CVE-2023-1729
- EPSS 0.06%
- Veröffentlicht 15.05.2023 22:15:10
- Zuletzt bearbeitet 20.03.2025 17:01:00
A flaw was found in LibRaw. A heap-buffer-overflow in raw2image_ex() caused by a maliciously crafted file may lead to an application crash.
CVE-2023-32573
- EPSS 0.06%
- Veröffentlicht 10.05.2023 06:15:19
- Zuletzt bearbeitet 27.01.2025 21:15:11
In Qt before 5.15.14, 6.0.x through 6.2.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.1, QtSvg QSvgFont m_unitsPerEm initialization is mishandled.
CVE-2023-2156
- EPSS 0.47%
- Veröffentlicht 09.05.2023 22:15:10
- Zuletzt bearbeitet 21.11.2024 07:58:02
A flaw was found in the networking subsystem of the Linux kernel within the handling of the RPL protocol. This issue results from the lack of proper handling of user-supplied data, which can lead to an assertion failure. This may allow an unauthentic...
CVE-2023-2513
- EPSS 0.01%
- Veröffentlicht 08.05.2023 21:15:11
- Zuletzt bearbeitet 23.04.2025 17:16:29
A use-after-free vulnerability was found in the Linux kernel's ext4 filesystem in the way it handled the extra inode size for extended attributes. This flaw could allow a privileged local user to cause a system crash or other undefined behaviors.
CVE-2023-32233
- EPSS 0.49%
- Veröffentlicht 08.05.2023 20:15:20
- Zuletzt bearbeitet 05.05.2025 16:15:39
In the Linux kernel through 6.3.1, a use-after-free in Netfilter nf_tables when processing batch requests can be abused to perform arbitrary read and write operations on kernel memory. Unprivileged local users can obtain root privileges. This occurs ...
CVE-2023-30549
- EPSS 0.03%
- Veröffentlicht 25.04.2023 21:15:10
- Zuletzt bearbeitet 21.11.2024 08:00:24
Apptainer is an open source container platform for Linux. There is an ext4 use-after-free flaw that is exploitable through versions of Apptainer < 1.1.0 and installations that include apptainer-suid < 1.1.8 on older operating systems where that CVE h...
CVE-2023-2019
- EPSS 0.02%
- Veröffentlicht 24.04.2023 21:15:09
- Zuletzt bearbeitet 18.03.2025 20:15:19
A flaw was found in the Linux kernel's netdevsim device driver, within the scheduling of events. This issue results from the improper management of a reference count. This may allow an attacker to create a denial of service condition on the system.
CVE-2023-2194
- EPSS 0.02%
- Veröffentlicht 20.04.2023 21:15:09
- Zuletzt bearbeitet 23.04.2025 17:16:29
An out-of-bounds write vulnerability was found in the Linux kernel's SLIMpro I2C device driver. The userspace "data->block[0]" variable was not capped to a number between 0-255 and was used as the size of a memcpy, possibly writing beyond the end of ...
CVE-2023-28327
- EPSS 0.01%
- Veröffentlicht 19.04.2023 23:15:07
- Zuletzt bearbeitet 19.03.2025 16:15:21
A NULL pointer dereference flaw was found in the UNIX protocol in net/unix/diag.c In unix_diag_get_exact in the Linux Kernel. The newly allocated skb does not have sk, leading to a NULL pointer. This flaw allows a local user to crash or potentially c...
CVE-2023-28328
- EPSS 0.01%
- Veröffentlicht 19.04.2023 23:15:07
- Zuletzt bearbeitet 19.03.2025 16:15:21
A NULL pointer dereference flaw was found in the az6027 driver in drivers/media/usb/dev-usb/az6027.c in the Linux Kernel. The message from user space is not checked properly before transferring into the device. This flaw allows a local user to crash ...