2022 CVE Vulnerabilities

27,538 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-1184MEDIUM5.5A use-after-free flaw was found in fs/ext4/namei.c:dx_insert_block() in the Linux kernel’s filesystem sub-component. Thi...
CVE-2022-1117HIGH8.4A vulnerability was found in fapolicyd. The vulnerability occurs due to an assumption on how glibc names the runtime lin...
CVE-2022-1115MEDIUM5.5A heap-buffer-overflow flaw was found in ImageMagick’s PushShortPixel() function of quantum-private.h file. This vulnera...
CVE-2022-1043HIGH8.8A flaw was found in the Linux kernel’s io_uring implementation. This flaw allows an attacker with a local account to cor...
CVE-2022-1024Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2022-1016MEDIUM5.5A flaw was found in the Linux kernel in net/netfilter/nf_tables_core.c:nft_do_chain, which can cause a use-after-free. T...
CVE-2022-0934HIGH7.5A single-byte, non-arbitrary write/use-after-free flaw was found in dnsmasq. This flaw allows an attacker who sends a cr...
CVE-2022-0852MEDIUM5.5There is a flaw in convert2rhel. convert2rhel passes the Red Hat account password to subscription-manager via the comman...
CVE-2022-0851MEDIUM5.5There is a flaw in convert2rhel. When the --activationkey option is used with convert2rhel, the activation key is subseq...
CVE-2022-0850HIGH7.1A vulnerability was found in linux kernel, where an information leak occurs via ext4_extent_header to userspace.
CVE-2022-0812MEDIUM4.3An information leak flaw was found in NFS over RDMA in the net/sunrpc/xprtrdma/rpc_rdma.c in the Linux Kernel. This flaw...
CVE-2022-0718MEDIUM4.9A flaw was found in python-oslo-utils. Due to improper parsing, passwords with a double quote ( " ) in them cause incorr...
CVE-2022-0669MEDIUM6.5A flaw was found in dpdk. This flaw allows a malicious vhost-user master to attach an unexpected number of fds as ancill...
CVE-2022-0644Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2022-0497HIGH7.1A vulnerbiility was found in Openscad, where a .scad file with no trailing newline could cause an out-of-bounds read dur...
CVE-2022-0496MEDIUM5.5A vulnerbiility was found in Openscad, where a DXF-format drawing with particular (not necessarily malformed!) propertie...
CVE-2022-0485MEDIUM4.8A flaw was found in the copying tool `nbdcopy` of libnbd. When performing multi-threaded copies using asynchronous nbd c...
CVE-2022-0480MEDIUM5.5A flaw was found in the filelock_init in fs/locks.c function in the Linux kernel. This issue can lead to host memory exh...
CVE-2022-0400HIGH7.5An out-of-bounds read vulnerability was discovered in linux kernel in the smc protocol stack, causing remote dos.
CVE-2022-0367HIGH7.8A heap-based buffer overflow flaw was found in libmodbus in function modbus_reply() in src/modbus.c.
CVE-2022-0358HIGH7.8A flaw was found in the QEMU virtio-fs shared file system daemon (virtiofsd) implementation. This flaw is strictly relat...
CVE-2022-0336HIGH8.8The Samba AD DC includes checks when adding service principals names (SPNs) to an account to ensure that SPNs do not ali...
CVE-2022-0284HIGH7.1A heap-based-buffer-over-read flaw was found in ImageMagick's GetPixelAlpha() function of 'pixel-accessor.h'. This vulne...
CVE-2022-36690HIGH8.8Ingredients Stock Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at...
CVE-2022-36689HIGH8.8Ingredients Stock Management System v1.0 was discovered to contain a SQL injection vulnerability via the month parameter...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now