Know every vulnerabilitybefore it knows you.
DevGuard continuously monitors your dependencies and alerts you when CVEs like this one affect your stack — with real-time threat intelligence built for developers.
RHSA-2022:7933
No affected components available
Red Hat Security Advisory: kernel-rt security and bug fix update
The vulnerability requires local access to the device to be exploited. It is easy for an attacker to exploit this vulnerability. An attacker needs high-level or administrative privileges. No user interaction is needed for the attacker to exploit this vulnerability. The vulnerability can affect other systems as well, not just the initial system. There is a high impact on the confidentiality of the information. There is a high impact on the integrity of the data. There is a high impact on the availability of the system.
Exploitation activity has been observed. Apply available patches or mitigations urgently.
The exploit probability is very low. The vulnerability is unlikely to be exploited in the next 30 days.
We did not find any exploit available. Neither in GitHub repositories nor in the Exploit-Database.
- CVE-2020-36516Upstream
- CVE-2021-3640Upstream
- CVE-2021-47099Upstream
- CVE-2021-47556Upstream
- CVE-2021-47580Upstream
- CVE-2022-0168Upstream
- CVE-2022-0617Upstream
- CVE-2022-0854Upstream
- CVE-2022-1016Upstream
- CVE-2022-1048Upstream
- CVE-2022-1158Upstream
- CVE-2022-1184Upstream
- CVE-2022-1263
A NULL pointer dereference issue was found in KVM when releasing a vCPU with dirty ring support enabled. This flaw allows an unprivileged local attacker on the host to issue specific ioctl calls, causing a kernel oops condition that results in a denial of service.
Upstream, EPSS 0.42% - CVE-2022-1280Upstream
- CVE-2022-1353Upstream
- CVE-2022-1679Upstream
- CVE-2022-1852
A NULL pointer dereference flaw was found in the Linux kernel’s KVM module, which can lead to a denial of service in the x86_emulate_insn in arch/x86/kvm/emulate.c. This flaw occurs while executing an illegal instruction in guest in the Intel CPU.
Upstream, EPSS 0.30% - CVE-2022-1998Upstream
- CVE-2022-20368Upstream
- CVE-2022-20572Upstream
- CVE-2022-21123Upstream
- CVE-2022-21125Upstream
- CVE-2022-21166Upstream
- CVE-2022-21499Upstream
- CVE-2022-2153
A flaw was found in the Linux kernel’s KVM when attempting to set a SynIC IRQ. This issue makes it possible for a misbehaving VMM to write to SYNIC/STIMER MSRs, causing a NULL pointer dereference. This flaw allows an unprivileged local attacker on the host to issue specific ioctl calls, causing a kernel oops condition that results in a denial of service.
Upstream, EPSS 0.45% - CVE-2022-23816Upstream
- CVE-2022-23825Upstream
- CVE-2022-24448Upstream
- CVE-2022-2503Upstream
- CVE-2022-2586Upstream
- CVE-2022-26373Upstream
- CVE-2022-2639
An integer coercion error was found in the openvswitch kernel module. Given a sufficiently large number of actions, while copying and reserving memory for a new action of a new flow, the reserve_sfa_size() function does not return -EMSGSIZE as expected, potentially leading to an out-of-bounds write access. This flaw allows a local user to crash or potentially escalate their privileges on the system.
Upstream, EPSS 0.82% - CVE-2022-28390
ems_usb_start_xmit in drivers/net/can/usb/ems_usb.c in the Linux kernel through 5.17.1 has a double free.
Upstream, EPSS 0.35% - CVE-2022-28693Upstream
- CVE-2022-28893Upstream
- CVE-2022-29581Upstream
- CVE-2022-29900Upstream
- CVE-2022-29901Upstream
- CVE-2022-3107Upstream
- CVE-2022-3108Upstream
- CVE-2022-3239Upstream
- CVE-2022-36946Upstream
- CVE-2022-39190Upstream
- CVE-2022-42432Upstream
- CVE-2022-48905Upstream
- CVE-2022-48918Upstream
- CVE-2022-48936Upstream
- CVE-2023-1095
In nf_tables_updtable, if nf_tables_table_enable returns an error, nft_trans_destroy is called to free the transaction object. nft_trans_destroy() calls list_del(), but the transaction was never placed on a list -- the list head is all zeroes, this results in a NULL pointer dereference.
Upstream, EPSS 0.21% - CVE-2023-2008
A flaw was found in the Linux kernel's udmabuf device driver. The specific flaw exists within a fault handler. The issue results from the lack of proper validation of user-supplied data, which can result in a memory access past the end of an array. An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of the kernel.
Upstream, EPSS 1.01% - EUVD-2020-23994Upstream
- EUVD-2021-26940Upstream
- EUVD-2021-33747Upstream
- EUVD-2021-34558Upstream
- EUVD-2021-34582Upstream
- EUVD-2022-15376Upstream
- EUVD-2022-15717Upstream
- EUVD-2022-15897Upstream
- EUVD-2022-24366Upstream
- EUVD-2022-24395Upstream
- EUVD-2022-24500Upstream
- EUVD-2022-24524Upstream
- EUVD-2022-24596Upstream
- EUVD-2022-24611Upstream
- EUVD-2022-24674Upstream
- EUVD-2022-24965Upstream
- EUVD-2022-25125Upstream
- EUVD-2022-25259Upstream
- EUVD-2022-25628Upstream
- EUVD-2022-25832Upstream
- EUVD-2022-26372Upstream
- EUVD-2022-26374Upstream
- EUVD-2022-26409Upstream
- EUVD-2022-26723Upstream
- EUVD-2022-28754Upstream
- EUVD-2022-29331Upstream
- EUVD-2022-30932Upstream
- EUVD-2022-32835Upstream
- EUVD-2022-33135Upstream
- EUVD-2022-33328Upstream
- EUVD-2022-33914Upstream
- EUVD-2022-34210Upstream
- EUVD-2022-34211Upstream
- EUVD-2022-34438Upstream
- EUVD-2022-34761Upstream
- EUVD-2022-34835Upstream
- EUVD-2022-34886Upstream
- EUVD-2022-39603Upstream
- EUVD-2022-41735Upstream
- EUVD-2022-42534Upstream
- EUVD-2022-42535Upstream
- EUVD-2022-42647Upstream
- EUVD-2022-45506Upstream
- EUVD-2022-53784Upstream
- EUVD-2022-53797Upstream
- EUVD-2023-23382Upstream
- EUVD-2023-33538Upstream
Browse More
Continuously monitor your dependencies and get alerted when vulnerabilities like this one affect your stack.
Checkout DevGuard