complexity
linux debian CWE-119
7.8
2022-10-21 CVE-2022-3625 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
A vulnerability was found in Linux Kernel.
local
low complexity
linux debian CWE-119
7.8
2022-10-20 CVE-2022-3623 Race Condition vulnerability in multiple products
A vulnerability was found in Linux Kernel.
network
high complexity
linux debian CWE-362
7.5