Aggregator
CVE-2025-0731 | SMA Sunnyportal prior 19.02.2024 unrestricted upload (VDE-2025-012)
9 months 2 weeks ago
A vulnerability was found in SMA Sunnyportal. It has been rated as critical. This issue affects some unknown processing. The manipulation leads to unrestricted upload.
The identification of this vulnerability is CVE-2025-0731. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-49253 | Linux Kernel up to 5.17.1 probe memory leak
9 months 2 weeks ago
A vulnerability was found in Linux Kernel up to 5.17.1. It has been declared as critical. This vulnerability affects the function probe. The manipulation leads to memory leak.
This vulnerability was named CVE-2022-49253. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-49541 | Linux Kernel up to 5.15.45/5.17.13/5.18.2 double free
9 months 2 weeks ago
A vulnerability was found in Linux Kernel up to 5.15.45/5.17.13/5.18.2. It has been classified as problematic. This affects an unknown part. The manipulation leads to double free.
This vulnerability is uniquely identified as CVE-2022-49541. Access to the local network is required for this attack to succeed. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-49117 | Linux Kernel up to 5.4.188/5.10.110/5.15.33/5.16.19/5.17.2 ill_acc_of_setup reference count
9 months 2 weeks ago
A vulnerability was found in Linux Kernel up to 5.4.188/5.10.110/5.15.33/5.16.19/5.17.2 and classified as critical. Affected by this issue is the function ill_acc_of_setup. The manipulation leads to improper update of reference count.
This vulnerability is handled as CVE-2022-49117. Access to the local network is required for this attack. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-49219 | Linux Kernel up to 5.15.32/5.16.18/5.17.1 pci_store_saved_state memory leak
9 months 2 weeks ago
A vulnerability has been found in Linux Kernel up to 5.15.32/5.16.18/5.17.1 and classified as critical. Affected by this vulnerability is the function pci_store_saved_state. The manipulation leads to memory leak.
This vulnerability is known as CVE-2022-49219. Attacking locally is a requirement. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-47643 | Linux Kernel up to 5.10.109/5.15.32/5.16.18/5.17.1 ir_toy Privilege Escalation
9 months 2 weeks ago
A vulnerability, which was classified as problematic, was found in Linux Kernel up to 5.10.109/5.15.32/5.16.18/5.17.1. Affected is an unknown function of the component ir_toy. The manipulation leads to Privilege Escalation.
This vulnerability is traded as CVE-2021-47643. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-49406 | Linux Kernel up to 5.17.13/5.18.2 blk_ia_range_sysfs_show reference count
9 months 2 weeks ago
A vulnerability, which was classified as critical, has been found in Linux Kernel up to 5.17.13/5.18.2. This issue affects the function blk_ia_range_sysfs_show. The manipulation leads to improper update of reference count.
The identification of this vulnerability is CVE-2022-49406. The attack can only be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-49118 | Linux Kernel up to 5.10.110/5.15.33/5.16.19/5.17.2 drivers/pci/msi.c free_irq information disclosure
9 months 2 weeks ago
A vulnerability classified as problematic was found in Linux Kernel up to 5.10.110/5.15.33/5.16.19/5.17.2. This vulnerability affects the function free_irq of the file drivers/pci/msi.c. The manipulation leads to information disclosure.
This vulnerability was named CVE-2022-49118. The attack can only be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-49175 | Linux Kernel up to 5.17.1 device_pm_check_callbacks state issue
9 months 2 weeks ago
A vulnerability classified as problematic has been found in Linux Kernel up to 5.17.1. This affects the function device_pm_check_callbacks. The manipulation leads to state issue.
This vulnerability is uniquely identified as CVE-2022-49175. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-49628 | Linux Kernel up to 5.15.55/5.18.12 stmmac memory leak
9 months 2 weeks ago
A vulnerability was found in Linux Kernel up to 5.15.55/5.18.12. It has been rated as critical. Affected by this issue is some unknown functionality of the component stmmac. The manipulation leads to memory leak.
