CVE-2022-36402

CVSS v3 Score
5.5
Medium

Vulnerability Description

An integer overflow vulnerability was found in vmwgfx driver in drivers/gpu/vmxgfx/vmxgfx_execbuf.c in GPU component of Linux kernel with device file '/dev/dri/renderD128 (or Dxxx)'. This flaw allows a local attacker with a user account on the system to gain privilege, causing a denial of service(DoS).

CVSS:5.5(Medium)

Artifex MuPDF 1.14.0 has a SEGV in the function fz_load_page of the fitz/document.c file, as demonstrated by mutool. This is related to page-number mishandling in cbz/mucbz.c, cbz/muimg.c, and svg/svg...

CVSS:5.3(Medium)

In F5 BIG-IP APM 12.0.0 through 12.1.2 and 13.0.0, an authenticated user with an established access session to the BIG-IP APM system may be able to cause a traffic disruption if the length of the requ...

CVSS:6.5(Medium)

H2O version 2.2.3 and earlier allows remote attackers to cause a denial of service in the server via unspecified vectors.

CVSS:6.7(Medium)

NVIDIA DGX-2 SBIOS contains a vulnerability in Bds, where a user with high privileges can cause a write beyond the bounds of an indexable resource, which may lead to code execution, denial of service,...

CVSS:6.8(Medium)

Windows Mobile Broadband Driver Remote Code Execution Vulnerability

CVSS:9.8(Critical)

In all Qualcomm products with Android releases from CAF using the Linux kernel, the use of an out-of-range pointer offset is potentially possible in rollback protection.