Linux kernel是美国等都是美国(Linux)基金会的产品。Linux kernel是开源操作系统Linux所使用的内核。pillarjs send等都是(pillarjs)开源的产品。send是一个用于将文件从文件系统流式传输为 http 响应的库。Rancher rke等都是(Rancher)开源的产品。rke是一个极其简单、闪电般快速的 Kubernetes 安装程序。 Linux kernel存在安全漏洞,该漏洞源于sk_psock_queue_msg函数中的内存泄漏。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | 9635720b7c88592214562cb72605bdab6708006c< ef9785f429794567792561a584901faa9291d3ee |
affected |
9635720b7c88592214562cb72605bdab6708006c< 4dd2e947d3be13a4de3b3028859b9a6497266bcf |
affected | ||
9635720b7c88592214562cb72605bdab6708006c< 03948ed6553960db62f1c33bec29e64d7c191a3f |
affected | ||
9635720b7c88592214562cb72605bdab6708006c< 938d3480b92fa5e454b7734294f12a7b75126f09 |
affected | ||
5.14 |
affected | ||
< 5.14 |
unaffected | ||
5.15.33≤ 5.15.* |
unaffected | ||
5.16.19≤ 5.16.* |
unaffected | ||
| … +2 more rows | |||
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2022-49149 | 9.8 CRITICAL | rxrpc: Fix call timer start racing with call destruction |
| CVE-2022-49280 | 9.8 CRITICAL | NFSD: prevent underflow in nfssvc_decode_writeargs() |
| CVE-2022-49561 | 9.8 CRITICAL | netfilter: conntrack: re-fetch conntrack after insertion |
| CVE-2022-49407 | 9.8 CRITICAL | dlm: fix plock invalid read |
| CVE-2022-49094 | 9.8 CRITICAL | net/tls: fix slab-out-of-bounds bug in decrypt_internal |
| CVE-2022-49362 | 9.8 CRITICAL | NFSD: Fix potential use-after-free in nfsd_file_put() |
| CVE-2022-49093 | 9.8 CRITICAL | skbuff: fix coalescing for page_pool fragment recycling |
| CVE-2022-49194 | 9.8 CRITICAL | net: bcmgenet: Use stronger register read/writes to assure ordering |
| CVE-2022-49356 | 9.8 CRITICAL | SUNRPC: Trap RDMA segment overflows |
| CVE-2022-49418 | 9.8 CRITICAL | NFSv4: Fix free of uninitialized nfs4_label on referral lookup. |
| CVE-2022-49201 | 9.8 CRITICAL | ibmvnic: fix race between xmit and reset |
| CVE-2022-49260 | 9.8 CRITICAL | crypto: hisilicon/sec - fix the aead software fallback for engine |
| CVE-2022-49058 | 9.1 CRITICAL | cifs: potential buffer overflow in handling symlinks |
| CVE-2022-49519 | 8.8 HIGH | ath10k: skip ath10k_halt during suspend for driver state RESTARTING |
| CVE-2022-49328 | 8.8 HIGH | mt76: fix use-after-free by removing a non-RCU wcid pointer |
| CVE-2022-49535 | 8.8 HIGH | scsi: lpfc: Fix null pointer dereference after failing to issue FLOGI and PLOGI |
| CVE-2022-49138 | 8.8 HIGH | Bluetooth: hci_event: Ignore multiple conn complete events |
| CVE-2022-49479 | 8.8 HIGH | mt76: fix tx status related use-after-free race on station removal |
| CVE-2022-49114 | 8.8 HIGH | scsi: libfc: Fix use after free in fc_exch_abts_resp() |
| CVE-2022-49111 | 8.8 HIGH | Bluetooth: Fix use after free in hci_send_acl |
Showing top 20 of 706 CVEs. View all on vendor page → →
No comments yet