CVE-2023-0778
- EPSS 0.12%
- Published 27.03.2023 21:15:10
- Last modified 24.02.2025 18:15:16
A Time-of-check Time-of-use (TOCTOU) flaw was found in podman. This issue may allow a malicious user to replace a normal file in a volume with a symlink while exporting the volume, allowing for access to arbitrary files on the host file system.
CVE-2023-1073
- EPSS 0.02%
- Published 27.03.2023 21:15:10
- Last modified 23.04.2025 17:16:24
A memory corruption flaw was found in the Linux kernel’s human interface device (HID) subsystem in how a user inserts a malicious USB device. This flaw allows a local user to crash or potentially escalate their privileges on the system.
CVE-2023-1380
- EPSS 0.03%
- Published 27.03.2023 21:15:10
- Last modified 21.11.2024 07:39:04
A slab-out-of-bound read problem was found in brcmf_get_assoc_ies in drivers/net/wireless/broadcom/brcm80211/brcmfmac/cfg80211.c in the Linux Kernel. This issue could occur when assoc_info->req_len data is bigger than the size of the buffer, defined ...
CVE-2021-3923
- EPSS 0.01%
- Published 27.03.2023 21:15:09
- Last modified 24.02.2025 20:15:31
A flaw was found in the Linux kernel's implementation of RDMA over infiniband. An attacker with a privileged local account can leak kernel stack information when issuing commands to the /dev/infiniband/rdma_cm device node. While this access is unlike...
CVE-2023-1513
- EPSS 0.01%
- Published 23.03.2023 21:15:19
- Last modified 25.02.2025 20:15:32
A flaw was found in KVM. When calling the KVM_GET_DEBUGREGS ioctl, on 32-bit systems, there might be some uninitialized portions of the kvm_debugregs structure that could be copied to userspace, causing an information leak.
CVE-2023-1289
- EPSS 0.13%
- Published 23.03.2023 20:15:14
- Last modified 21.11.2024 07:38:50
A vulnerability was discovered in ImageMagick where a specially created SVG file loads itself and causes a segmentation fault. This flaw allows a remote attacker to pass a specially crafted SVG file that leads to a segmentation fault, generating many...
CVE-2022-4904
- EPSS 0.14%
- Published 06.03.2023 23:15:11
- Last modified 21.11.2024 07:36:12
A flaw was found in the c-ares package. The ares_set_sortlist is missing checks about the validity of the input string, which allows a possible arbitrary length stack overflow. This issue may cause a denial of service or a limited impact on confident...
CVE-2019-8720
- EPSS 8.24%
- Published 06.03.2023 23:15:10
- Last modified 27.03.2025 14:08:19
A vulnerability was found in WebKit. The flaw is triggered when processing maliciously crafted web content that may lead to arbitrary code execution. Improved memory handling addresses the multiple memory corruption issues.
CVE-2022-3424
- EPSS 0.02%
- Published 06.03.2023 23:15:10
- Last modified 06.03.2025 21:15:12
A use-after-free flaw was found in the Linux kernel’s SGI GRU driver in the way the first gru_file_unlocked_ioctl function is called by the user, where a fail pass occurs in the gru_check_chiplet_assignment function. This flaw allows a local user to ...
CVE-2022-3707
- EPSS 0.02%
- Published 06.03.2023 23:15:10
- Last modified 07.03.2025 16:15:35
A double-free memory flaw was found in the Linux kernel. The Intel GVT-g graphics driver triggers VGA card system resource overload, causing a fail in the intel_gvt_dma_map_guest_page function. This issue could allow a local user to crash the system.