CVE-2022-0897
- EPSS 0.05%
- Published 25.03.2022 19:15:10
- Last modified 21.11.2024 06:39:37
A flaw was found in the libvirt nwfilter driver. The virNWFilterObjListNumOfNWFilters method failed to acquire the driver->nwfilters mutex before iterating over virNWFilterObj instances. There was no protection to stop another thread from concurrentl...
CVE-2021-4147
- EPSS 0.06%
- Published 25.03.2022 19:15:09
- Last modified 21.11.2024 06:37:00
A flaw was found in the libvirt libxl driver. A malicious guest could continuously reboot itself and cause libvirtd on the host to deadlock or crash, resulting in a denial of service condition.
CVE-2018-25032
- EPSS 0.09%
- Published 25.03.2022 09:15:08
- Last modified 21.08.2025 20:37:11
zlib before 1.2.12 allows memory corruption when deflating (i.e., when compressing) if the input has many distant matches.
CVE-2022-0924
- EPSS 0.08%
- Published 11.03.2022 18:15:30
- Last modified 21.11.2024 06:39:40
Out-of-bounds Read error in tiffcp in libtiff 4.3.0 allows attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit 408976c4.
CVE-2022-0909
- EPSS 0.07%
- Published 11.03.2022 18:15:28
- Last modified 21.11.2024 06:39:38
Divide By Zero error in tiffcrop in libtiff 4.3.0 allows attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit f8d0f9aa.
CVE-2022-0908
- EPSS 0.06%
- Published 11.03.2022 18:15:27
- Last modified 21.11.2024 06:39:38
Null source pointer passed as an argument to memcpy() function within TIFFFetchNormalTag () in tif_dirread.c in libtiff versions up to 4.3.0 could lead to Denial of Service via crafted TIFF file.
CVE-2022-0907
- EPSS 0.08%
- Published 11.03.2022 18:15:26
- Last modified 21.11.2024 06:39:38
Unchecked Return Value to NULL Pointer Dereference in tiffcrop in libtiff 4.3.0 allows attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit f2b656e2.
- EPSS 1.61%
- Published 10.03.2022 17:47:45
- Last modified 21.11.2024 06:54:02
In Python before 3.10.3 on Windows, local users can gain privileges because the search path is inadequately secured. The installer may allow a local attacker to add user-writable directories to the system search path. To exploit, an administrator mus...
CVE-2021-3733
- EPSS 0.68%
- Published 10.03.2022 17:42:59
- Last modified 21.11.2024 06:22:16
There's a flaw in urllib's AbstractBasicAuthHandler class. An attacker who controls a malicious HTTP server that an HTTP client (such as web browser) connects to, could trigger a Regular Expression Denial of Service (ReDOS) during an authentication r...
CVE-2021-3737
- EPSS 0.21%
- Published 04.03.2022 19:15:08
- Last modified 21.11.2024 06:22:17
A flaw was found in python. An improperly handled HTTP response in the HTTP client code of python may allow a remote attacker, who controls the HTTP server, to make the client script enter an infinite loop, consuming CPU time. The highest threat from...