VendorsLinuxlinux_kernel6.1
Vulnerabilities

Linux Kernel 6.1

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

326CVEs
CVE-2026-46123
Bluetooth: virtio_bt: clamp rx length before skb_put
Published 2026-05-28 · Undergoing Analysis
7.7EPSS 0.002
CVE-2022-49872
net: gso: fix panic on frag_list with mixed head alloc types
Published 2025-05-01 · Modified
7.5EPSS 0.005
CVE-2022-49928
SUNRPC: Fix null-ptr-deref when xps sysfs alloc failed
Published 2025-05-01 · Modified
7.5EPSS 0.003
CVE-2022-49792
iio: adc: mp2629: fix potential array out of bound access
Published 2025-05-01 · Modified
7.3EPSS 0.002
CVE-2022-49031
iio: health: afe4403: Fix oob read in afe4403_read_raw
Published 2024-10-21 · Analyzed
7.1EPSS 0.002
CVE-2022-49032
iio: health: afe4404: Fix oob read in afe4404_[read|write]_raw
Published 2024-10-21 · Analyzed
7.1EPSS 0.002
CVE-2022-48966
net: mvneta: Prevent out of bounds read in mvneta_config_rss()
Published 2024-10-21 · Analyzed
7.1EPSS 0.002
CVE-2022-49865
ipv6: addrlabel: fix infoleak when sending struct ifaddrlblmsg to network
Published 2025-05-01 · Analyzed
7.1EPSS 0.002
CVE-2022-49870
capabilities: fix undefined behavior in bit shift for CAP_TO_MASK
Published 2025-05-01 · Analyzed
7.1EPSS 0.002
CVE-2022-49852
riscv: process: fix kernel info leakage
Published 2025-05-01 · Analyzed
7.1EPSS 0.002
CVE-2022-49851
riscv: fix reserved memory setup
Published 2025-05-01 · Analyzed
7.1EPSS 0.002
CVE-2022-49799
tracing: Fix wild-memory-access in register_synth_event()
Published 2025-05-01 · Analyzed
7.1EPSS 0.002
CVE-2022-49844
can: dev: fix skb drop check
Published 2025-05-01 · Modified
7.1EPSS 0.002
CVE-2022-49883
KVM: x86: smm: number of GPRs in the SMRAM image depends on the image format
Published 2025-05-01 · Modified
7.1EPSS 0.002
CVE-2022-50239
cpufreq: qcom: fix writes in read-only memory region
Published 2025-09-15 · Analyzed
7.1EPSS 0.002
CVE-2022-50307
s390/cio: fix out-of-bounds access on cio_ignore free
Published 2025-09-15 · Analyzed
7.1EPSS 0.002
CVE-2022-49001
riscv: fix race when vmap stack overflow
Published 2024-10-21 · Modified
7.0EPSS 0.002
CVE-2022-3628
A buffer overflow flaw was found in the Linux kernel Broadcom Full MAC Wi-Fi driver. This issue occurs when a user connects to a malicious USB device. This can allow a local user to crash the system or escalate their privileges.
Published 2023-01-12 · Modified
6.6EPSS 0.005
CVE-2023-20849
In imgsys_cmdq, there is a possible use after free due to a missing valid range checking. This could lead to local escalation of privilege with System execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS07340433; Issue ID: ALPS07340350.
Published 2023-09-04 · Modified
6.5EPSS 0.001
CVE-2023-20842
In imgsys_cmdq, there is a possible out of bounds write due to a missing valid range checking. This could lead to local escalation of privilege with System execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS07354259; Issue ID: ALPS07340477.
Published 2023-09-04 · Modified
6.5EPSS 0.001
CVE-2023-20841
In imgsys, there is a possible out of bounds write due to a missing valid range checking. This could lead to local escalation of privilege with System execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS07326455; Issue ID: ALPS07326441.
Published 2023-09-04 · Modified
6.5EPSS 0.001
CVE-2023-20848
In imgsys_cmdq, there is a possible out of bounds read due to a missing valid range checking. This could lead to local escalation of privilege with System execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS07340433; Issue ID: ALPS07340433.
