NVD disclosure day

Published threat advisories for March 3, 2022

CVE advisoryKnown Exploit

CVE-2022-0492

Linux Kernel Privilege Escalation via Cgroups v1 Release Agent

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A vulnerability in the Linux kernel's cgroup v1 release_agent feature allows privilege escalation and bypass of namespace isolation. This requires local, authenticated access and could lead to unauthorized system access if reachable.

• CISA KEV

CVE advisoryKnown Exploit

CVE-2022-22706

Arm Mali GPU Driver Unauthorized Memory Write

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A flaw in the Arm Mali GPU Kernel Driver allows unauthorized memory writes, potentially impacting system stability and data. This affects specific versions of the Midgard, Bifrost, and Valhall drivers, posing a risk of data manipulation or system compromise for organizations. Organizations should identify affected asse

• CISA KEV

CVE advisoryCRITICAL

CVE-2022-25089

Printix Cloud Print Management Privileged API Abuse Vulnerability.

Halo Surface Signal: 2 out of 5 — less likely to be public-facing.

Printix software contains a vulnerability allowing unauthorized modification of system settings by abusing privileged APIs. An attacker could exploit this remotely, potentially compromising system integrity and availability. It is important to confirm if this print management software is used within your environment an