DE EN FR
hlukh.ch Stand: 2026-02-25T21:01:10.471Z · week: 2022-W19

Sicherheitswarnungen

Kuratiert aus öffentlich verfügbaren Advisories. Fokus: Sichtbarkeit, Einordnung und schneller Export – ohne Clickbait.

Neueste Warnungen
CVE-2022-23267
.NET and Visual Studio Denial of Service Vulnerability
2026‑02‑21 · CVE-2022-23267
MSRC 2026‑02‑21 Hoch
CVE-2022-29117
.NET and Visual Studio Denial of Service Vulnerability
2026‑02‑21 · CVE-2022-29117
MSRC 2026‑02‑21 Hoch
CVE-2022-29145
.NET and Visual Studio Denial of Service Vulnerability
2026‑02‑21 · CVE-2022-29145
MSRC 2026‑02‑21 Hoch
CVE-2022-1353
<vuln:Note Title="Mariner" Type="Tag" Ordinal="20">Mariner
2026‑02‑21 · CVE-2022-1353
MSRC 2026‑02‑21 Hoch
CVE-2022-1227
<vuln:Note Title="Mariner" Type="Tag" Ordinal="20">Mariner
2026‑02‑21 · CVE-2022-1227
MSRC 2026‑02‑21 Hoch
CVE-2022-1048
<vuln:Note Title="Mariner" Type="Tag" Ordinal="20">Mariner
2026‑02‑21 · CVE-2022-1048
MSRC 2026‑02‑21 Hoch
CVE-2022-24735
<vuln:Note Title="Mariner" Type="Tag" Ordinal="20">Mariner
2026‑02‑21 · CVE-2022-24735
MSRC 2026‑02‑21 Hoch
CVE-2022-27405
<vuln:Note Title="Mariner" Type="Tag" Ordinal="20">Mariner
2026‑02‑21 · CVE-2022-27405
MSRC 2026‑02‑21 Hoch
CVE-2022-29582
<vuln:Note Title="Mariner" Type="Tag" Ordinal="20">Mariner
2026‑02‑21 · CVE-2022-29582
MSRC 2026‑02‑21 Hoch
CVE-2022-27239
<vuln:Note Title="Mariner" Type="Tag" Ordinal="20">Mariner
2026‑02‑21 · CVE-2022-27239
MSRC 2026‑02‑21 Hoch
CVE-2022-30789
A crafted NTFS image can cause a heap-based buffer overflow in ntfs_check_log_client_array in NTFS-3G through 2021.8.22.
2026‑02‑21 · CVE-2022-30789
MSRC 2026‑02‑21 Hoch
CVE-2022-30788
A crafted NTFS image can cause a heap-based buffer overflow in ntfs_mft_rec_alloc in NTFS-3G through 2021.8.22.
2026‑02‑21 · CVE-2022-30788
MSRC 2026‑02‑21 Hoch
CVE-2022-30786
A crafted NTFS image can cause a heap-based buffer overflow in ntfs_names_full_collate in NTFS-3G through 2021.8.22.
2026‑02‑21 · CVE-2022-30786
MSRC 2026‑02‑21 Hoch
CVE-2022-30784
A crafted NTFS image can cause heap exhaustion in ntfs_get_attribute_value in NTFS-3G through 2021.8.22.
2026‑02‑21 · CVE-2022-30784
MSRC 2026‑02‑21 Hoch
CVE-2021-3750
A DMA reentrancy issue was found in the USB EHCI controller emulation of QEMU. EHCI does not verify if the Buffer Pointer overlaps with its MMIO region when it transfers the USB packets. Crafted content may be written to the controller's registers and trigger undesirable actions (such as reset) while the device is still transferring packets. This can ultimately lead to a use-after-free issue. A malicious guest could use this flaw to crash the QEMU process on the host resulting in a denial of service condition or potentially execute arbitrary code within the context of the QEMU process on the host. This flaw affects QEMU versions before 7.0.0.
