CVE-2023-38201
- EPSS 0.02%
- Published 25.08.2023 17:15:08
- Last modified 21.11.2024 08:13:04
A flaw was found in the Keylime registrar that could allow a bypass of the challenge-response protocol during agent registration. This issue may allow an attacker to impersonate an agent and hide the true status of a monitored machine if the fake age...
CVE-2023-4042
- EPSS 0.03%
- Published 23.08.2023 13:15:07
- Last modified 21.11.2024 08:34:17
A flaw was found in ghostscript. The fix for CVE-2020-16305 in ghostscript was not included in RHSA-2021:1852-06 advisory as it was claimed to be. This issue only affects the ghostscript package as shipped with Red Hat Enterprise Linux 8.
CVE-2023-3899
- EPSS 0.03%
- Published 23.08.2023 11:15:07
- Last modified 21.11.2024 08:18:19
A vulnerability was found in subscription-manager that allows local privilege escalation due to inadequate authorization. The D-Bus interface com.redhat.RHSM1 exposes a significant number of methods to all users that could change the state of the reg...
CVE-2023-4459
- EPSS 0.01%
- Published 21.08.2023 19:15:09
- Last modified 21.11.2024 08:35:12
A NULL pointer dereference flaw was found in vmxnet3_rq_cleanup in drivers/net/vmxnet3/vmxnet3_drv.c in the networking sub-component in vmxnet3 in the Linux Kernel. This issue may allow a local attacker with normal user privilege to cause a denial of...
CVE-2023-4387
- EPSS 0.02%
- Published 16.08.2023 19:15:10
- Last modified 03.06.2025 03:15:25
A use-after-free flaw was found in vmxnet3_rq_alloc_rx_buf in drivers/net/vmxnet3/vmxnet3_drv.c in VMware's vmxnet3 ethernet NIC driver in the Linux Kernel. This issue could allow a local attacker to crash the system due to a double-free while cleani...
CVE-2023-39417
- EPSS 0.61%
- Published 11.08.2023 13:15:09
- Last modified 21.11.2024 08:15:22
IN THE EXTENSION SCRIPT, a SQL Injection vulnerability was found in PostgreSQL if it uses @extowner@, @extschema@, or @extschema:...@ inside a quoting construct (dollar quoting, '', or ""). If an administrator has installed files of a vulnerable, tru...
CVE-2023-39418
- EPSS 0.44%
- Published 11.08.2023 13:15:09
- Last modified 06.12.2024 11:15:06
A vulnerability was found in PostgreSQL with the use of the MERGE command, which fails to test new rows against row security policies defined for UPDATE and SELECT. If UPDATE and SELECT policies forbid some rows that INSERT policies do not forbid, a ...
CVE-2022-40982
- EPSS 0.73%
- Published 11.08.2023 03:15:14
- Last modified 21.11.2024 07:22:21
Information exposure through microarchitectural state after transient execution in certain vector execution units for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
CVE-2023-4273
- EPSS 0.07%
- Published 09.08.2023 15:15:09
- Last modified 21.11.2024 08:34:46
A flaw was found in the exFAT driver of the Linux kernel. The vulnerability exists in the implementation of the file name reconstruction function, which is responsible for reading file name entries from a directory index and merging file name parts b...
CVE-2023-4147
- EPSS 0.15%
- Published 07.08.2023 14:15:11
- Last modified 21.11.2024 08:34:28
A use-after-free flaw was found in the Linux kernel’s Netfilter functionality when adding a rule with NFTA_RULE_CHAIN_ID. This flaw allows a local user to crash or escalate their privileges on the system.