Vulnerabilities > Linux > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-06-30 CVE-2022-2078 A vulnerability was found in the Linux kernel's nft_set_desc_concat_parse() function .This flaw allows an attacker to trigger a buffer overflow via nft_set_desc_concat_parse() , causing a denial of service and possibly to run code.
local
low complexity
linux redhat debian
5.5
2022-06-26 CVE-2022-34494 Double Free vulnerability in Linux Kernel
rpmsg_virtio_add_ctrl_dev in drivers/rpmsg/virtio_rpmsg_bus.c in the Linux kernel before 5.18.4 has a double free.
local
low complexity
linux CWE-415
5.5
2022-06-26 CVE-2022-34495 Double Free vulnerability in Linux Kernel
rpmsg_probe in drivers/rpmsg/virtio_rpmsg_bus.c in the Linux kernel before 5.18.4 has a double free.
local
low complexity
linux CWE-415
5.5
2022-06-02 CVE-2022-1462 An out-of-bounds read flaw was found in the Linux kernel’s TeleTYpe subsystem.
local
high complexity
linux redhat debian
6.3
2022-06-02 CVE-2022-1789 NULL Pointer Dereference vulnerability in multiple products
With shadow paging enabled, the INVPCID instruction results in a call to kvm_mmu_invpcid_gva.
6.8
2022-05-05 CVE-2022-1516 NULL Pointer Dereference vulnerability in multiple products
A NULL pointer dereference flaw was found in the Linux kernel’s X.25 set of standardized network protocols functionality in the way a user terminates their session using a simulated Ethernet card and continued usage of this connection.
local
low complexity
linux debian CWE-476
5.5
2022-05-03 CVE-2022-20105 Out-of-bounds Write vulnerability in multiple products
In MM service, there is a possible out of bounds write due to a stack-based buffer overflow.
local
low complexity
google linux CWE-787
6.7
2022-05-03 CVE-2022-20106 Out-of-bounds Write vulnerability in multiple products
In MM service, there is a possible out of bounds write due to a heap-based buffer overflow.
local
low complexity
google linux CWE-787
6.7
2022-05-03 CVE-2022-20107 Integer Overflow or Wraparound vulnerability in multiple products
In subtitle service, there is a possible application crash due to an integer overflow.
local
low complexity
google linux CWE-190
4.4
2022-05-03 CVE-2022-20108 Out-of-bounds Write vulnerability in multiple products
In voice service, there is a possible out of bounds write due to a stack-based buffer overflow.
local
low complexity
google linux CWE-787
6.7