2026‑02‑21 · CVE-2021-3750
MSRC 2026‑02‑21 Hoch
CVE-2022-1734
A flaw in Linux Kernel found in nfcmrvl_nci_unregister_dev() in drivers/nfc/nfcmrvl/main.c can lead to use after free both read or write when non synchronized between cleanup routine and firmware download routine.
2026‑02‑21 · CVE-2022-1734
MSRC 2026‑02‑21 Hoch
CVE-2022-1215
A format string vulnerability was found in libinput
2026‑02‑21 · CVE-2022-1215
MSRC 2026‑02‑21 Hoch
CVE-2022-1786
A use-after-free flaw was found in the Linux kernel’s io_uring subsystem in the way a user sets up a ring with IORING_SETUP_IOPOLL with more than one task completing submissions on this ring. This flaw allows a local user to crash or escalate their privileges on the system.
2026‑02‑21 · CVE-2022-1786
MSRC 2026‑02‑21 Hoch
CVE-2022-1882
A use-after-free flaw was found in the Linux kernel’s pipes functionality in how a user performs manipulations with the pipe post_one_notification() after free_pipe_info() that is already called. This flaw allows a local user to crash or potentially escalate their privileges on the system.
2026‑02‑21 · CVE-2022-1882
MSRC 2026‑02‑21 Hoch
CVE-2022-30065
A use-after-free in Busybox 1.35-x's awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the copyvar function.
2026‑02‑21 · CVE-2022-30065
MSRC 2026‑02‑21 Hoch
CVE-2022-26923
Active Directory Domain Services Elevation of Privilege Vulnerability
2026‑02‑21 · CVE-2022-26923
MSRC 2026‑02‑21 Hoch
CVE-2022-22576
An improper authentication vulnerability exists in curl 7.33.0 to and including 7.82.0 which might allow reuse OAUTH2-authenticated connections without properly making sure that the connection was authenticated with the same credentials as set for this transfer. This affects SASL-enabled protocols: SMPTP(S) IMAP(S) POP3(S) and LDAP(S) (openldap only).
2026‑02‑21 · CVE-2022-22576
MSRC 2026‑02‑21 Hoch
CVE-2022-28948
An issue in the Unmarshal function in Go-Yaml v3 causes the program to crash when attempting to deserialize invalid input.
2026‑02‑21 · CVE-2022-28948
MSRC 2026‑02‑21 Hoch
CVE-2022-29968
An issue was discovered in the Linux kernel through 5.17.5. io_rw_init_file in fs/io_uring.c lacks initialization of kiocb-&gt;private.
2026‑02‑21 · CVE-2022-29968
MSRC 2026‑02‑21 Hoch
CVE-2022-1629
Buffer Over-read in function find_next_quote in vim/vim
2026‑02‑21 · CVE-2022-1629
MSRC 2026‑02‑21 Hoch
CVE-2022-1769
Buffer Over-read in vim/vim
2026‑02‑21 · CVE-2022-1769
MSRC 2026‑02‑21 Hoch
CVE-2022-24903
Buffer overflow in TCP syslog server (receiver) components in rsyslog
2026‑02‑21 · CVE-2022-24903
MSRC 2026‑02‑21 Hoch
CVE-2022-20770
ClamAV CHM File Parsing Denial of Service Vulnerability Affecting Cisco Products: April 2022
2026‑02‑21 · CVE-2022-20770
MSRC 2026‑02‑21 Hoch
CVE-2022-20785
ClamAV HTML Scanning Memory Leak Vulnerability Affecting Cisco Products: April 2022
2026‑02‑21 · CVE-2022-20785
MSRC 2026‑02‑21 Hoch
CVE-2022-20771
ClamAV TIFF File Parsing Denial of Service Vulnerability Affecting Cisco Products: April 2022
2026‑02‑21 · CVE-2022-20771
MSRC 2026‑02‑21 Hoch
CVE-2022-1735
Classic Buffer Overflow in vim/vim
2026‑02‑21 · CVE-2022-1735
MSRC 2026‑02‑21 Hoch
CVE-2022-1621
Heap buffer overflow in vim_strncpy find_word in vim/vim
2026‑02‑21 · CVE-2022-1621
MSRC 2026‑02‑21 Hoch
CVE-2022-1619
Heap-based Buffer Overflow in function cmdline_erase_chars in vim/vim
2026‑02‑21 · CVE-2022-1619
MSRC 2026‑02‑21 Hoch
CVE-2022-1733
Heap-based Buffer Overflow in vim/vim
2026‑02‑21 · CVE-2022-1733
MSRC 2026‑02‑21 Hoch
CVE-2022-1886
Heap-based Buffer Overflow in vim/vim
2026‑02‑21 · CVE-2022-1886
MSRC 2026‑02‑21 Hoch
CVE-2022-29581
Improper Update of Reference Count vulnerability in net/sched of Linux Kernel allows local attacker to cause privilege escalation to root. This issue affects: Linux Kernel versions prior to 5.18; version 4.14 and later versions.