This vulnerability is handled as CVE-2022-49628. Access to the local network is required for this attack to succeed. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-49229 | Linux Kernel up to 5.15.32/5.16.18/5.17.1 memory corruption
9 months 2 weeks ago
A vulnerability was found in Linux Kernel up to 5.15.32/5.16.18/5.17.1. It has been declared as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to memory corruption.
This vulnerability is known as CVE-2022-49229. Access to the local network is required for this attack. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Hundreds of GitHub repos served up malware for years
9 months 2 weeks ago
Kaspersky researchers have unearthed an extensive and long-running malware delivery campaign that exploited users’ propensity for downloading code from GitHub and using it without first verifying whether it’s malicious. “Over the course of the GitVenom campaign, the threat actors behind it have created hundreds of repositories on GitHub that contain fake projects with malicious code – for example, an automation instrument for interacting with Instagram accounts, a Telegram bot allowing to manage Bitcoin wallets, and … More →
The post Hundreds of GitHub repos served up malware for years appeared first on Help Net Security.
Zeljka Zorz
CVE-2022-49085 | Linux Kernel up to 5.17.2 genlmsg_put use after free
9 months 2 weeks ago
A vulnerability was found in Linux Kernel up to 5.17.2. It has been classified as critical. Affected is the function genlmsg_put. The manipulation leads to use after free.
This vulnerability is traded as CVE-2022-49085. The attack needs to be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-49082 | Linux Kernel up to 5.15.33/5.16.19/5.17.2 _scsih_expander_node_remove local use after free
9 months 2 weeks ago
A vulnerability was found in Linux Kernel up to 5.15.33/5.16.19/5.17.2 and classified as critical. This issue affects the function _scsih_expander_node_remove. The manipulation of the argument local leads to use after free.
The identification of this vulnerability is CVE-2022-49082. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-49081 | Linux Kernel up to 5.15.33/5.16.19/5.17.2 mm/highmem.c initialization
9 months 2 weeks ago
A vulnerability has been found in Linux Kernel up to 5.15.33/5.16.19/5.17.2 and classified as problematic. This vulnerability affects unknown code of the file mm/highmem.c. The manipulation leads to improper initialization.
This vulnerability was named CVE-2022-49081. The attack can only be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-49080 | Linux Kernel up to 5.17.2 mpol_new initialization
9 months 2 weeks ago
A vulnerability, which was classified as problematic, was found in Linux Kernel up to 5.17.2. This affects the function mpol_new. The manipulation leads to improper initialization.
This vulnerability is uniquely identified as CVE-2022-49080. The attack can only be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-47633 | Linux Kernel up to 5.17.2 out-of-bounds
9 months 2 weeks ago
A vulnerability, which was classified as problematic, has been found in Linux Kernel up to 5.17.2. Affected by this issue is some unknown functionality. The manipulation leads to out-of-bounds read.
This vulnerability is handled as CVE-2021-47633. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-49731 | Linux Kernel up to 5.18.5 ata_host_alloc_pinfo ppi null pointer dereference
9 months 2 weeks ago
A vulnerability classified as critical was found in Linux Kernel up to 5.18.5. Affected by this vulnerability is the function ata_host_alloc_pinfo. The manipulation of the argument ppi leads to null pointer dereference.
This vulnerability is known as CVE-2022-49731. Access to the local network is required for this attack to succeed. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-49698 | Linux Kernel up to 5.10.126/5.15.50/5.18.7 smp_processor_id random values
9 months 2 weeks ago
A vulnerability classified as problematic has been found in Linux Kernel up to 5.10.126/5.15.50/5.18.7. Affected is the function smp_processor_id. The manipulation leads to insufficiently random values.
This vulnerability is traded as CVE-2022-49698. Access to the local network is required for this attack. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com