CVEs from 2022

5,385 normalized CVEs published or assigned in this year.

Total
5,385
critical
critical 88
high
high 1,220
medium
medium 938
low
low 24
% Critical
1.6%
% with KEV
2.4%
% with exploit
3.3%

Top products

  • jdk 116
  • jre 109
  • openjdk 100
  • zulu 82
  • graalvm 74
  • cloud_secure_agent 35
  • oncommand_insight 34
  • cloud_insights_acquisition_unit 34
0
KEVHas exploit
Reset
CVE Severity CVSS Risk Flags OS Vendor Published Description
CVE-2022-1048 medium 5.5 4y ago RHSA-2022:7683: kernel security, bug fix, and enhancement update (Moderate)
CVE-2022-49347 medium 5.5 4y ago RHSA-2022:7683: kernel security, bug fix, and enhancement update (Moderate)
CVE-2022-3107 medium 5.5 4y ago RHSA-2022:7683: kernel security, bug fix, and enhancement update (Moderate)
CVE-2022-0168 medium 5.5 4y ago RHSA-2022:7683: kernel security, bug fix, and enhancement update (Moderate)
CVE-2022-1263 medium 5.5 4y ago RHSA-2022:7683: kernel security, bug fix, and enhancement update (Moderate)
CVE-2022-1280 medium 5.5 4y ago RHSA-2022:7683: kernel security, bug fix, and enhancement update (Moderate)
CVE-2022-21499 medium 5.5 4y ago RHSA-2022:7683: kernel security, bug fix, and enhancement update (Moderate)
CVE-2022-1852 medium 5.5 4y ago RHSA-2022:7683: kernel security, bug fix, and enhancement update (Moderate)
CVE-2022-20572 medium 5.5 4y ago RHSA-2022:7683: kernel security, bug fix, and enhancement update (Moderate)
CVE-2022-2503 medium 5.5 4y ago RHSA-2022:7683: kernel security, bug fix, and enhancement update (Moderate)
CVE-2022-49290 medium 5.5 4y ago RHSA-2022:7683: kernel security, bug fix, and enhancement update (Moderate)
CVE-2022-1016 medium 5.5 4y ago RHSA-2022:7683: kernel security, bug fix, and enhancement update (Moderate)
CVE-2022-1998 medium 5.5 4y ago A use after free in the Linux kernel File System notify functionality was found in the way user triggers copy_info_records_to_user() call to fail in copy_event_to_user(). A local user could use this …
CVE-2022-2153 medium 5.5 4y ago RHSA-2022:7683: kernel security, bug fix, and enhancement update (Moderate)
CVE-2022-0617 medium 5.5 4y ago RHSA-2022:7683: kernel security, bug fix, and enhancement update (Moderate)
CVE-2022-28390 medium 5.5 4y ago RHSA-2022:7683: kernel security, bug fix, and enhancement update (Moderate)
CVE-2022-50092 medium 5.5 4y ago RHSA-2022:7683: kernel security, bug fix, and enhancement update (Moderate)
CVE-2022-21698 medium 5.5 4y ago RHSA-2022:7529: container-tools:3.0 security update (Moderate)
CVE-2022-21703 medium 5.5 4y ago RHSA-2022:7519: grafana security, bug fix, and enhancement update (Moderate)
CVE-2022-24448 medium 5.5 4y ago RHSA-2022:7683: kernel security, bug fix, and enhancement update (Moderate)
CVE-2022-26710 medium 5.5 4y ago RHSA-2022:7704: webkit2gtk3 security and bug fix update (Moderate)
CVE-2022-28893 medium 5.5 4y ago RHSA-2022:7683: kernel security, bug fix, and enhancement update (Moderate)
CVE-2022-2639 medium 5.5 4y ago RHSA-2022:7683: kernel security, bug fix, and enhancement update (Moderate)
CVE-2022-26373 medium 5.5 4y ago RHSA-2022:7683: kernel security, bug fix, and enhancement update (Moderate)
CVE-2022-29581 medium 5.5 4y ago RHSA-2022:7683: kernel security, bug fix, and enhancement update (Moderate)
CVE-2022-30293 medium 5.5 4y ago RHSA-2022:7704: webkit2gtk3 security and bug fix update (Moderate)
CVE-2022-49123 medium 5.5 4y ago RHSA-2022:7683: kernel security, bug fix, and enhancement update (Moderate)
CVE-2022-26717 medium 5.5 4y ago RHSA-2022:7704: webkit2gtk3 security and bug fix update (Moderate)
CVE-2022-36946 medium 5.5 4y ago RHSA-2022:7683: kernel security, bug fix, and enhancement update (Moderate)
CVE-2022-39190 medium 5.5 4y ago An issue was discovered in net/netfilter/nf_tables_api.c in the Linux kernel before 5.19.6. A denial of service can occur upon binding to an already bound chain.