Published 2023-09-04 · Modified
6.5EPSS 0.001
CVE-2023-20840
In imgsys, there is a possible out of bounds read and write due to a missing valid range checking. This could lead to local escalation of privilege with System execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS07326430; Issue ID: ALPS07326430.
Published 2023-09-04 · Modified
6.5EPSS 0.001
CVE-2023-20850
In imgsys_cmdq, there is a possible out of bounds write due to a missing valid range checking. This could lead to local escalation of privilege with System execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS07340433; Issue ID: ALPS07340381.
Published 2023-09-04 · Modified
6.5EPSS 0.001
CVE-2024-53240
xen/netfront: fix crash when removing device
Published 2024-12-24 · Modified
5.7EPSS 0.006
CVE-2023-0469
A use-after-free flaw was found in io_uring/filetable.c in io_install_fixed_file in the io_uring subcomponent in the Linux Kernel during call cleanup. This flaw may lead to a denial of service.
Published 2023-01-25 · Modified
5.5EPSS 0.003
CVE-2023-3355
Null pointer dereference in submit_lookup_cmds() in drivers/gpu/drm/msm/msm_gem_submit.c
Published 2023-06-28 · Modified
5.5EPSS 0.003
CVE-2022-49021
net: phy: fix null-ptr-deref while probe() failed
Published 2024-10-21 · Analyzed
5.5EPSS 0.003
CVE-2022-48972
mac802154: fix missing INIT_LIST_HEAD in ieee802154_if_add()
Published 2024-10-21 · Analyzed
5.5EPSS 0.003
CVE-2023-3006
A known cache speculation vulnerability, known as Branch History Injection (BHI) or Spectre-BHB, becomes actual again for the new hw AmpereOne. Spectre-BHB is similar to Spectre v2, except that malicious code uses the shared branch history (stored in the CPU Branch History Buffer, or BHB) to influence mispredicted branches within the victim's hardware context. Once that occurs, speculation caused by the mispredicted branches can cause cache allocation. This issue leads to obtaining information that should not be accessible.
Published 2023-05-31 · Modified
5.5EPSS 0.003
CVE-2022-48983
io_uring: Fix a null-ptr-deref in io_tctx_exit_cb()
Published 2024-10-21 · Analyzed
5.5EPSS 0.003
CVE-2022-48969
xen-netfront: Fix NULL sring after live migration
Published 2024-10-21 · Analyzed
5.5EPSS 0.003
CVE-2022-48946
udf: Fix preallocation discarding at indirect extent boundary
Published 2024-10-21 · Analyzed
5.5EPSS 0.003
CVE-2022-45869
A race condition in the x86 KVM subsystem in the Linux kernel through 6.1-rc6 allows guest OS users to cause a denial of service (host OS crash or host OS memory corruption) when nested virtualisation and the TDP MMU are enabled.
Published 2022-11-30 · Modified
5.5EPSS 0.003
CVE-2022-48949
igb: Initialize mailbox message for VF reset
Published 2024-10-21 · Analyzed
5.5EPSS 0.003
CVE-2022-49033
btrfs: qgroup: fix sleep from invalid context bug in btrfs_qgroup_inherit()
Published 2024-10-21 · Analyzed
5.5EPSS 0.003
CVE-2022-48978
HID: core: fix shift-out-of-bounds in hid_report_raw_event
Published 2024-10-21 · Analyzed
5.5EPSS 0.002
CVE-2022-49027
iavf: Fix error handling in iavf_init_module()
Published 2024-10-21 · Analyzed
5.5EPSS 0.002
CVE-2022-49002
iommu/vt-d: Fix PCI device refcount leak in dmar_dev_scope_init()
Published 2024-10-21 · Analyzed
5.5EPSS 0.002
CVE-2022-49007
nilfs2: fix NULL pointer dereference in nilfs_palloc_commit_free_entry()
Published 2024-10-21 · Analyzed
5.5EPSS 0.002
← Prev3 / 9Next →