Vulnerability index

Browse CVEs

244 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Race ConditionCWE-362 × clear
Linux Kernel MEDIUM 6.4
CVE-2022-44033

An issue was discovered in the Linux kernel through 6.0.6. drivers/char/pcmcia/cm4040_cs.c has a race condition and resultant use-after-free if a phy…

Fix: after 6.0.6
Fix from $1,600 2022-10-30
Linux Kernel MEDIUM 6.4
CVE-2022-44034

An issue was discovered in the Linux kernel through 6.0.6. drivers/char/pcmcia/scr24x_cs.c has a race condition and resultant use-after-free if a phy…

Fix: after 6.0.6
Fix from $1,600 2022-10-30
Linux Kernel HIGH 7.0
CVE-2022-3635

A vulnerability, which was classified as critical, has been found in Linux Kernel. Affected by this issue is the function tst_timer of the file drive…

Fix: 4.9.326 / 4.14.291+
Fix from $1,950 2022-10-21
Linux Kernel HIGH 7.5
CVE-2022-3623

A vulnerability was found in Linux Kernel. It has been declared as problematic. Affected by this vulnerability is the function follow_page_pte of the…

Fix: 5.4.228 / 5.10.159+
Fix from $1,950 2022-10-20
Linux Kernel HIGH 7.1
CVE-2022-3564

A vulnerability classified as critical was found in Linux Kernel. Affected by this vulnerability is the function l2cap_reassemble_sdu of the file net…

Fix: 4.9.333 / 4.14.299+
Fix from $1,950 2022-10-17
Linux Kernel HIGH 7.1
CVE-2022-3566

A vulnerability was identified in Linux Kernel up to 4.19.316/5.4.278/5.10.220/5.15.161. This impacts the function tcp_getsockopt/tcp_setsockopt of t…

Patch available
Fix from $1,950 2022-10-17
Linux Kernel MEDIUM 6.4
CVE-2022-3567

A vulnerability has been found in Linux Kernel and classified as problematic. This vulnerability affects the function inet6_stream_ops/inet6_dgram_op…

Patch available
Fix from $1,600 2022-10-17
Linux Kernel HIGH 7.0
CVE-2022-1729

A race condition was found the Linux kernel in perf_event_open() which can be exploited by an unprivileged user to gain root privileges. The bug allo…

Fix: 3.3 / 3.17+
Fix from $1,950 2022-09-01
Linux Kernel HIGH 7.0
CVE-2022-2590

A race condition was found in the way the Linux kernel's memory subsystem handled the copy-on-write (COW) breakage of private read-only shared memory…

Fix: 5.19.6+
Fix from $1,950 2022-08-31
Linux Kernel HIGH 7.0
CVE-2022-3028

A race condition was found in the Linux kernel's IP framework for transforming packets (XFRM subsystem) when multiple calls to xfrm_probe_algs occurr…

Fix: 4.9.327 / 4.14.292+
Fix from $1,950 2022-08-31
Linux Kernel HIGH 7.0
CVE-2022-1247

An issue found in linux-kernel that leads to a race condition in rose_connect(). The rose driver uses rose_neigh->use to represent how many objects a…

No fix yet
Fix from $1,950 2022-08-31
Linux Kernel HIGH 7.0
CVE-2022-2961

A use-after-free flaw was found in the Linux kernel’s PLP Rose functionality in the way a user triggers a race condition by calling bind while simult…

Fix: 6.0+
Fix from $1,950 2022-08-29
Linux Kernel HIGH 7.0
CVE-2022-2959

A race condition was found in the Linux kernel's watch queue due to a missing lock in pipe_resize_ring(). The specific flaw exists within the handlin…

Fix: 5.10.120 / 5.15.45+
Fix from $1,950 2022-08-25
Linux Kernel MEDIUM 5.1
CVE-2020-36558

A race condition in the Linux kernel before 5.5.7 involving VT_RESIZEX could lead to a NULL pointer dereference and general protection fault.

Fix: 5.5.7+
Fix from $1,600 2022-07-21
Linux Kernel MEDIUM 5.1
CVE-2020-36557

A race condition in the Linux kernel before 5.6.2 between the VT_DISALLOCATE ioctl and closing/opening of ttys could lead to a use-after-free.