CVE-2022-42432 medium 5.5 4y ago This vulnerability allows local attackers to disclose sensitive information on affected installations of the Linux Kernel 6.0-rc2. An attacker must first obtain the ability to execute high-privileged…
CVE-2022-1304 medium 5.5 4y ago RHSA-2022:7720: e2fsprogs security and bug fix update (Moderate)
CVE-2022-49259 medium 5.5 4y ago RHSA-2022:7683: kernel security, bug fix, and enhancement update (Moderate)
CVE-2022-49263 medium 5.5 4y ago RHSA-2022:7683: kernel security, bug fix, and enhancement update (Moderate)
CVE-2022-49270 medium 5.5 4y ago In the Linux kernel, the following vulnerability has been resolved: dm: fix use-after-free in dm_cleanup_zoned_dev() dm_cleanup_zoned_dev() uses queue, so it must be called before blk_cleanup_disk(…
CVE-2022-49272 medium 5.5 4y ago RHSA-2022:7683: kernel security, bug fix, and enhancement update (Moderate)
CVE-2022-49288 medium 5.5 4y ago RHSA-2022:7683: kernel security, bug fix, and enhancement update (Moderate)
CVE-2022-49291 medium 5.5 4y ago In the Linux kernel, the following vulnerability has been resolved: ALSA: pcm: Fix races among concurrent hw_params and hw_free calls Currently we have neither proper check nor protection against t…
CVE-2022-49306 medium 5.5 4y ago In the Linux kernel, the following vulnerability has been resolved: usb: dwc3: host: Stop setting the ACPI companion It is no longer needed. The sysdev pointer is now used when assigning the ACPI c…
CVE-2022-49325 medium 5.5 4y ago In the Linux kernel, the following vulnerability has been resolved: tcp: add accessors to read/set tp->snd_cwnd We had various bugs over the years with code breaking the assumption that tp->snd_cwn…
CVE-2022-49332 medium 5.5 4y ago In the Linux kernel, the following vulnerability has been resolved: scsi: lpfc: Address NULL pointer dereference after starget_to_rport() Calls to starget_to_rport() may return NULL. Add check for…
CVE-2022-49334 medium 5.5 4y ago In the Linux kernel, the following vulnerability has been resolved: mm/huge_memory: Fix xarray node memory leak If xas_split_alloc() fails to allocate the necessary nodes to complete the xarray ent…
CVE-2022-49340 medium 5.5 4y ago In the Linux kernel, the following vulnerability has been resolved: ip_gre: test csum_start instead of transport header GRE with TUNNEL_CSUM will apply local checksum offload on CHECKSUM_PARTIAL pa…
CVE-2022-49343 medium 5.5 4y ago RHSA-2022:7683: kernel security, bug fix, and enhancement update (Moderate)
CVE-2022-49348 medium 5.5 4y ago In the Linux kernel, the following vulnerability has been resolved: ext4: filter out EXT4_FC_REPLAY from on-disk superblock field s_state The EXT4_FC_REPLAY bit in sbi->s_mount_state is used to ind…
CVE-2022-49349 medium 5.5 4y ago RHSA-2022:7683: kernel security, bug fix, and enhancement update (Moderate)
CVE-2022-3500 medium 5.5 4y ago Moderate: keylime security update
CVE-2022-2309 medium 5.5 4y ago Moderate: python-lxml security update
CVE-2022-49378 medium 5.5 4y ago RHSA-2022:7683: kernel security, bug fix, and enhancement update (Moderate)
CVE-2022-49389 medium 5.5 4y ago In the Linux kernel, the following vulnerability has been resolved: usb: usbip: fix a refcount leak in stub_probe() usb_get_dev() is called in stub_device_alloc(). When stub_probe() fails after tha…
CVE-2022-49408 medium 5.5 4y ago In the Linux kernel, the following vulnerability has been resolved: ext4: fix memory leak in parse_apply_sb_mount_options() If processing the on-disk mount options fails after any memory was alloca…
CVE-2022-49411 medium 5.5 4y ago In the Linux kernel, the following vulnerability has been resolved: bfq: Make sure bfqg for which we are queueing requests is online Bios queued into BFQ IO scheduler can be associated with a cgrou…
