A vulnerability classified as problematic has been found in Linux Kernel up to 5.14.15 (Operating System). This affects the function tipc_crypto_key_rcv
of the file net/tipc/crypto.c of the component Inter-Process Communication. Upgrading to version 5.14.16 eliminates this vulnerability. The upgrade is hosted for download at cdn.kernel.org. Applying the patch fa40d9734a57bcbfa79a280189799f76c88f7bb0 is able to eliminate this problem. The bugfix is ready for download at github.com. The best possible mitigation is suggested to be upgrading to the latest version.
Linux Kernel up to 5.14.15 Inter-Process Communication net/tipc/crypto.c tipc_crypto_key_rcv missing encryption
- Virtual Patching
- November 3, 2021
- 8:05 am
CVE-2022-1558 : Multiple Stored Cross-Site Scripting vulnerabilities in WordPress curtain plugin 1.0.2
Description Several Cross-Site Scripting vulnerabilities in the Curtain WordPress plugin. Due to these Cross-Site Scripting vulnerabilities, an attacker would be
CVE-2022-AVAST2 : Self-Defense Bypass via Repairing Function
Description It was noted that there is security checking to prevent some of the Avast processes from loading of undesired/unsigned
CVE-2022-21500 : Oracle Security Alert Advisory
Description This Security Alert addresses vulnerability CVE-2022-21500, which affects some deployments of Oracle E-Business Suite. This vulnerability is remotely exploitable