Alertes récentes
| CVE-2022-23712 |
A Denial of Service flaw was discovered in Elasticsearch. Using this vulnerability an unauthenticated attacker could forcibly shut down an Elasticsearch node with a specifically formatted network request.
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-1943 |
A flaw out of bounds memory write in the Linux kernel UDF file system functionality was found in the way user triggers some file operation which triggers udf_write_fi(). A local user could use this flaw to crash the system or potentially
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2021-40633 |
A memory leak (out-of-memory) in gif2rgb in util/gif2rgb.c in giflib 5.1.4 allows remote attackers trigger an out of memory exception or denial of service via a gif format file.
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-1998 |
A use after free in the Linux kernel File System notify functionality was found in the way user triggers copy_info_records_to_user() call to fail in copy_event_to_user(). A local user could use this flaw to crash the system or potentially escalate their privileges on the system.
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-27778 |
A use of incorrectly resolved name vulnerability fixed in 7.83.1 might remove the wrong file when `--no-clobber` is used together with `--remove-on-error`.
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-1708 |
A vulnerability was found in CRI-O that causes memory or disk space exhaustion on the node for anyone with access to the Kube API. The ExecSync request runs commands in a container and logs the output of the command. This output is then read by CRI-O after command execution and it is read in a manner where the entire file corresponding to the output of the command is read in. Thus if the output of the command is large it is possible to exhaust the memory or the disk space of the node when CRI-O reads the output of the command. The highest threat from this vulnerability is system availability.
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-27775 |
An information disclosure vulnerability exists in curl 7.65.0 to 7.82.0 are vulnerable that by using an IPv6 address that was in the connection pool but with a different zone id it could reuse a connection instead.
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-32981 |
An issue was discovered in the Linux kernel through 5.18.3 on powerpc 32-bit platforms. There is a buffer overflow in ptrace PEEKUSER and POKEUSER (aka PEEKUSR and POKEUSR) when accessing floating point registers.
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-30167 |
AV1 Video Extension Remote Code Execution Vulnerability
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-30193 |
AV1 Video Extension Remote Code Execution Vulnerability
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-30180 |
Azure RTOS GUIX Studio Information Disclosure Vulnerability
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-30177 |
Azure RTOS GUIX Studio Remote Code Execution Vulnerability
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-30178 |
Azure RTOS GUIX Studio Remote Code Execution Vulnerability
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-30179 |
Azure RTOS GUIX Studio Remote Code Execution Vulnerability
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-2175 |
Buffer Over-read in vim/vim
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-2124 |
Buffer Over-read in vim/vim
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-30790 |
Das U-Boot 2022.01 has a Buffer Overflow, a different issue than CVE-2022-30552.
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-25345 |
Denial of Service (DoS)
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-31625 |
Freeing unallocated memory in php_pgsql_free_params()
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-2182 |
Heap-based Buffer Overflow in vim/vim
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-2125 |
Heap-based Buffer Overflow in vim/vim
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-29119 |
HEVC Video Extensions Remote Code Execution Vulnerability
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-22018 |
HEVC Video Extensions Remote Code Execution Vulnerability
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-29111 |
HEVC Video Extensions Remote Code Execution Vulnerability
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-30188 |
HEVC Video Extensions Remote Code Execution Vulnerability
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-30164 |
Kerberos AppContainer Security Feature Bypass Vulnerability
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-27781 |
libcurl provides the `CURLOPT_CERTINFO` option to allow applications torequest details to be returned about a server's certificate chain.Due to an erroneous function a malicious server could make libcurl built withNSS get stuck in a never-ending busy-loop when trying to retrieve thatinformation.
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-27782 |
libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited reuse.libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse if one of them matches the setup. However several TLS andSSH settings were left out from the configuration match checks making themmatch too easily.
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-30166 |
Local Security Authority Subsystem Service Elevation of Privilege Vulnerability
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-30192 |
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-33638 |
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-33639 |
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-33680 |
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-22021 |
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-30173 |
Microsoft Excel Remote Code Execution Vulnerability
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-30174 |
Microsoft Office Remote Code Execution Vulnerability
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-30168 |
Microsoft Photos App Remote Code Execution Vulnerability
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-30157 |
Microsoft SharePoint Server Remote Code Execution Vulnerability
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-30158 |
Microsoft SharePoint Server Remote Code Execution Vulnerability
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-29143 |
Microsoft SQL Server Remote Code Execution Vulnerability
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-31626 |
mysqlnd/pdo password buffer overflow
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-32250 |
net/netfilter/nf_tables_api.c in the Linux kernel through 5.18.1 allows a local user (able to create user/net namespaces) to escalate privileges to root because an incorrect NFT_STATEFUL_EXPR check leads to a use-after-free.
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-29244 |
npm packing does not respect root-level ignore files in workspaces
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-29149 |
Open Management Infrastructure (OMI) Elevation of Privilege Vulnerability
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-2126 |
Out-of-bounds Read in vim/vim
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-2183 |
Out-of-bounds Read in vim/vim
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-2129 |
Out-of-bounds Write in vim/vim
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-30160 |
Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-30151 |
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
|
MSRC | 2026‑02‑21 | Élevée |
| CVE-2022-30131 |
Windows Container Isolation FS Filter Driver Elevation of Privilege Vulnerability
|
MSRC | 2026‑02‑21 | Élevée |
Page 1