CVE-2023-39417
- EPSS 0.61%
- Veröffentlicht 11.08.2023 13:15:09
- Zuletzt bearbeitet 21.11.2024 08:15:22
IN THE EXTENSION SCRIPT, a SQL Injection vulnerability was found in PostgreSQL if it uses @extowner@, @extschema@, or @extschema:...@ inside a quoting construct (dollar quoting, '', or ""). If an administrator has installed files of a vulnerable, tru...
CVE-2023-39418
- EPSS 0.44%
- Veröffentlicht 11.08.2023 13:15:09
- Zuletzt bearbeitet 06.12.2024 11:15:06
A vulnerability was found in PostgreSQL with the use of the MERGE command, which fails to test new rows against row security policies defined for UPDATE and SELECT. If UPDATE and SELECT policies forbid some rows that INSERT policies do not forbid, a ...
CVE-2022-40982
- EPSS 0.68%
- Veröffentlicht 11.08.2023 03:15:14
- Zuletzt bearbeitet 21.11.2024 07:22:21
Information exposure through microarchitectural state after transient execution in certain vector execution units for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
CVE-2023-4273
- EPSS 0.07%
- Veröffentlicht 09.08.2023 15:15:09
- Zuletzt bearbeitet 21.11.2024 08:34:46
A flaw was found in the exFAT driver of the Linux kernel. The vulnerability exists in the implementation of the file name reconstruction function, which is responsible for reading file name entries from a directory index and merging file name parts b...
CVE-2023-4147
- EPSS 0.16%
- Veröffentlicht 07.08.2023 14:15:11
- Zuletzt bearbeitet 21.11.2024 08:34:28
A use-after-free flaw was found in the Linux kernel’s Netfilter functionality when adding a rule with NFTA_RULE_CHAIN_ID. This flaw allows a local user to crash or escalate their privileges on the system.
CVE-2023-4194
- EPSS 0.01%
- Veröffentlicht 07.08.2023 14:15:11
- Zuletzt bearbeitet 21.11.2024 08:34:35
A flaw was found in the Linux kernel's TUN/TAP functionality. This issue could allow a local user to bypass network filters and gain unauthorized access to some resources. The original patches fixing CVE-2023-1076 are incorrect or incomplete. The pro...
CVE-2023-4133
- EPSS 0.01%
- Veröffentlicht 03.08.2023 15:15:33
- Zuletzt bearbeitet 21.11.2024 08:34:27
A use-after-free vulnerability was found in the cxgb4 driver in the Linux kernel. The bug occurs when the cxgb4 device is detaching due to a possible rearming of the flower_stats_timer from the work queue. This flaw allows a local user to crash the s...
CVE-2023-4132
- EPSS 0.01%
- Veröffentlicht 03.08.2023 15:15:32
- Zuletzt bearbeitet 21.11.2024 08:34:27
A use-after-free vulnerability was found in the siano smsusb module in the Linux kernel. The bug occurs during device initialization when the siano device is plugged in. This flaw allows a local user to crash the system, causing a denial of service c...
CVE-2023-38559
- EPSS 0.02%
- Veröffentlicht 01.08.2023 17:15:09
- Zuletzt bearbeitet 21.11.2024 08:13:49
A buffer overflow flaw was found in base/gdevdevn.c:1973 in devn_pcx_write_rle() in ghostscript. This issue may allow a local attacker to cause a denial of service via outputting a crafted PDF file for a DEVN device with gs.
CVE-2023-4004
- EPSS 0.02%
- Veröffentlicht 31.07.2023 17:15:10
- Zuletzt bearbeitet 21.11.2024 08:34:12
A use-after-free flaw was found in the Linux kernel's netfilter in the way a user triggers the nft_pipapo_remove function with the element, without a NFT_SET_EXT_KEY_END. This issue could allow a local user to crash the system or potentially escalate...