Fix: 5.6.2+
Fix from $1,600 2022-07-21
Linux Kernel MEDIUM 6.3
CVE-2022-1462

An out-of-bounds read flaw was found in the Linux kernel’s TeleTYpe subsystem. The issue occurs in how a user triggers a race condition using ioctls …

No fix yet
Fix from $1,600 2022-06-02
Linux Kernel HIGH 7.0
CVE-2022-1048

A use-after-free flaw was found in the Linux kernel’s sound subsystem in the way a user triggers concurrent calls of PCM hw_params. The hw_free ioctl…

Fix: 4.14.279 / 4.19.243+
Fix from $1,950 2022-04-29
Linux Kernel MEDIUM 5.5
CVE-2022-1195

A use-after-free vulnerability was found in the Linux kernel in drivers/net/hamradio. This flaw allows a local attacker with a user privilege to caus…

Fix: 5.16+
Fix from $1,600 2022-04-29
Linux Kernel HIGH 7.0
CVE-2022-29582

In the Linux kernel before 5.17.3, fs/io_uring.c has a use-after-free due to a race condition in io_uring timeouts. This can be triggered by a local …

Fix: 5.10.111 / 5.15.34+
Fix from $1,950 2022-04-22
Linux Kernel HIGH 7.0
CVE-2022-28796

jbd2_journal_wait_updates in fs/jbd2/transaction.c in the Linux kernel before 5.17.1 has a use-after-free caused by a transaction_t race condition.

Fix: 5.17.1+
Fix from $1,950 2022-04-08
Linux Kernel HIGH 7.0
CVE-2021-4202

A use-after-free flaw was found in nci_request in net/nfc/nci/core.c in NFC Controller Interface (NCI) in the Linux kernel. This flaw could allow a l…

Fix: 4.4.294 / 4.9.292+
Fix from $1,950 2022-03-25
Linux Kernel MEDIUM 6.8
CVE-2021-4203

A use-after-free read flaw was found in sock_getsockopt() in net/core/sock.c due to SO_PEERCRED and SO_PEERGROUPS race with listen() (and connect()) …

Fix: 5.15+
Fix from $1,600 2022-03-25
Linux Kernel HIGH 7.0
CVE-2021-3640

A flaw use-after-free in function sco_sock_sendmsg() of the Linux kernel HCI subsystem was found in the way user calls ioct UFFDIO_REGISTER or other …

Fix: 4.4.293 / 4.9.291+
Fix from $1,950 2022-03-03
Linux Kernel HIGH 7.0
CVE-2021-3609

.A flaw was found in the CAN BCM networking protocol in the Linux kernel, where a local attacker can abuse a flaw in the CAN subsystem to corrupt mem…

Fix: 4.4.276 / 4.9.276+
Fix from $1,950 2022-03-03
Linux Kernel HIGH 7.1
CVE-2021-3752

A use-after-free flaw was found in the Linux kernel’s Bluetooth subsystem in the way user calls connect to the socket and disconnect simultaneously d…

Fix: 4.4.293 / 4.9.291+
Fix from $1,950 2022-02-16
Linux Kernel HIGH 7.0
CVE-2021-4083

A read-after-free memory flaw was found in the Linux kernel's garbage collection for Unix domain socket file handlers in the way users call close() a…

Fix: 4.4.294 / 4.9.292+
Fix from $1,950 2022-01-18
Linux Kernel HIGH 7.0
CVE-2021-44733

A use-after-free exists in drivers/tee/tee_shm.c in the TEE subsystem in the Linux kernel through 5.15.11. This occurs because of a race condition in…

Fix: 4.14.261 / 4.19.224+
Fix from $1,950 2021-12-22
Linux Kernel MEDIUM 6.4
CVE-2021-0920 KEV

In unix_scm_to_skb of af_unix.c, there is a possible use after free bug due to a race condition. This could lead to local escalation of privilege wit…

Fix: after 5.13
Fix from $1,600 2021-12-15
Linux Kernel HIGH 7.0
CVE-2021-40490

A race condition was discovered in ext4_write_inline_data_end in fs/ext4/inline.c in the ext4 subsystem in the Linux kernel through 5.13.13.

Fix: 4.4.284 / 4.9.283+
Fix from $1,950 2021-09-03
Linux Kernel MEDIUM 6.4
CVE-2021-3573

A use-after-free in function hci_sock_bound_ioctl() of the Linux kernel HCI subsystem was found in the way user calls ioct HCIUNBLOCKADDR or other wa…

Fix: 5.13+
Fix from $1,600 2021-08-13