Aggregator
CVE-2022-49881 | Linux Kernel up to 4.19.266/5.4.224/5.10.154/5.15.78/6.0.8 wifi query_regdb_file alpha2 memory leak
CVE-2022-49879 | Linux Kernel up to 5.4.223/5.10.153/5.15.77/6.0.7 fs/ext4/ext4.h rec_len privilege escalation
CVE-2022-49931 | Linux Kernel up to 5.4.223/5.10.153/5.15.77/6.0.7 sc_disable null pointer dereference
CVE-2022-49874 | Linux Kernel up to 6.0.8 HID mousevsc_probe memory leak
CVE-2022-49875 | Linux Kernel up to 5.10.154/5.15.78/6.0.8 bpftool null pointer dereference
CVE-2022-49915 | Linux Kernel up to 6.0.7 mISDN mISDN_register_device memory leak
CVE-2022-49883 | Linux Kernel up to 6.0.7 KVM state issue
CVE-2022-49887 | Linux Kernel up to 5.4.223/5.10.153/5.15.77/6.0.7 media vdec_probe reference count
CVE-2022-49886 | Linux Kernel up to 6.0.7 on Linux stack-based overflow
CVE-2022-49904 | Linux Kernel up to 6.0.7 neigh_table_clear initialization
CVE-2022-49912 | Linux Kernel up to 6.0.7 btrfs test_no_shared_qgroup allocation of resources
CVE-2022-49871 | Linux Kernel up to 4.19.266/5.4.224/5.10.154/5.15.78/6.0.8 net tun_get_user memory leak
CVE-2022-49919 | Linux Kernel up to 5.4.223/5.10.153/5.15.77/6.0.7 netfilter use after free
CVE-2022-49920 | Linux Kernel up to 5.15.77/6.0.7 netfilter rcu_barrier privilege escalation
CVE-2022-49902 | Linux Kernel up to 5.15.77/6.0.7 block device_add_disk memory leak
CVE-2022-49901 | Linux Kernel up to 6.0.7 null_blk.ko allocation of resources
Analyzing CVE-2025-31191: A macOS security-scoped bookmarks-based sandbox escape
Microsoft uncovered a vulnerability in macOS that could allow specially crafted codes to escape the App Sandbox and run unrestricted on the system. We shared our findings with Apple and a fix was released for this vulnerability, now identified as CVE-2025-31191. We encourage macOS users to apply security updates as soon as possible.
The post Analyzing CVE-2025-31191: A macOS security-scoped bookmarks-based sandbox escape appeared first on Microsoft Security Blog.
Analyzing CVE-2025-31191: A macOS security-scoped bookmarks-based sandbox escape
Microsoft uncovered a vulnerability in macOS that could allow specially crafted codes to escape the App Sandbox and run unrestricted on the system. We shared our findings with Apple and a fix was released for this vulnerability, now identified as CVE-2025-31191. We encourage macOS users to apply security updates as soon as possible.
The post Analyzing CVE-2025-31191: A macOS security-scoped bookmarks-based sandbox escape appeared first on Microsoft Security Blog.