It was discovered that the Packet network protocol implementation in the
Linux kernel contained a double-free vulnerability. A local attacker could
use this to cause a denial of service (system crash) or possibly execute
arbitrary code. (CVE-2021-22600)
Jann Horn discovered a race condition in the Unix domain socket
implementation in the Linux kernel that could result in a read-after-free.
A local attacker could use this to cause a denial of service (system crash)
or possibly execute arbitrary code. (CVE-2021-4083)
Kirill Tkhai discovered that the XFS file system implementation in the
Linux kernel did not calculate size correctly when pre-allocating space in
some situations. A local attacker could use this to expose sensitive
information. (CVE-2021-4155)
Sushma Venkatesh Reddy discovered that the Intel i915 graphics driver in
the Linux kernel did not perform a GPU TLB flush in some situations. A
local attacker could use this to cause a denial of service or possibly
execute arbitrary code. (CVE-2022-0330)
It was discovered that the VMware Virtual GPU driver in the Linux kernel
did not properly handle certain failure conditions, leading to a stale
entry in the file descriptor table. A local attacker could use this to
expose sensitive information or possibly gain administrative privileges.
(CVE-2022-22942)
More Stories
golang-github-cncf-xds-0-0.10.20230912gite9ce688.fc39 golang-github-envoyproxy-control-plane-0.11.1-1.fc39 golang-github-nats-io-1.30.1-1.fc39 golang-github-nats-io-jwt-2-2.5.2-1.fc39 golang-github-nats-io-nkeys-0.4.5-2.fc39 golang-github-protobuf-1.5.3-3.fc39 golang-google-protobuf-1.31.0-4.fc39 nats-server-2.10.1-3.fc39
FEDORA-2023-6b89bc0305 Packages in this update: golang-github-cncf-xds-0-0.10.20230912gite9ce688.fc39 golang-github-envoyproxy-control-plane-0.11.1-1.fc39 golang-github-nats-io-1.30.1-1.fc39 golang-github-nats-io-jwt-2-2.5.2-1.fc39 golang-github-nats-io-nkeys-0.4.5-2.fc39 golang-github-protobuf-1.5.3-3.fc39 golang-google-protobuf-1.31.0-4.fc39 nats-server-2.10.1-3.fc39 Update description: Contains updates to address CVE-2022-{28357,41717}...
bind-9.18.19-1.fc39 bind-dyndb-ldap-11.10-21.fc39
FEDORA-2023-b4acb0f7c6 Packages in this update: bind-9.18.19-1.fc39 bind-dyndb-ldap-11.10-21.fc39 Update description: BIND 9.18.19 Security Fixes Previously, sending a specially crafted message over...
golang-github-nats-io-1.30.1-1.fc40 golang-github-protobuf-1.5.3-3.fc40 nats-server-2.10.1-3.fc40
FEDORA-2023-5f904f4dd4 Packages in this update: golang-github-nats-io-1.30.1-1.fc40 golang-github-protobuf-1.5.3-3.fc40 nats-server-2.10.1-3.fc40 Update description: Contains updates to address CVE-2022-{28357,41717} Read More
[tool] WatchGuard Firebox Web Update Unpacker
Posted by retset on Sep 25 A small utility for extracting file system images from "sysa-dl" update files. https://github.com/ret5et/Watchguard_WebUI_Unpacker Read...
CVE-2022-4244
A flaw was found in codeplex-codehaus. A directory traversal attack (also known as path traversal) aims to access files and...
CVE-2022-4245
A flaw was found in codehaus-plexus. The org.codehaus.plexus.util.xml.XmlWriterUtil#writeComment fails to sanitize comments for a --> sequence. This issue means that...