VendorsLinuxlinux_kernel5.17
Vulnerabilities

Linux Kernel 5.17

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

150CVEs
CVE-2022-48788
nvme-rdma: fix possible use-after-free in transport error_recovery work
Published 2024-07-16 · Modified
9.8EPSS 0.009
CVE-2022-48711
tipc: improve size validations for received domain records
Published 2024-06-20 · Modified
9.8EPSS 0.005
CVE-2022-48716
ASoC: codecs: wcd938x: fix incorrect used of portid
Published 2024-06-20 · Modified
9.8EPSS 0.005
CVE-2022-0742
Memory leak in ICMP6 in Linux Kernel
Published 2022-03-18 · Modified
9.1EPSS 0.050
CVE-2022-48829
NFSD: Fix NFSv3 SETATTR/CREATE's handling of large file sizes
Published 2024-07-16 · Modified
9.1EPSS 0.007
CVE-2022-48828
NFSD: Fix ia_size underflow
Published 2024-07-16 · Modified
9.1EPSS 0.006
CVE-2022-0435
A stack overflow flaw was found in the Linux kernel's TIPC protocol functionality in the way a user sends a packet with malicious content where the number of domain member nodes is higher than the 64 allowed. This flaw allows a remote user to crash the system or possibly escalate their privileges if they have access to the TIPC network.
Published 2022-03-25 · Modified
9.0EPSS 0.680
CVE-2022-48830
can: isotp: fix potential CAN frame reception race in isotp_rcv()
Published 2024-07-16 · Modified
8.8EPSS 0.003
CVE-2022-48785
ipv6: mcast: use rcu-safe version of ipv6_get_lladdr()
Published 2024-07-16 · Modified
8.8EPSS 0.003
CVE-2022-48754
phylib: fix potential use-after-free
Published 2024-06-20 · Modified
8.4EPSS 0.002
CVE-2022-48629
crypto: qcom-rng - ensure buffer for generate is completely filled
Published 2024-03-05 · Modified
8.1EPSS 0.005
CVE-2022-0995
An out-of-bounds (OOB) memory write flaw was found in the Linux kernel’s watch_queue event notification subsystem. This flaw can overwrite parts of the kernel state, potentially allowing a local user to gain privileged access or cause a denial of service on the system.
Published 2022-03-25 · Analyzed
7.8KEVEPSS 0.094
CVE-2022-0492
A vulnerability was found in the Linux kernel’s cgroup_release_agent_write in the kernel/cgroup/cgroup-v1.c function. This flaw, under certain circumstances, allows the use of the cgroups v1 release_agent feature to escalate privileges and bypass the namespace isolation unexpectedly.
Published 2022-03-03 · Analyzed
7.8KEVEPSS 0.055
CVE-2022-27666
A heap buffer overflow flaw was found in IPsec ESP transformation code in net/ipv4/esp4.c and net/ipv6/esp6.c. This flaw allows a local attacker with a normal user privilege to overwrite kernel heap objects and may cause a local privilege escalation threat.
Published 2022-03-23 · Analyzed
7.8EPSS 0.055
CVE-2022-1011
A use-after-free flaw was found in the Linux kernel’s FUSE filesystem in the way a user triggers write(). This flaw allows a local user to gain unauthorized access to data from the FUSE filesystem, resulting in privilege escalation.
Published 2022-03-18 · Analyzed
7.8EPSS 0.012
CVE-2022-48744
net/mlx5e: Avoid field-overflowing memcpy()
Published 2024-06-20 · Modified
7.8EPSS 0.006
CVE-2022-0330
A random memory access flaw was found in the Linux kernel's GPU i915 kernel driver functionality in the way a user may run malicious code on the GPU. This flaw allows a local user to crash the system or escalate their privileges on the system.
