CVE-2024-1488
- EPSS 0.11%
- Veröffentlicht 15.02.2024 05:15:10
- Zuletzt bearbeitet 30.01.2025 22:15:09
A vulnerability was found in Unbound due to incorrect default permissions, allowing any process outside the unbound group to modify the unbound runtime configuration. If a process can connect over localhost to port 8953, it can alter the configuratio...
CVE-2024-1062
- EPSS 0.03%
- Veröffentlicht 12.02.2024 13:15:09
- Zuletzt bearbeitet 18.02.2025 11:15:11
A heap overflow flaw was found in 389-ds-base. This issue leads to a denial of service when writing a value larger than 256 chars in log_entry_attr.
CVE-2023-6356
- EPSS 0.02%
- Veröffentlicht 07.02.2024 21:15:08
- Zuletzt bearbeitet 04.11.2025 19:16:24
A flaw was found in the Linux kernel's NVMe driver. This issue may allow an unauthenticated malicious actor to send a set of crafted TCP packages when using NVMe over TCP, leading the NVMe driver to a NULL pointer dereference in the NVMe driver and c...
CVE-2023-6535
- EPSS 0.03%
- Veröffentlicht 07.02.2024 21:15:08
- Zuletzt bearbeitet 04.11.2025 19:16:24
A flaw was found in the Linux kernel's NVMe driver. This issue may allow an unauthenticated malicious actor to send a set of crafted TCP packages when using NVMe over TCP, leading the NVMe driver to a NULL pointer dereference in the NVMe driver, caus...
CVE-2023-6536
- EPSS 0.03%
- Veröffentlicht 07.02.2024 21:15:08
- Zuletzt bearbeitet 04.11.2025 19:16:24
A flaw was found in the Linux kernel's NVMe driver. This issue may allow an unauthenticated malicious actor to send a set of crafted TCP packages when using NVMe over TCP, leading the NVMe driver to a NULL pointer dereference in the NVMe driver, caus...
CVE-2023-5992
- EPSS 0.26%
- Veröffentlicht 31.01.2024 14:15:48
- Zuletzt bearbeitet 03.11.2025 22:16:32
A vulnerability was found in OpenSC where PKCS#1 encryption padding removal is not implemented as side-channel resistant. This issue may result in the potential leak of private data.
CVE-2023-5455
- EPSS 0.3%
- Veröffentlicht 10.01.2024 13:15:48
- Zuletzt bearbeitet 18.03.2026 04:16:51
A Cross-site request forgery vulnerability exists in ipa/session/login_password in all supported versions of IPA. This flaw allows an attacker to trick the user into submitting a request that could perform actions as the user, resulting in a loss of ...
CVE-2024-0193
- EPSS 0.14%
- Veröffentlicht 02.01.2024 18:15:08
- Zuletzt bearbeitet 15.05.2026 17:45:36
A use-after-free flaw was found in the netfilter subsystem of the Linux kernel. If the catchall element is garbage-collected when the pipapo set is removed, the element can be deactivated twice. This can cause a use-after-free issue on an NFT_CHAIN o...
CVE-2023-5868
- EPSS 2.72%
- Veröffentlicht 10.12.2023 18:15:07
- Zuletzt bearbeitet 04.11.2025 20:17:13
A memory disclosure vulnerability was found in PostgreSQL that allows remote users to access sensitive information by exploiting certain aggregate function calls with 'unknown'-type arguments. Handling 'unknown'-type values from string literals witho...
CVE-2023-5869
- EPSS 1.61%
- Veröffentlicht 10.12.2023 18:15:07
- Zuletzt bearbeitet 04.11.2025 20:17:13
A flaw was found in PostgreSQL that allows authenticated database users to execute arbitrary code through missing overflow checks during SQL array value modification. This issue exists due to an integer overflow during array modification where a remo...