2026‑02‑21 · CVE-2022-29581
MSRC 2026‑02‑21 Hoch
CVE-2022-29162
Incorrect Default Permissions in runc
2026‑02‑21 · CVE-2022-29162
MSRC 2026‑02‑21 Hoch
CVE-2022-29217
Key confusion through non-blocklisted public key formats in PyJWT
2026‑02‑21 · CVE-2022-29217
MSRC 2026‑02‑21 Hoch
CVE-2022-1652
Linux Kernel could allow a local attacker to execute arbitrary code on the system caused by a concurrency use-after-free flaw in the bad_flp_intr function. By executing a specially-crafted program an attacker could exploit this vulnerability to execute arbitrary code or cause a denial of service condition on the system.
2026‑02‑21 · CVE-2022-1652
MSRC 2026‑02‑21 Hoch
CVE-2022-30128
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
2026‑02‑21 · CVE-2022-30128
MSRC 2026‑02‑21 Hoch
CVE-2022-30127
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
2026‑02‑21 · CVE-2022-30127
MSRC 2026‑02‑21 Hoch
CVE-2022-29109
Microsoft Excel Remote Code Execution Vulnerability
2026‑02‑21 · CVE-2022-29109
MSRC 2026‑02‑21 Hoch
CVE-2022-29110
Microsoft Excel Remote Code Execution Vulnerability
2026‑02‑21 · CVE-2022-29110
MSRC 2026‑02‑21 Hoch
CVE-2022-21978
Microsoft Exchange Server Elevation of Privilege Vulnerability
2026‑02‑21 · CVE-2022-21978
MSRC 2026‑02‑21 Hoch
CVE-2022-29108
Microsoft SharePoint Server Remote Code Execution Vulnerability
2026‑02‑21 · CVE-2022-29108
MSRC 2026‑02‑21 Hoch
CVE-2022-29105
Microsoft Windows Media Foundation Remote Code Execution Vulnerability
2026‑02‑21 · CVE-2022-29105
MSRC 2026‑02‑21 Hoch
CVE-2022-30190
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
2026‑02‑21 · CVE-2022-30190
MSRC 2026‑02‑21 Hoch
CVE-2021-46790
ntfsck in NTFS-3G through 2021.8.22 has a heap-based buffer overflow involving buffer+512*3-2. NOTE: the upstream position is that ntfsck is deprecated; however it is shipped by some Linux distributions.
2026‑02‑21 · CVE-2021-46790
MSRC 2026‑02‑21 Hoch
CVE-2022-1620
NULL Pointer Dereference in function vim_regexec_string at regexp.c:2729 in vim/vim
2026‑02‑21 · CVE-2022-1620
MSRC 2026‑02‑21 Hoch
CVE-2022-1851
Out-of-bounds Read in vim/vim
2026‑02‑21 · CVE-2022-1851
MSRC 2026‑02‑21 Hoch
Seite 1