VYPR

rpm package

suse/kernel-source&distro=SUSE Linux Enterprise Micro 5.5

pkg:rpm/suse/kernel-source&distro=SUSE%20Linux%20Enterprise%20Micro%205.5

Vulnerabilities (2,248)

  • CVE-2022-2978Aug 24, 2022
    affected < 5.14.21-150500.55.124.1fixed 5.14.21-150500.55.124.1

    A flaw use after free in the Linux kernel NILFS file system was found in the way user triggers function security_inode_alloc to fail with following call to function nilfs_mdt_destroy. A local user could use this flaw to crash the system or potentially escalate their privileges on

  • CVE-2022-29900Jul 12, 2022
    affected < 5.14.21-150500.55.100.1fixed 5.14.21-150500.55.100.1

    Mis-trained branch predictions for return instructions may allow arbitrary speculative code execution under certain microarchitecture-dependent conditions.

  • CVE-2022-29901Jul 12, 2022
    affected < 5.14.21-150500.55.100.1fixed 5.14.21-150500.55.100.1

    Intel microprocessor generations 6 to 8 are affected by a new Spectre variant that is able to bypass their retpoline mitigation in the kernel to leak arbitrary data. An attacker with unprivileged user access can hijack return instructions to achieve arbitrary speculative code exe

  • CVE-2022-1679May 16, 2022
    affected < 5.14.21-150500.55.113.1fixed 5.14.21-150500.55.113.1

    A use-after-free flaw was found in the Linux kernel’s Atheros wireless adapter driver in the way a user forces the ath9k_htc_wait_for_target function to fail with some input messages. This flaw allows a local user to crash or potentially escalate their privileges on the system.

  • CVE-2022-1048Apr 29, 2022
    affected < 5.14.21-150500.55.100.1fixed 5.14.21-150500.55.100.1

    A use-after-free flaw was found in the Linux kernel’s sound subsystem in the way a user triggers concurrent calls of PCM hw_params. The hw_free ioctls or similar race condition happens inside ALSA PCM for other ioctls. This flaw allows a local user to crash or potentially escalat

  • CVE-2022-0995Mar 25, 2022
    affected < 5.14.21-150500.55.100.1fixed 5.14.21-150500.55.100.1

    An out-of-bounds (OOB) memory write flaw was found in the Linux kernel’s watch_queue event notification subsystem. This flaw can overwrite parts of the kernel state, potentially allowing a local user to gain privileged access or cause a denial of service on the system.

  • CVE-2022-0854Mar 23, 2022
    affected < 5.14.21-150500.55.133.1fixed 5.14.21-150500.55.133.1

    A memory leak flaw was found in the Linux kernel’s DMA subsystem, in the way a user calls DMA_FROM_DEVICE. This flaw allows a local user to read random memory from the kernel space.

  • CVE-2017-5753Jan 4, 2018
    affected < 5.14.21-150500.55.100.1fixed 5.14.21-150500.55.100.1

    Systems with microprocessors utilizing speculative execution and branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis.

Page 113 of 113