CVE-2023-34318
- EPSS 0.04%
- Veröffentlicht 10.07.2023 18:15:10
- Zuletzt bearbeitet 27.06.2025 18:51:27
A heap buffer overflow vulnerability was found in sox, in the startread function at sox/src/hcom.c:160:41. This flaw can lead to a denial of service, code execution, or information disclosure.
CVE-2023-1183
- EPSS 4.98%
- Veröffentlicht 10.07.2023 16:15:48
- Zuletzt bearbeitet 21.11.2024 07:38:37
A flaw was found in the Libreoffice package. An attacker can craft an odb containing a "database/script" file with a SCRIPT command where the contents of the file could be written to a new file whose location was determined by the attacker.
CVE-2023-1206
- EPSS 0.02%
- Veröffentlicht 30.06.2023 22:15:09
- Zuletzt bearbeitet 21.11.2024 07:38:40
A hash collision flaw was found in the IPv6 connection lookup table in the Linux kernel’s IPv6 functionality when a user makes a new kind of SYN flood attack. A user located in the local network or with a high bandwidth connection can increase the CP...
CVE-2023-3138
- EPSS 0.19%
- Veröffentlicht 28.06.2023 21:15:10
- Zuletzt bearbeitet 21.11.2024 08:16:32
A vulnerability was found in libX11. The security flaw occurs because the functions in src/InitExt.c in libX11 do not check that the values provided for the Request, Event, or Error IDs are within the bounds of the arrays that those functions write t...
CVE-2023-3212
- EPSS 0.01%
- Veröffentlicht 23.06.2023 20:15:09
- Zuletzt bearbeitet 21.11.2024 08:16:42
A NULL pointer dereference issue was found in the gfs2 file system in the Linux kernel. It occurs on corrupt gfs2 file systems when the evict code tries to reference the journal descriptor structure after it has been freed and set to NULL. A privileg...
CVE-2023-32373
- EPSS 0.01%
- Veröffentlicht 23.06.2023 18:15:12
- Zuletzt bearbeitet 28.02.2025 14:53:55
A use-after-free issue was addressed with improved memory management. This issue is fixed in watchOS 9.5, tvOS 16.5, macOS Ventura 13.4, iOS 15.7.6 and iPadOS 15.7.6, Safari 16.5, iOS 16.5 and iPadOS 16.5. Processing maliciously crafted web content m...
CVE-2023-3161
- EPSS 0.01%
- Veröffentlicht 12.06.2023 20:15:12
- Zuletzt bearbeitet 11.03.2025 15:15:39
A flaw was found in the Framebuffer Console (fbcon) in the Linux Kernel. When providing font->width and font->height greater than 32 to fbcon_set_font, since there are no checks in place, a shift-out-of-bounds occurs leading to undefined behavior and...
CVE-2023-2454
- EPSS 0.24%
- Veröffentlicht 09.06.2023 19:15:09
- Zuletzt bearbeitet 06.01.2025 18:15:13
schema_element defeats protective search_path changes; It was found that certain database calls in PostgreSQL could permit an authed attacker with elevated database-level privileges to execute arbitrary code.
CVE-2023-2455
- EPSS 0.21%
- Veröffentlicht 09.06.2023 19:15:09
- Zuletzt bearbeitet 06.01.2025 18:15:13
Row security policies disregard user ID changes after inlining; PostgreSQL could permit incorrect policies to be applied in certain cases where role-specific policies are used and a given query is planned under one role and then executed under other ...
CVE-2023-2603
- EPSS 1.15%
- Veröffentlicht 06.06.2023 20:15:13
- Zuletzt bearbeitet 24.04.2025 17:03:07
A vulnerability was found in libcap. This issue occurs in the _libcap_strdup() function and can lead to an integer overflow if the input string is close to 4GiB.