Vulnerabilities > Linux > Low

DATE CVE VULNERABILITY TITLE RISK
2022-06-18 CVE-2022-33981 Use After Free vulnerability in Linux Kernel
drivers/block/floppy.c in the Linux kernel before 5.17.6 is vulnerable to a denial of service, because of a concurrency use-after-free flaw after deallocating raw_cmd in the raw_cmd_ioctl function.
local
low complexity
linux CWE-416
2.1
2022-06-05 CVE-2022-32296 Information Exposure Through Discrepancy vulnerability in Linux Kernel
The Linux kernel before 5.17.9 allows TCP servers to identify clients by observing what source ports are used.
local
low complexity
linux CWE-203
2.1
2022-06-02 CVE-2022-1462 Race Condition vulnerability in multiple products
An out-of-bounds read flaw was found in the Linux kernel’s TeleTYpe subsystem.
3.3
2022-04-29 CVE-2022-1195 Use After Free vulnerability in multiple products
A use-after-free vulnerability was found in the Linux kernel in drivers/net/hamradio.
local
low complexity
linux debian CWE-416
2.1
2022-04-29 CVE-2022-1353 A vulnerability was found in the pfkey_register function in net/key/af_key.c in the Linux kernel.
local
low complexity
linux debian redhat
3.6
2022-04-18 CVE-2011-4917 Unspecified vulnerability in Linux Kernel
In the Linux kernel through 3.1 there is an information disclosure issue via /proc/stat.
local
low complexity
linux
2.1
2022-04-13 CVE-2022-1280 Use After Free vulnerability in multiple products
A use-after-free vulnerability was found in drm_lease_held in drivers/gpu/drm/drm_lease.c in the Linux kernel due to a race problem.
3.3
2022-03-30 CVE-2020-35501 Incorrect Authorization vulnerability in multiple products
A flaw was found in the Linux kernels implementation of audit rules, where a syscall can unexpectedly not be correctly not be logged by the audit subsystem
local
low complexity
linux redhat CWE-863
3.6
2022-03-28 CVE-2022-27950 Memory Leak vulnerability in Linux Kernel
In drivers/hid/hid-elo.c in the Linux kernel before 5.16.11, a memory leak exists for a certain hid_parse error condition.
local
low complexity
linux CWE-401
2.1
2022-03-25 CVE-2022-0322 Incorrect Type Conversion or Cast vulnerability in multiple products
A flaw was found in the sctp_make_strreset_req function in net/sctp/sm_make_chunk.c in the SCTP network protocol in the Linux kernel with a local user privilege access.
local
low complexity
linux fedoraproject CWE-704
2.1