CVE-2020-10735
- EPSS 0.31%
- Published 09.09.2022 14:15:08
- Last modified 21.11.2024 04:55:57
A flaw was found in python. In algorithms with quadratic time complexity using non-binary bases, when using int("text"), a system could take 50ms to parse an int string with 100,000 digits and 5s for 1,000,000 digits (float, decimal, int.from_bytes()...
CVE-2022-25308
- EPSS 0.03%
- Published 06.09.2022 18:15:11
- Last modified 21.11.2024 06:51:58
A stack-based buffer overflow flaw was found in the Fribidi package. This flaw allows an attacker to pass a specially crafted file to the Fribidi application, which leads to a possible memory leak or a denial of service.
CVE-2022-25309
- EPSS 0.02%
- Published 06.09.2022 18:15:11
- Last modified 21.11.2024 06:51:58
A heap-based buffer overflow flaw was found in the Fribidi package and affects the fribidi_cap_rtl_to_unicode() function of the fribidi-char-sets-cap-rtl.c file. This flaw allows an attacker to pass a specially crafted file to the Fribidi application...
CVE-2022-25310
- EPSS 0.02%
- Published 06.09.2022 18:15:11
- Last modified 21.11.2024 06:51:58
A segmentation fault (SEGV) flaw was found in the Fribidi package and affects the fribidi_remove_bidi_marks() function of the lib/fribidi.c file. This flaw allows an attacker to pass a specially crafted file to Fribidi, leading to a crash and causing...
CVE-2022-2639
- EPSS 1.29%
- Published 01.09.2022 21:15:09
- Last modified 21.11.2024 07:01:25
An integer coercion error was found in the openvswitch kernel module. Given a sufficiently large number of actions, while copying and reserving memory for a new action of a new flow, the reserve_sfa_size() function does not return -EMSGSIZE as expect...
CVE-2022-2132
- EPSS 0.69%
- Published 31.08.2022 16:15:10
- Last modified 21.11.2024 07:00:23
A permissive list of allowed inputs flaw was found in DPDK. This issue allows a remote attacker to cause a denial of service triggered by sending a crafted Vhost header to DPDK.
CVE-2022-2153
- EPSS 0.02%
- Published 31.08.2022 16:15:10
- Last modified 21.11.2024 07:00:26
A flaw was found in the Linux kernel’s KVM when attempting to set a SynIC IRQ. This issue makes it possible for a misbehaving VMM to write to SYNIC/STIMER MSRs, causing a NULL pointer dereference. This flaw allows an unprivileged local attacker on th...
- EPSS 0.02%
- Published 31.08.2022 16:15:09
- Last modified 21.11.2024 06:40:20
An issue found in linux-kernel that leads to a race condition in rose_connect(). The rose driver uses rose_neigh->use to represent how many objects are using the rose_neigh. When a user wants to delete a rose_route via rose_ioctl(), the rose driver c...
CVE-2022-1263
- EPSS 0.06%
- Published 31.08.2022 16:15:09
- Last modified 21.11.2024 06:40:22
A NULL pointer dereference issue was found in KVM when releasing a vCPU with dirty ring support enabled. This flaw allows an unprivileged local attacker on the host to issue specific ioctl calls, causing a kernel oops condition that results in a deni...
CVE-2022-1354
- EPSS 0.06%
- Published 31.08.2022 16:15:09
- Last modified 21.11.2024 06:40:33
A heap buffer overflow flaw was found in Libtiffs' tiffinfo.c in TIFFReadRawDataStriped() function. This flaw allows an attacker to pass a crafted TIFF file to the tiffinfo tool, triggering a heap buffer overflow issue and causing a crash that leads ...