CVE-2023-2295
- EPSS 1.67%
- Veröffentlicht 17.05.2023 23:15:09
- Zuletzt bearbeitet 22.01.2025 19:15:08
A vulnerability was found in the libreswan library. This security issue occurs when an IKEv1 Aggressive Mode packet is received with only unacceptable crypto algorithms, and the response packet is not sent with a zero responder SPI. When a subsequent...
CVE-2023-2731
- EPSS 0.01%
- Veröffentlicht 17.05.2023 22:15:11
- Zuletzt bearbeitet 22.01.2025 19:15:09
A NULL pointer dereference flaw was found in Libtiff's LZWDecode() function in the libtiff/tif_lzw.c file. This flaw allows a local attacker to craft specific input data that can cause the program to dereference a NULL pointer when decompressing a TI...
CVE-2023-2203
- EPSS 0.1%
- Veröffentlicht 17.05.2023 22:15:10
- Zuletzt bearbeitet 22.01.2025 20:15:30
A flaw was found in the WebKitGTK package. An improper input validation issue may lead to a use-after-free vulnerability. This flaw allows attackers with network access to pass specially crafted web content files, causing a denial of service or arbit...
CVE-2023-2491
- EPSS 0.06%
- Veröffentlicht 17.05.2023 22:15:10
- Zuletzt bearbeitet 22.01.2025 19:15:09
A flaw was found in the Emacs text editor. Processing a specially crafted org-mode code with the "org-babel-execute:latex" function in ob-latex.el can result in arbitrary command execution. This CVE exists because of a CVE-2023-28617 security regress...
CVE-2023-2700
- EPSS 0.03%
- Veröffentlicht 15.05.2023 22:15:12
- Zuletzt bearbeitet 28.01.2025 17:15:14
A vulnerability was found in libvirt. This security flaw ouccers due to repeatedly querying an SR-IOV PCI device's capabilities that exposes a memory leak caused by a failure to free the virPCIVirtualFunction array within the parent struct's g_autopt...
CVE-2023-1729
- EPSS 0.06%
- Veröffentlicht 15.05.2023 22:15:10
- Zuletzt bearbeitet 20.03.2025 17:01:00
A flaw was found in LibRaw. A heap-buffer-overflow in raw2image_ex() caused by a maliciously crafted file may lead to an application crash.
CVE-2023-32573
- EPSS 0.06%
- Veröffentlicht 10.05.2023 06:15:19
- Zuletzt bearbeitet 27.01.2025 21:15:11
In Qt before 5.15.14, 6.0.x through 6.2.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.1, QtSvg QSvgFont m_unitsPerEm initialization is mishandled.
CVE-2023-2156
- EPSS 0.44%
- Veröffentlicht 09.05.2023 22:15:10
- Zuletzt bearbeitet 21.11.2024 07:58:02
A flaw was found in the networking subsystem of the Linux kernel within the handling of the RPL protocol. This issue results from the lack of proper handling of user-supplied data, which can lead to an assertion failure. This may allow an unauthentic...
CVE-2023-2513
- EPSS 0.01%
- Veröffentlicht 08.05.2023 21:15:11
- Zuletzt bearbeitet 23.04.2025 17:16:29
A use-after-free vulnerability was found in the Linux kernel's ext4 filesystem in the way it handled the extra inode size for extended attributes. This flaw could allow a privileged local user to cause a system crash or other undefined behaviors.
CVE-2023-32233
- EPSS 0.49%
- Veröffentlicht 08.05.2023 20:15:20
- Zuletzt bearbeitet 05.05.2025 16:15:39
In the Linux kernel through 6.3.1, a use-after-free in Netfilter nf_tables when processing batch requests can be abused to perform arbitrary read and write operations on kernel memory. Unprivileged local users can obtain root privileges. This occurs ...