It was discovered that the Upper Level Protocol (ULP) subsystem in the Linux kernel did not properly handle sockets entering the LISTEN state in certain protocols, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2023-0461)
It was discovered that the KVM VMX implementation in the Linux kernel did not properly handle indirect branch prediction isolation between L1 and L2 VMs. An attacker in a guest VM could use this to expose sensitive information from the host OS or other guest VMs. (CVE-2022-2196)
It was discovered that the Intel 740 frame buffer driver in the Linux kernel contained a divide by zero vulnerability. A local attacker could use this to cause a denial of service (system crash). (CVE-2022-3061)
It was discovered that the Broadcom FullMAC USB WiFi driver in the Linux kernel did not properly perform bounds checking in some situations. A physically proximate attacker could use this to craft a malicious USB device that when inserted, could cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2022-3628)
Ziming Zhang discovered that the VMware Virtual GPU DRM driver in the Linux kernel contained an out-of-bounds write vulnerability. A local attacker could use this to cause a denial of service (system crash). (CVE-2022-36280)
It was discovered that the NILFS2 file system implementation in the Linux kernel did not properly deallocate memory in certain error conditions. An attacker could use this to cause a denial of service (memory exhaustion). (CVE-2022-3646)
Khalid Masum discovered that the NILFS2 file system implementation in the Linux kernel did not properly handle certain error conditions, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service or possibly execute arbitrary code. (CVE-2022-3649)
It was discovered that a race condition existed in the Roccat HID driver in the Linux kernel, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2022-41850)
Kyle Zeng discovered that the IPv6 implementation in the Linux kernel contained a NULL pointer dereference vulnerability in certain situations. A local attacker could use this to cause a denial of service (system crash). (CVE-2023-0394)
{ "availability": "No subscription required", "binaries": [ { "binary_version": "5.14.0-1059.67", "binary_name": "linux-buildinfo-5.14.0-1059-oem" }, { "binary_version": "5.14.0-1059.67", "binary_name": "linux-headers-5.14.0-1059-oem" }, { "binary_version": "5.14.0-1059.67", "binary_name": "linux-image-unsigned-5.14.0-1059-oem" }, { "binary_version": "5.14.0-1059.67", "binary_name": "linux-image-unsigned-5.14.0-1059-oem-dbgsym" }, { "binary_version": "5.14.0-1059.67", "binary_name": "linux-modules-5.14.0-1059-oem" }, { "binary_version": "5.14.0-1059.67", "binary_name": "linux-modules-iwlwifi-5.14.0-1059-oem" }, { "binary_version": "5.14.0-1059.67", "binary_name": "linux-oem-5.14-headers-5.14.0-1059" }, { "binary_version": "5.14.0-1059.67", "binary_name": "linux-oem-5.14-tools-5.14.0-1059" }, { "binary_version": "5.14.0-1059.67", "binary_name": "linux-oem-5.14-tools-host" }, { "binary_version": "5.14.0-1059.67", "binary_name": "linux-tools-5.14.0-1059-oem" } ] }
{ "availability": "No subscription required", "binaries": [ { "binary_version": "5.17.0-1029.30", "binary_name": "linux-buildinfo-5.17.0-1029-oem" }, { "binary_version": "5.17.0-1029.30", "binary_name": "linux-headers-5.17.0-1029-oem" }, { "binary_version": "5.17.0-1029.30", "binary_name": "linux-image-unsigned-5.17.0-1029-oem" }, { "binary_version": "5.17.0-1029.30", "binary_name": "linux-image-unsigned-5.17.0-1029-oem-dbgsym" }, { "binary_version": "5.17.0-1029.30", "binary_name": "linux-modules-5.17.0-1029-oem" }, { "binary_version": "5.17.0-1029.30", "binary_name": "linux-modules-ipu6-5.17.0-1029-oem" }, { "binary_version": "5.17.0-1029.30", "binary_name": "linux-modules-ivsc-5.17.0-1029-oem" }, { "binary_version": "5.17.0-1029.30", "binary_name": "linux-modules-iwlwifi-5.17.0-1029-oem" }, { "binary_version": "5.17.0-1029.30", "binary_name": "linux-oem-5.17-headers-5.17.0-1029" }, { "binary_version": "5.17.0-1029.30", "binary_name": "linux-oem-5.17-tools-5.17.0-1029" }, { "binary_version": "5.17.0-1029.30", "binary_name": "linux-oem-5.17-tools-host" }, { "binary_version": "5.17.0-1029.30", "binary_name": "linux-tools-5.17.0-1029-oem" } ] }