CVE-2023-2953
- EPSS 1.11%
- Veröffentlicht 30.05.2023 22:15:10
- Zuletzt bearbeitet 10.01.2025 22:15:23
A vulnerability was found in openldap. This security flaw causes a null pointer dereference in ber_memalloc_x() function.
CVE-2023-2898
- EPSS 0.02%
- Veröffentlicht 26.05.2023 22:15:14
- Zuletzt bearbeitet 21.11.2024 07:59:31
There is a null-pointer-dereference flaw found in f2fs_write_end_io in fs/f2fs/data.c in the Linux kernel. This flaw allows a local privileged user to cause a denial of service problem.
CVE-2023-28321
- EPSS 0.3%
- Veröffentlicht 26.05.2023 21:15:16
- Zuletzt bearbeitet 15.01.2025 16:15:26
An improper certificate validation vulnerability exists in curl <v8.1.0 in the way it supports matching of wildcard patterns when listed as "Subject Alternative Name" in TLS server certificates. curl can be built to use its own name matching function...
CVE-2023-28322
- EPSS 0.5%
- Veröffentlicht 26.05.2023 21:15:16
- Zuletzt bearbeitet 21.11.2024 07:54:50
An information disclosure vulnerability exists in curl <v8.1.0 when doing HTTP(S) transfers, libcurl might erroneously use the read callback (`CURLOPT_READFUNCTION`) to ask for data to send, even when the `CURLOPT_POSTFIELDS` option has been set, if ...
CVE-2023-28320
- EPSS 0.64%
- Veröffentlicht 26.05.2023 21:15:15
- Zuletzt bearbeitet 15.01.2025 16:15:25
A denial of service vulnerability exists in curl <v8.1.0 in the way libcurl provides several different backends for resolving host names, selected at build time. If it is built to use the synchronous resolver, it allows name resolves to time-out slow...
CVE-2023-28319
- EPSS 0.32%
- Veröffentlicht 26.05.2023 21:15:10
- Zuletzt bearbeitet 15.01.2025 16:15:25
A use after free vulnerability exists in curl <v8.1.0 in the way libcurl offers a feature to verify an SSH server's public key using a SHA 256 hash. When this check fails, libcurl would free the memory for the fingerprint before it returns an error m...
CVE-2023-33250
- EPSS 0.02%
- Veröffentlicht 21.05.2023 21:15:08
- Zuletzt bearbeitet 18.03.2025 19:15:41
The Linux kernel 6.3 has a use-after-free in iopt_unmap_iova_range in drivers/iommu/iommufd/io_pagetable.c.
CVE-2023-2124
- EPSS 0.02%
- Veröffentlicht 15.05.2023 22:15:12
- Zuletzt bearbeitet 21.11.2024 07:57:58
An out-of-bounds memory access flaw was found in the Linux kernel’s XFS file system in how a user restores an XFS image after failure (with a dirty log journal). This flaw allows a local user to crash or potentially escalate their privileges on the s...
CVE-2023-0045
- EPSS 0.25%
- Veröffentlicht 25.04.2023 23:15:09
- Zuletzt bearbeitet 13.02.2025 17:15:52
The current implementation of the prctl syscall does not issue an IBPB immediately during the syscall. The ib_prctl_set function updates the Thread Information Flags (TIFs) for the task and updates the SPEC_CTRL MSR on the function __speculation_ctr...
CVE-2023-2269
- EPSS 0.03%
- Veröffentlicht 25.04.2023 21:15:10
- Zuletzt bearbeitet 21.11.2024 07:58:16
A denial of service problem was found, due to a possible recursive locking scenario, resulting in a deadlock in table_clear in drivers/md/dm-ioctl.c in the Linux Kernel Device Mapper-Multipathing sub-component.