Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于cachefiles_set_volume_xattr未正确使用卷一致性数据的实际长度,可能导致KASAN越界访问。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | 413a4a6b0b5553f2423d210f65e98c211b99c3f8< 09a5df1b88c8f126c8ff9938edf160edd4e92f42 |
affected |
413a4a6b0b5553f2423d210f65e98c211b99c3f8< 7b2f6c306601240635c72caa61f682e74d4591b2 |
affected | ||
5.17 |
affected | ||
< 5.17 |
unaffected | ||
5.17.4≤ 5.17.* |
unaffected | ||
5.18≤ * |
unaffected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2022-49561 | 9.8 CRITICAL | netfilter: conntrack: re-fetch conntrack after insertion |
| CVE-2022-49149 | 9.8 CRITICAL | rxrpc: Fix call timer start racing with call destruction |
| CVE-2022-49356 | 9.8 CRITICAL | SUNRPC: Trap RDMA segment overflows |
| CVE-2022-49407 | 9.8 CRITICAL | dlm: fix plock invalid read |
| CVE-2022-49362 | 9.8 CRITICAL | NFSD: Fix potential use-after-free in nfsd_file_put() |
| CVE-2022-49280 | 9.8 CRITICAL | NFSD: prevent underflow in nfssvc_decode_writeargs() |
| CVE-2022-49260 | 9.8 CRITICAL | crypto: hisilicon/sec - fix the aead software fallback for engine |
| CVE-2022-49418 | 9.8 CRITICAL | NFSv4: Fix free of uninitialized nfs4_label on referral lookup. |
| CVE-2022-49201 | 9.8 CRITICAL | ibmvnic: fix race between xmit and reset |
| CVE-2022-49194 | 9.8 CRITICAL | net: bcmgenet: Use stronger register read/writes to assure ordering |
| CVE-2022-49093 | 9.8 CRITICAL | skbuff: fix coalescing for page_pool fragment recycling |
| CVE-2022-49094 | 9.8 CRITICAL | net/tls: fix slab-out-of-bounds bug in decrypt_internal |
| CVE-2022-49058 | 9.1 CRITICAL | cifs: potential buffer overflow in handling symlinks |
| CVE-2022-49111 | 8.8 HIGH | Bluetooth: Fix use after free in hci_send_acl |
| CVE-2022-49535 | 8.8 HIGH | scsi: lpfc: Fix null pointer dereference after failing to issue FLOGI and PLOGI |
| CVE-2022-49238 | 8.8 HIGH | ath11k: free peer for station when disconnect from AP for QCA6390/WCN6855 |
| CVE-2022-49519 | 8.8 HIGH | ath10k: skip ath10k_halt during suspend for driver state RESTARTING |
| CVE-2022-49138 | 8.8 HIGH | Bluetooth: hci_event: Ignore multiple conn complete events |
| CVE-2022-49471 | 8.8 HIGH | rtw89: cfo: check mac_id to avoid out-of-bounds |
| CVE-2022-49159 | 8.8 HIGH | scsi: qla2xxx: Implement ref count for SRB |
Showing top 20 of 706 CVEs. View all on vendor page → →
No comments yet