CVE-2023-3576
- EPSS 0.03%
- Published 04.10.2023 19:15:10
- Last modified 21.11.2024 08:17:35
A memory leak flaw was found in Libtiff's tiffcrop utility. This issue occurs when tiffcrop operates on a TIFF image file, allowing an attacker to pass a crafted TIFF image file to tiffcrop utility, which causes this memory leak issue, resulting an a...
CVE-2022-4132
- EPSS 0.07%
- Published 04.10.2023 12:15:10
- Last modified 21.11.2024 07:34:38
A flaw was found in JSS. A memory leak in JSS requires non-standard configuration but is a low-effort DoS vector if configured that way (repeatedly hitting the login page).
CVE-2023-4911
- EPSS 78.36%
- Published 03.10.2023 18:15:10
- Last modified 06.05.2025 21:02:34
A buffer overflow was discovered in the GNU C Library's dynamic loader ld.so while processing the GLIBC_TUNABLES environment variable. This issue could allow a local attacker to use maliciously crafted GLIBC_TUNABLES environment variables when launch...
CVE-2023-4732
- EPSS 0.01%
- Published 03.10.2023 17:15:09
- Last modified 21.11.2024 08:35:51
A flaw was found in pfn_swap_entry_to_page in memory management subsystem in the Linux Kernel. In this flaw, an attacker with a local user privilege may cause a denial of service problem due to a BUG statement referencing pmd_t x.
CVE-2023-44488
- EPSS 0.82%
- Published 30.09.2023 20:15:10
- Last modified 21.11.2024 08:25:59
VP9 in libvpx before 1.13.1 mishandles widths, leading to a crash related to encoding.
CVE-2023-5217
- EPSS 1.8%
- Published 28.09.2023 16:15:10
- Last modified 03.04.2025 18:55:36
Heap buffer overflow in vp8 encoding in libvpx in Google Chrome prior to 117.0.5938.132 and libvpx 1.13.1 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVE-2023-5215
- EPSS 0.07%
- Published 28.09.2023 14:15:26
- Last modified 21.11.2024 08:41:18
A flaw was found in libnbd. A server can reply with a block size larger than 2^63 (the NBD spec states the size is a 64-bit unsigned value). This issue could lead to an application crash or other unintended behavior for NBD clients that doesn't treat...
CVE-2023-42756
- EPSS 0.01%
- Published 28.09.2023 14:15:21
- Last modified 21.11.2024 08:23:06
A flaw was found in the Netfilter subsystem of the Linux kernel. A race condition between IPSET_CMD_ADD and IPSET_CMD_SWAP can lead to a kernel panic due to the invocation of `__ip_set_put` on a wrong `set`. This issue may allow a local user to crash...
CVE-2023-5157
- EPSS 0.27%
- Published 27.09.2023 15:19:41
- Last modified 01.10.2025 15:15:41
A vulnerability was found in MariaDB. An OpenVAS port scan on ports 3306 and 4567 allows a malicious remote client to cause a denial of service.
CVE-2023-42753
- EPSS 0.01%
- Published 25.09.2023 21:15:15
- Last modified 21.11.2024 08:23:06
An array indexing vulnerability was found in the netfilter subsystem of the Linux kernel. A missing macro could lead to a miscalculation of the `h->nets` array offset, providing attackers with the primitive to arbitrarily increment/decrement a memory...