Vulnerabilities > Linux > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-04-05 CVE-2023-1855 Use After Free vulnerability in multiple products
A use-after-free flaw was found in xgene_hwmon_remove in drivers/hwmon/xgene-hwmon.c in the Hardware Monitoring Linux Kernel Driver (xgene-hwmon).
local
high complexity
linux debian CWE-416
6.3
2023-04-03 CVE-2023-1611 Use After Free vulnerability in multiple products
A use-after-free flaw was found in btrfs_search_slot in fs/btrfs/ctree.c in btrfs in the Linux Kernel.This flaw allows an attacker to crash the system and possibly cause a kernel information lea
local
high complexity
fedoraproject linux CWE-416
6.3
2023-03-29 CVE-2022-42432 Unspecified vulnerability in Linux Kernel 6.0
This vulnerability allows local attackers to disclose sensitive information on affected installations of the Linux Kernel 6.0-rc2.
local
low complexity
linux
4.4
2023-03-27 CVE-2023-1637 Improper Cross-boundary Removal of Sensitive Data vulnerability in Linux Kernel 5.18
A flaw that boot CPU could be vulnerable for the speculative execution behavior kind of attacks in the Linux kernel X86 CPU Power management options functionality was found in the way user resuming CPU from suspend-to-RAM.
local
low complexity
linux CWE-212
5.5
2023-03-27 CVE-2023-1073 Out-of-bounds Write vulnerability in multiple products
A memory corruption flaw was found in the Linux kernel’s human interface device (HID) subsystem in how a user inserts a malicious USB device.
6.6
2023-03-27 CVE-2023-1074 Memory Leak vulnerability in Linux Kernel
A memory leak flaw was found in the Linux kernel's Stream Control Transmission Protocol.
local
low complexity
linux CWE-401
5.5
2023-03-27 CVE-2023-1076 Type Confusion vulnerability in Linux Kernel
A flaw was found in the Linux Kernel.
local
low complexity
linux CWE-843
5.5
2023-03-27 CVE-2023-1079 Use After Free vulnerability in Linux Kernel
A flaw was found in the Linux kernel.
low complexity
linux CWE-416
6.8
2023-03-27 CVE-2023-28866 Out-of-bounds Read vulnerability in Linux Kernel
In the Linux kernel through 6.2.8, net/bluetooth/hci_sync.c allows out-of-bounds access because amp_init1[] and amp_init2[] are supposed to have an intentionally invalid element, but do not.
network
low complexity
linux CWE-125
5.3
2023-03-24 CVE-2023-1583 NULL Pointer Dereference vulnerability in Linux Kernel
A NULL pointer dereference was found in io_file_bitmap_get in io_uring/filetable.c in the io_uring sub-component in the Linux Kernel.
local
low complexity
linux CWE-476
5.5