CVE-2024-3183
- EPSS 16.79%
- Veröffentlicht 12.06.2024 09:15:18
- Zuletzt bearbeitet 21.11.2024 09:29:05
A vulnerability was found in FreeIPA in a way when a Kerberos TGS-REQ is encrypted using the client’s session key. This key is different for each new session, which protects it from brute force attacks. However, the ticket it contains is encrypted us...
CVE-2024-0229
- EPSS 0.29%
- Veröffentlicht 09.02.2024 07:16:00
- Zuletzt bearbeitet 04.08.2025 21:15:28
An out-of-bounds memory access flaw was found in the X.Org server. This issue can be triggered when a device frozen by a sync grab is reattached to a different master device. This issue may lead to an application crash, local privilege escalation (if...
CVE-2023-47038
- EPSS 0.11%
- Veröffentlicht 18.12.2023 14:15:08
- Zuletzt bearbeitet 27.03.2025 14:42:34
A vulnerability was found in perl 5.30.0 through 5.38.0. This issue occurs when a crafted regular expression is compiled by perl, which can allow an attacker controlled byte buffer overflow in a heap allocated buffer.
CVE-2023-3972
- EPSS 0.01%
- Veröffentlicht 01.11.2023 16:15:08
- Zuletzt bearbeitet 21.11.2024 08:18:25
A vulnerability was found in insights-client. This security issue occurs because of insecure file operations or unsafe handling of temporary files and directories that lead to local privilege escalation. Before the insights-client has been registered...
CVE-2023-0494
- EPSS 0.58%
- Veröffentlicht 27.03.2023 21:15:10
- Zuletzt bearbeitet 24.02.2025 18:15:16
A vulnerability was found in X.Org. This issue occurs due to a dangling pointer in DeepCopyPointerClasses that can be exploited by ProcXkbSetDeviceInfo() and ProcXkbGetDeviceInfo() to read and write into freed memory. This can lead to local privilege...
CVE-2021-3669
- EPSS 0.01%
- Veröffentlicht 26.08.2022 16:15:09
- Zuletzt bearbeitet 21.11.2024 06:22:06
A flaw was found in the Linux kernel. Measuring usage of the shared memory does not scale with large shared memory segment counts which could lead to resource exhaustion and DoS.
CVE-2021-20316
- EPSS 0.44%
- Veröffentlicht 23.08.2022 16:15:09
- Zuletzt bearbeitet 21.11.2024 05:46:21
A flaw was found in the way Samba handled file/directory metadata. This flaw allows an authenticated attacker with permissions to read or modify share metadata, to perform this operation outside of the share.
- EPSS 0.06%
- Veröffentlicht 03.03.2022 19:15:08
- Zuletzt bearbeitet 21.11.2024 06:21:58
.A flaw was found in the CAN BCM networking protocol in the Linux kernel, where a local attacker can abuse a flaw in the CAN subsystem to corrupt memory, crash the system or escalate privileges. This race condition in net/can/bcm.c in the Linux kerne...
CVE-2021-3570
- EPSS 1.23%
- Veröffentlicht 09.07.2021 11:15:08
- Zuletzt bearbeitet 21.11.2024 06:21:52
A flaw was found in the ptp4l program of the linuxptp package. A missing length check when forwarding a PTP message between ports allows a remote attacker to cause an information leak, crash, or potentially remote code execution. The highest threat f...
CVE-2020-14355
- EPSS 1.63%
- Veröffentlicht 07.10.2020 15:15:12
- Zuletzt bearbeitet 21.11.2024 05:03:04
Multiple buffer overflow vulnerabilities were found in the QUIC image decoding process of the SPICE remote display system, before spice-0.14.2-1. Both the SPICE client (spice-gtk) and server are affected by these flaws. These flaws allow a malicious ...