VYPR

rpm package

suse/drbd&distro=SUSE Linux Enterprise High Availability Extension 12 SP4

pkg:rpm/suse/drbd&distro=SUSE%20Linux%20Enterprise%20High%20Availability%20Extension%2012%20SP4

Vulnerabilities (28)

  • CVE-2023-0597Feb 23, 2023
    affected < 9.0.14+git.62f906cf-4.26.2fixed 9.0.14+git.62f906cf-4.26.2

    A flaw possibility of memory leak in the Linux kernel cpu_entry_area mapping of X86 CPU data to memory was found in the way user can guess location of exception stack(s) or other important data. A local user could use this flaw to get access to some important data with expected l

  • CVE-2023-0394Jan 24, 2023
    affected < 9.0.14+git.62f906cf-4.26.2fixed 9.0.14+git.62f906cf-4.26.2

    A NULL pointer dereference flaw was found in rawv6_push_pending_frames in net/ipv6/raw.c in the network subcomponent in the Linux kernel. This flaw causes the system to crash.

  • CVE-2023-23455Jan 12, 2023
    affected < 9.0.14+git.62f906cf-4.26.2fixed 9.0.14+git.62f906cf-4.26.2

    atm_tc_enqueue in net/sched/sch_atm.c in the Linux kernel through 6.1.4 allows attackers to cause a denial of service because of type confusion (non-negative numbers can sometimes indicate a TC_ACT_SHOT condition rather than valid classification results).

  • CVE-2023-23454Jan 12, 2023
    affected < 9.0.14+git.62f906cf-4.26.2fixed 9.0.14+git.62f906cf-4.26.2

    cbq_classify in net/sched/sch_cbq.c in the Linux kernel through 6.1.4 allows attackers to cause a denial of service (slab-out-of-bounds read) because of type confusion (non-negative numbers can sometimes indicate a TC_ACT_SHOT condition rather than valid classification results).

  • CVE-2022-20567Dec 16, 2022
    affected < 9.0.14+git.62f906cf-4.26.2fixed 9.0.14+git.62f906cf-4.26.2

    In pppol2tp_create of l2tp_ppp.c, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid

  • CVE-2022-43945HigNov 4, 2022
    affected < 9.0.14+git.62f906cf-4.26.2fixed 9.0.14+git.62f906cf-4.26.2

    The Linux kernel NFSD implementation prior to versions 5.19.17 and 6.0.2 are vulnerable to buffer overflow. NFSD tracks the number of pages held by each NFSD thread by combining the receive and send buffers of a remote procedure call (RPC) into a single array of pages. A client c

  • CVE-2021-4203Mar 25, 2022
    affected < 9.0.14+git.62f906cf-4.26.2fixed 9.0.14+git.62f906cf-4.26.2

    A use-after-free read flaw was found in sock_getsockopt() in net/core/sock.c due to SO_PEERCRED and SO_PEERGROUPS race with listen() (and connect()) in the Linux kernel. In this flaw, an attacker with a user privileges may crash the system or leak internal kernel information.

  • CVE-2017-5753Jan 4, 2018
    affected < 9.0.14+git.62f906cf-4.26.2fixed 9.0.14+git.62f906cf-4.26.2

    Systems with microprocessors utilizing speculative execution and branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis.

Page 2 of 2