Vulnerability index

Browse CVEs

602 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Linux Kernel HIGH 7.8
CVE-2022-3577

An out-of-bounds memory write flaw was found in the Linux kernel’s Kid-friendly Wired Controller driver. This flaw allows a local user to crash or po…

Fix: 5.4.198 / 5.10.121+
Fix from $1,950 2022-10-20
Linux Kernel HIGH 8.1
CVE-2022-41674

An issue was discovered in the Linux kernel before 5.19.16. Attackers able to inject WLAN frames could cause a buffer overflow in the ieee80211_bss_i…

Fix: 5.4.218 / 5.10.148+
Fix from $1,950 2022-10-14
Linux Kernel HIGH 7.8
CVE-2022-2964

A flaw was found in the Linux kernel’s driver for the ASIX AX88179_178A-based USB 2.0/3.0 Gigabit Ethernet Devices. The vulnerability contains multip…

Fix: 5.4.180 / 5.10.101+
Fix from $1,950 2022-09-09
Linux Kernel MEDIUM 5.5
CVE-2022-36280

An out-of-bounds(OOB) memory access vulnerability was found in vmwgfx driver in drivers/gpu/vmxgfx/vmxgfx_kms.c in GPU component in the Linux kernel …

Fix: after 5.13.0-52
Fix from $1,600 2022-09-09
Linux Kernel HIGH 7.0
CVE-2022-3028

A race condition was found in the Linux kernel's IP framework for transforming packets (XFRM subsystem) when multiple calls to xfrm_probe_algs occurr…

Fix: 4.9.327 / 4.14.292+
Fix from $1,950 2022-08-31
Linux Kernel MEDIUM 6.7
CVE-2022-2991

A heap-based buffer overflow was found in the Linux kernel's LightNVM subsystem. The issue results from the lack of proper validation of the length o…

Fix: 5.15+
Fix from $1,600 2022-08-25
Linux Kernel MEDIUM 6.8
CVE-2021-33656

When setting font with malicous data by ioctl cmd PIO_FONT,kernel will write memory out of bounds.

Fix: 5.10.127+
Fix from $1,600 2022-07-18
Linux Kernel MEDIUM 6.7
CVE-2021-33655

When sending malicous data to kernel by ioctl cmd FBIOPUT_VSCREENINFO,kernel will write memory out of bounds.

Fix: 5.19+
Fix from $1,600 2022-07-18
Linux Kernel MEDIUM 5.5
CVE-2022-2380

The Linux kernel was found vulnerable out of bounds memory access in the drivers/video/fbdev/sm712fb.c:smtcfb_read() function. The vulnerability coul…

Fix: 5.18+
Fix from $1,600 2022-07-13
Linux Kernel HIGH 7.8
CVE-2022-1943

A flaw out of bounds memory write in the Linux kernel UDF file system functionality was found in the way user triggers some file operation which trig…

Fix: 5.15.40 / 5.17.8+
Fix from $1,950 2022-06-02
Linux Kernel MEDIUM 6.7
CVE-2022-20105

In MM service, there is a possible out of bounds write due to a stack-based buffer overflow. This could lead to local escalation of privilege with Sy…

Mitigation only
Fix from $1,600 2022-05-03
Linux Kernel MEDIUM 6.7
CVE-2022-20106

In MM service, there is a possible out of bounds write due to a heap-based buffer overflow. This could lead to local escalation of privilege with Sys…

Mitigation only
Fix from $1,600 2022-05-03
Linux Kernel MEDIUM 6.7
CVE-2022-20108

In voice service, there is a possible out of bounds write due to a stack-based buffer overflow. This could lead to local escalation of privilege with…

Mitigation only
Fix from $1,600 2022-05-03
Linux Kernel MEDIUM 6.6
CVE-2022-1015

A flaw was found in the Linux kernel in linux/net/netfilter/nf_tables_api.c of the netfilter subsystem. This flaw allows a local user to cause an out…

Fix: 5.16.18+
Fix from $1,600 2022-04-29
Linux Kernel HIGH 8.8
CVE-2022-0435EPSS 68%

A stack overflow flaw was found in the Linux kernel's TIPC protocol functionality in the way a user sends a packet with malicious content where the n…

Fix: 4.9.301 / 4.14.266+
Fix from $1,950 2022-03-25
Linux Kernel HIGH 7.8
CVE-2022-0500

A flaw was found in unrestricted eBPF usage by the BPF_BTF_LOAD, leading to a possible out-of-bounds memory write in the Linux kernel’s BPF subsystem…

