Latest CVE Feed
-
5.5
MEDIUMCVE-2022-3707
A double-free memory flaw was found in the Linux kernel. The Intel GVT-g graphics driver triggers VGA card system resource overload, causing a fail in the intel_gvt_dma_map_guest_page function. This issue could allow a local user to crash the system.... Read more
- Published: Mar. 06, 2023
- Modified: Mar. 07, 2025
-
5.5
MEDIUMCVE-2022-3668
A vulnerability has been found in Axiomatic Bento4 and classified as problematic. This vulnerability affects the function AP4_AtomFactory::CreateAtomFromStream of the component mp4edit. The manipulation leads to memory leak. The attack can be initiated re... Read more
Affected Products : bento4- Published: Oct. 26, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-3644
The collection remote for pulp_ansible stores tokens in plaintext instead of using pulp's encrypted field and exposes them in read/write mode via the API () instead of marking it as write only.... Read more
- Published: Oct. 25, 2022
- Modified: May. 07, 2025
-
5.5
MEDIUMCVE-2022-3595
A vulnerability was found in Linux Kernel. It has been rated as problematic. Affected by this issue is the function sess_free_buffer of the file fs/cifs/sess.c of the component CIFS Handler. The manipulation leads to double free. It is recommended to appl... Read more
Affected Products : linux_kernel- Published: Oct. 18, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-3821
An off-by-one Error issue was discovered in Systemd in format_timespan() function of time-util.c. An attacker could supply specific values for time and accuracy that leads to buffer overrun in format_timespan(), leading to a Denial of Service.... Read more
- Published: Nov. 08, 2022
- Modified: May. 02, 2025
-
5.5
MEDIUMCVE-2024-54540
The issue was addressed with improved input sanitization. This issue is fixed in Apple Music 1.5.0.152 for Windows. Processing maliciously crafted web content may disclose internal states of the app.... Read more
- Published: Jan. 15, 2025
- Modified: Mar. 24, 2025
- Vuln Type: Information Disclosure
-
5.5
MEDIUMCVE-2022-3586
A flaw was found in the Linux kernel’s networking code. A use-after-free was found in the way the sch_sfb enqueue function used the socket buffer (SKB) cb field after the same SKB had been enqueued (and freed) into a child qdisc. This flaw allows a local,... Read more
- Published: Oct. 19, 2022
- Modified: Jun. 25, 2025
-
5.5
MEDIUMCVE-2024-54541
This issue was addressed through improved state management. This issue is fixed in macOS Ventura 13.7.2, visionOS 2.2, tvOS 18.2, watchOS 11.2, iOS 18.2 and iPadOS 18.2, macOS Sonoma 14.7.2, macOS Sequoia 15.2. An app may be able to access user-sensitive ... Read more
- Published: Jan. 27, 2025
- Modified: Mar. 18, 2025
- Vuln Type: Information Disclosure
-
5.5
MEDIUMCVE-2024-54536
The issue was addressed with improved validation of environment variables. This issue is fixed in macOS Sequoia 15.2. An app may be able to edit NVRAM variables.... Read more
Affected Products : macos- Published: Jan. 27, 2025
- Modified: Jan. 31, 2025
- Vuln Type: Misconfiguration
-
5.5
MEDIUMCVE-2022-3524
A vulnerability was found in Linux Kernel. It has been declared as problematic. Affected by this vulnerability is the function ipv6_renew_options of the component IPv6 Handler. The manipulation leads to memory leak. The attack can be launched remotely. It... Read more
- Published: Oct. 16, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2024-54531
The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.2. An app may be able to bypass kASLR.... Read more
Affected Products : macos- Published: Dec. 12, 2024
- Modified: Dec. 16, 2024
-
5.5
MEDIUMCVE-2024-54526
The issue was addressed with improved checks. This issue is fixed in watchOS 11.2, tvOS 18.2, macOS Sequoia 15.2, iOS 18.2 and iPadOS 18.2, macOS Ventura 13.7.2, macOS Sonoma 14.7.2. A malicious app may be able to access private information.... Read more
- Published: Dec. 12, 2024
- Modified: Dec. 16, 2024
-
5.5
MEDIUMCVE-2022-3344
A flaw was found in the KVM's AMD nested virtualization (SVM). A malicious L1 guest could purposely fail to intercept the shutdown of a cooperative nested guest (L2), possibly leading to a page fault and kernel panic in the host (L0).... Read more
Affected Products : linux_kernel- Published: Oct. 25, 2022
- Modified: May. 07, 2025
-
5.5
MEDIUMCVE-2024-54527
This issue was addressed with improved checks. This issue is fixed in watchOS 11.2, tvOS 18.2, macOS Sequoia 15.2, iOS 18.2 and iPadOS 18.2, macOS Ventura 13.7.2, macOS Sonoma 14.7.2. An app may be able to access sensitive user data.... Read more
- Published: Dec. 12, 2024
- Modified: Dec. 16, 2024
-
5.5
MEDIUMCVE-2022-3544
A vulnerability, which was classified as problematic, was found in Linux Kernel. Affected is the function damon_sysfs_add_target of the file mm/damon/sysfs.c of the component Netfilter. The manipulation leads to memory leak. It is recommended to apply a p... Read more
Affected Products : linux_kernel- Published: Oct. 17, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-3115
An issue was discovered in the Linux kernel through 5.16-rc6. malidp_crtc_reset in drivers/gpu/drm/arm/malidp_crtc.c lacks check of the return value of kzalloc() and will cause the null pointer dereference.... Read more
Affected Products : linux_kernel- Published: Dec. 14, 2022
- Modified: Apr. 22, 2025
-
5.5
MEDIUMCVE-2022-3127
Cross-site Scripting (XSS) - Stored in GitHub repository jgraph/drawio prior to 20.2.8.... Read more
Affected Products : drawio- Published: Sep. 05, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-3112
An issue was discovered in the Linux kernel through 5.16-rc6. amvdec_set_canvases in drivers/staging/media/meson/vdec/vdec_helpers.c lacks check of the return value of kzalloc() and will cause the null pointer dereference.... Read more
Affected Products : linux_kernel- Published: Dec. 14, 2022
- Modified: Apr. 22, 2025
-
5.5
MEDIUMCVE-2022-3104
An issue was discovered in the Linux kernel through 5.16-rc6. lkdtm_ARRAY_BOUNDS in drivers/misc/lkdtm/bugs.c lacks check of the return value of kmalloc() and will cause the null pointer dereference.... Read more
Affected Products : linux_kernel- Published: Dec. 14, 2022
- Modified: Apr. 22, 2025
-
5.5
MEDIUMCVE-2022-3114
An issue was discovered in the Linux kernel through 5.16-rc6. imx_register_uart_clocks in drivers/clk/imx/clk.c lacks check of the return value of kcalloc() and will cause the null pointer dereference.... Read more
Affected Products : linux_kernel- Published: Dec. 14, 2022
- Modified: Apr. 22, 2025