CVE-2022-49412 medium 5.5 4y ago In the Linux kernel, the following vulnerability has been resolved: bfq: Avoid merging queues with different parents It can happen that the parent of a bfqq changes between the moment we decide two…
CVE-2022-49413 medium 5.5 4y ago In the Linux kernel, the following vulnerability has been resolved: bfq: Update cgroup information before merging bio When the process is migrated to a different cgroup (or in case of writeback jus…
CVE-2022-49440 medium 5.5 4y ago In the Linux kernel, the following vulnerability has been resolved: powerpc/rtas: Keep MSR[RI] set when calling RTAS RTAS runs in real mode (MSR[DR] and MSR[IR] unset) and in 32-bit big endian mode…
CVE-2022-22662 medium 5.5 4y ago RHSA-2022:7704: webkit2gtk3 security and bug fix update (Moderate)
CVE-2022-25310 medium 5.5 4y ago RHSA-2022:7514: fribidi security update (Moderate)
CVE-2022-49543 medium 5.5 4y ago RHSA-2022:7683: kernel security, bug fix, and enhancement update (Moderate)
CVE-2022-32990 medium 5.5 4y ago Moderate: gimp security and enhancement update
CVE-2022-49297 medium 5.5 4y ago In the Linux kernel, the following vulnerability has been resolved: nbd: fix io hung while disconnecting device In our tests, "qemu-nbd" triggers a io hung: INFO: task qemu-nbd:11445 blocked for m…
CVE-2022-50179 medium 5.5 4y ago In the Linux kernel, the following vulnerability has been resolved: ath9k: fix use-after-free in ath9k_hif_usb_rx_cb Syzbot reported use-after-free Read in ath9k_hif_usb_rx_cb() [0]. The problem wa…
CVE-2022-50187 medium 5.5 4y ago RHSA-2022:7683: kernel security, bug fix, and enhancement update (Moderate)
CVE-2022-50212 medium 5.5 4y ago In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: do not allow CHAIN_ID to refer to another table When doing lookups for chains on the same batch by using it…
CVE-2022-49130 medium 5.5 4y ago RHSA-2022:7683: kernel security, bug fix, and enhancement update (Moderate)
CVE-2022-49626 medium 5.5 4y ago RHSA-2022:7683: kernel security, bug fix, and enhancement update (Moderate)
CVE-2022-30067 medium 5.5 4y ago Moderate: gimp security and enhancement update
CVE-2022-0918 medium 5.5 4y ago RHSA-2022:5823: 389-ds:1.4 security update (Moderate)
CVE-2022-49561 medium 5.5 4y ago RHSA-2022:7683: kernel security, bug fix, and enhancement update (Moderate)
CVE-2022-0996 medium 5.5 4y ago RHSA-2022:5823: 389-ds:1.4 security update (Moderate)
CVE-2022-26125 medium 5.5 4y ago Moderate: frr security, bug fix, and enhancement update
CVE-2022-49531 medium 5.5 4y ago In the Linux kernel, the following vulnerability has been resolved: loop: implement ->free_disk Ensure that the lo_device which is stored in the gendisk private data is valid until the gendisk is f…
CVE-2022-49664 medium 5.5 4y ago RHSA-2022:7683: kernel security, bug fix, and enhancement update (Moderate)
CVE-2022-49673 medium 5.5 4y ago RHSA-2022:7683: kernel security, bug fix, and enhancement update (Moderate)
CVE-2022-49515 medium 5.5 4y ago RHSA-2022:7683: kernel security, bug fix, and enhancement update (Moderate)
CVE-2022-49504 medium 5.5 4y ago In the Linux kernel, the following vulnerability has been resolved: scsi: lpfc: Inhibit aborts if external loopback plug is inserted After running a short external loopback test, when the external …
CVE-2022-31625 medium 5.5 4y ago RHSA-2022:7624: php:8.0 security, bug fix, and enhancement update (Moderate)
CVE-2022-49253 medium 5.5 4y ago In the Linux kernel, the following vulnerability has been resolved: media: usb: go7007: s2250-board: fix leak in probe() Call i2c_unregister_device(audio) on this error path.
