Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于ext4_mb_mark_bb函数在flex_bg和fast_commit情况下未正确处理块组边界,导致内存越界访问。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | 8016e29f4362e285f0f7e38fadc61a5b7bdfdfa2< cd6d719534af993210306f8a13f9cb3e615f7c8d |
affected |
8016e29f4362e285f0f7e38fadc61a5b7bdfdfa2< 6a6beb074186a0452368a023a261c7d0eaebe838 |
affected | ||
8016e29f4362e285f0f7e38fadc61a5b7bdfdfa2< b07eedd0222e9548ffc568ec429bb1f61d21a39c |
affected | ||
8016e29f4362e285f0f7e38fadc61a5b7bdfdfa2< 803fb0e8240cc16585a5c9df76add1dfaa781773 |
affected | ||
8016e29f4362e285f0f7e38fadc61a5b7bdfdfa2< bfdc502a4a4c058bf4cbb1df0c297761d528f54d |
affected | ||
5.10 |
affected | ||
< 5.10 |
unaffected | ||
5.10.110≤ 5.10.* |
unaffected | ||
| … +4 more rows | |||
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2022-49561 | 9.8 CRITICAL | netfilter: conntrack: re-fetch conntrack after insertion |
| CVE-2022-49194 | 9.8 CRITICAL | net: bcmgenet: Use stronger register read/writes to assure ordering |
| CVE-2022-49356 | 9.8 CRITICAL | SUNRPC: Trap RDMA segment overflows |
| CVE-2022-49407 | 9.8 CRITICAL | dlm: fix plock invalid read |
| CVE-2022-49280 | 9.8 CRITICAL | NFSD: prevent underflow in nfssvc_decode_writeargs() |
| CVE-2022-49201 | 9.8 CRITICAL | ibmvnic: fix race between xmit and reset |
| CVE-2022-49362 | 9.8 CRITICAL | NFSD: Fix potential use-after-free in nfsd_file_put() |
| CVE-2022-49093 | 9.8 CRITICAL | skbuff: fix coalescing for page_pool fragment recycling |
| CVE-2022-49094 | 9.8 CRITICAL | net/tls: fix slab-out-of-bounds bug in decrypt_internal |
| CVE-2022-49418 | 9.8 CRITICAL | NFSv4: Fix free of uninitialized nfs4_label on referral lookup. |
| CVE-2022-49149 | 9.8 CRITICAL | rxrpc: Fix call timer start racing with call destruction |
| CVE-2022-49260 | 9.8 CRITICAL | crypto: hisilicon/sec - fix the aead software fallback for engine |
| CVE-2022-49058 | 9.1 CRITICAL | cifs: potential buffer overflow in handling symlinks |
| CVE-2022-49159 | 8.8 HIGH | scsi: qla2xxx: Implement ref count for SRB |
| CVE-2022-49519 | 8.8 HIGH | ath10k: skip ath10k_halt during suspend for driver state RESTARTING |
| CVE-2022-49500 | 8.8 HIGH | wl1251: dynamically allocate memory used for DMA |
| CVE-2022-49328 | 8.8 HIGH | mt76: fix use-after-free by removing a non-RCU wcid pointer |
| CVE-2022-49238 | 8.8 HIGH | ath11k: free peer for station when disconnect from AP for QCA6390/WCN6855 |
| CVE-2022-49535 | 8.8 HIGH | scsi: lpfc: Fix null pointer dereference after failing to issue FLOGI and PLOGI |
| CVE-2022-49114 | 8.8 HIGH | scsi: libfc: Fix use after free in fc_exch_abts_resp() |
Showing top 20 of 706 CVEs. View all on vendor page → →
No comments yet