Published 2022-03-25 · Analyzed
7.8EPSS 0.004
CVE-2022-0646
A flaw use after free in the Linux kernel Management Component Transport Protocol (MCTP) subsystem was found in the way user triggers cancel_work_sync after the unregister_netdev during removing device. A local user could use this flaw to crash the system or escalate their privileges on the system. It is actual from Linux Kernel 5.17-rc1 (when mctp-serial.c introduced) till 5.17-rc5.
Published 2022-02-18 · Modified
7.8EPSS 0.004
CVE-2022-0516
A vulnerability was found in kvm_s390_guest_sida_op in the arch/s390/kvm/kvm-s390.c function in KVM for s390 in the Linux kernel. This flaw allows a local attacker with a normal user privilege to obtain unauthorized memory write access. This flaw affects Linux kernel versions prior to 5.17-rc4.
Published 2022-03-08 · Modified
7.8EPSS 0.003
CVE-2022-48805
net: usb: ax88179_178a: Fix out-of-bounds accesses in RX fixup
Published 2024-07-16 · Analyzed
7.8EPSS 0.003
CVE-2022-48801
iio: buffer: Fix file related error handling in IIO_BUFFER_GET_FD_IOCTL
Published 2024-07-16 · Modified
7.8EPSS 0.003
CVE-2022-48816
SUNRPC: lock against ->sock changing during sysfs read
Published 2024-07-16 · Modified
7.8EPSS 0.003
CVE-2022-49292
ALSA: oss: Fix PCM OSS buffer allocation overflow
Published 2025-02-26 · Modified
7.8EPSS 0.003
CVE-2022-49289
uaccess: fix integer overflow on access_ok()
Published 2025-02-26 · Modified
7.8EPSS 0.003
CVE-2022-48821
misc: fastrpc: avoid double fput() on failed usercopy
Published 2024-07-16 · Modified
7.8EPSS 0.003
CVE-2022-49456
bonding: fix missed rcu protection
Published 2025-02-26 · Modified
7.8EPSS 0.003
CVE-2022-48834
usb: usbtmc: Fix bug in pipe direction for control transfers
Published 2024-07-16 · Analyzed
7.8EPSS 0.003
CVE-2022-48796
iommu: Fix potential use-after-free during probe
Published 2024-07-16 · Modified
7.8EPSS 0.003
CVE-2022-48786
vsock: remove vsock from connected table when connect is interrupted by a signal
Published 2024-07-16 · Modified
7.8EPSS 0.003
CVE-2022-50163
ax25: fix incorrect dev_tracker usage
Published 2025-06-18 · Analyzed
7.8EPSS 0.003
CVE-2022-48740
selinux: fix double free of cond_list on error paths
Published 2024-06-20 · Analyzed
7.8EPSS 0.002
CVE-2022-48726
RDMA/ucma: Protect mc during concurrent multicast leaves
Published 2024-06-20 · Modified
7.8EPSS 0.002
CVE-2022-48735
ALSA: hda: Fix UAF of leds class devs at unbinding
Published 2024-06-20 · Modified
7.8EPSS 0.002
CVE-2024-36009
ax25: Fix netdev refcount issue
Published 2024-05-20 · Modified
7.8EPSS 0.002
CVE-2022-48721
net/smc: Forward wakeup to smc socket waitqueue after fallback
Published 2024-06-20 · Modified
7.8EPSS 0.002
CVE-2022-48733
btrfs: fix use-after-free after failure to create a snapshot
Published 2024-06-20 · Modified
7.8EPSS 0.002
CVE-2022-48720
net: macsec: Fix offload support for NETDEV_UNREGISTER event
Published 2024-06-20 · Modified
7.8EPSS 0.002
CVE-2022-48923
btrfs: prevent copying too big compressed lzo segment
Published 2024-08-22 · Modified
7.8EPSS 0.002
CVE-2022-48712
ext4: fix error handling in ext4_fc_record_modified_inode()
Published 2024-06-20 · Analyzed
7.8EPSS 0.002
CVE-2022-48751
net/smc: Transitional solution for clcsock race issue
Published 2024-06-20 · Modified
7.8EPSS 0.002
1 / 4Next →