CVE-2022-49247 medium 5.5 4y ago In the Linux kernel, the following vulnerability has been resolved: media: stk1160: If start stream fails, return buffers with VB2_BUF_STATE_QUEUED If the callback 'start_streaming' fails, then all…
CVE-2022-49215 medium 5.5 4y ago In the Linux kernel, the following vulnerability has been resolved: xsk: Fix race at socket teardown Fix a race in the xsk socket teardown code that can lead to a NULL pointer dereference splat. Th…
CVE-2022-21166 medium 5.5 4y ago RHSA-2022:6460: kernel security, bug fix, and enhancement update (Moderate)
CVE-2022-49238 medium 5.5 4y ago RHSA-2022:7683: kernel security, bug fix, and enhancement update (Moderate)
CVE-2022-1049 medium 5.5 4y ago RHSA-2022:7447: pcs security, bug fix, and enhancement update (Moderate)
CVE-2022-48905 medium 5.5 4y ago In the Linux kernel, the following vulnerability has been resolved: ibmvnic: free reset-work-item when flushing Fix a tiny memory leak when flushing the reset work queue.
CVE-2022-22628 medium 5.5 4y ago RHSA-2022:7704: webkit2gtk3 security and bug fix update (Moderate)
CVE-2022-49264 medium 5.5 4y ago In the Linux kernel, the following vulnerability has been resolved: exec: Force single empty string when argv is empty Quoting[1] Ariadne Conill: "In several other operating systems, it is a hard …
CVE-2022-22719 medium 5.5 4y ago RHSA-2022:7647: httpd:2.4 security update (Moderate)
CVE-2022-22721 medium 5.5 4y ago RHSA-2022:7647: httpd:2.4 security update (Moderate)
CVE-2022-23943 medium 5.5 4y ago RHSA-2022:7647: httpd:2.4 security update (Moderate)
CVE-2022-26377 medium 5.5 4y ago RHSA-2022:7647: httpd:2.4 security update (Moderate)
CVE-2022-28614 medium 5.5 4y ago RHSA-2022:7647: httpd:2.4 security update (Moderate)
CVE-2022-28615 medium 5.5 4y ago RHSA-2022:7647: httpd:2.4 security update (Moderate)
CVE-2022-30522 medium 5.5 4y ago RHSA-2022:7647: httpd:2.4 security update (Moderate)
CVE-2022-30556 medium 5.5 4y ago RHSA-2022:7647: httpd:2.4 security update (Moderate)
CVE-2022-31813 medium 5.5 4y ago RHSA-2022:7647: httpd:2.4 security update (Moderate)
CVE-2022-27337 medium 5.5 4y ago RHSA-2022:7594: poppler security and bug fix update (Moderate)
CVE-2022-0562 medium 5.5 4y ago RHSA-2022:7585: libtiff security update (Moderate)
CVE-2022-0865 medium 5.5 4y ago RHSA-2022:7585: libtiff security update (Moderate)
CVE-2022-0908 medium 5.5 4y ago RHSA-2022:7585: libtiff security update (Moderate)
CVE-2022-0924 medium 5.5 4y ago RHSA-2022:7585: libtiff security update (Moderate)
CVE-2022-0909 medium 5.5 4y ago RHSA-2022:7585: libtiff security update (Moderate)