Fix: 5.15.37 / 5.16.11+
Fix from $1,950 2022-03-25
Linux Kernel HIGH 7.8
CVE-2022-0995EPSS 6%

An out-of-bounds (OOB) memory write flaw was found in the Linux kernel’s watch_queue event notification subsystem. This flaw can overwrite parts of t…

Fix: 5.10.106 / 5.15.29+
Fix from $1,950 2022-03-25
Linux Kernel HIGH 7.8
CVE-2022-27666EPSS 6%

A heap buffer overflow flaw was found in IPsec ESP transformation code in net/ipv4/esp4.c and net/ipv6/esp6.c. This flaw allows a local attacker with…

Fix: 5.17+
Fix from $1,950 2022-03-23
Linux Kernel HIGH 8.8
CVE-2021-4093

A flaw was found in the KVM's AMD code for supporting the Secure Encrypted Virtualization-Encrypted State (SEV-ES). A KVM guest using SEV-ES can trig…

Fix: 5.14.16+
Fix from $1,950 2022-02-18
Linux Kernel HIGH 7.1
CVE-2021-4090

An out-of-bounds (OOB) memory write flaw was found in the NFSD in the Linux kernel. Missing sanity may lead to a write beyond bmval[bmlen-1] in nfsd4…

Fix: 5.16+
Fix from $1,950 2022-02-18
Linux Kernel MEDIUM 6.7
CVE-2021-43975

In the Linux kernel through 5.15.2, hw_atl_utils_fw_rpc_wait in drivers/net/ethernet/aquantia/atlantic/hw_atl/hw_atl_utils.c allows an attacker (who …

Fix: after 5.15.2
Fix from $1,600 2021-11-17
Linux Kernel MEDIUM 6.7
CVE-2021-42327

dp_link_settings_write in drivers/gpu/drm/amd/display/amdgpu_dm/amdgpu_dm_debugfs.c in the Linux kernel through 5.14.14 allows a heap-based buffer ov…

Fix: after 5.14.14
Fix from $1,600 2021-10-21
Linux Kernel MEDIUM 6.7
CVE-2021-42739

The firewire subsystem in the Linux kernel through 5.14.13 has a buffer overflow related to drivers/media/firewire/firedtv-avc.c and drivers/media/fi…

Fix: after 5.14.13
Fix from $1,600 2021-10-20
Linux Kernel HIGH 7.8
CVE-2021-42008

The decode_data function in drivers/net/hamradio/6pack.c in the Linux kernel before 5.13.13 has a slab out-of-bounds write. Input from a process that…

Fix: 4.4.282 / 4.9.281+
Fix from $1,950 2021-10-05
Linux Kernel HIGH 7.8
CVE-2021-38166

In kernel/bpf/hashtab.c in the Linux kernel through 5.13.8, there is an integer overflow and out-of-bounds write when many elements are placed in a s…

Fix: 5.10.60 / 5.13.12+
Fix from $1,950 2021-08-07
Linux Kernel HIGH 7.8
CVE-2021-37576

arch/powerpc/kvm/book3s_rtas.c in the Linux kernel through 5.13.5 on the powerpc platform allows KVM guest OS users to cause host OS memory corruptio…

Fix: 4.4.277 / 4.9.277+
Fix from $1,950 2021-07-26
Linux Kernel HIGH 7.8
CVE-2021-33909EPSS 10%

fs/seq_file.c in the Linux kernel 3.16 through 5.13.x before 5.13.4 does not properly restrict seq buffer allocations, leading to an integer overflow…

Fix: 3.13 / 4.4.276+
Fix from $1,950 2021-07-20
Linux Kernel HIGH 7.8
CVE-2021-3612

An out-of-bounds memory write flaw was found in the Linux kernel's joystick devices subsystem in versions before 5.9-rc1, in the way the user calls i…

Fix: 5.9.0+
Fix from $1,950 2021-07-09
Linux Kernel HIGH 7.8
CVE-2021-22555 KEVEPSS 79%

A heap out-of-bounds write affecting Linux since v2.6.19-rc1 was discovered in net/netfilter/x_tables.c. This allows an attacker to gain privileges o…

Fix: 4.4.267 / 4.9.267+
Fix from $1,950 2021-07-07
Linux Kernel HIGH 8.8
CVE-2021-3491

The io_uring subsystem in the Linux kernel allowed the MAX_RW_COUNT limit to be bypassed in the PROVIDE_BUFFERS operation, which led to negative valu…

Fix: 5.10.37 / 5.11.21+
Fix from $1,950 2021-06-04