CVE-2024-23301
- EPSS 0.09%
- Veröffentlicht 12.01.2024 23:15:10
- Zuletzt bearbeitet 04.06.2025 16:15:30
Relax-and-Recover (aka ReaR) through 2.7 creates a world-readable initrd when using GRUB_RESCUE=y. This allows local attackers to gain access to system secrets otherwise only readable by root.
CVE-2023-34256
- EPSS 0.02%
- Veröffentlicht 31.05.2023 20:15:10
- Zuletzt bearbeitet 11.03.2025 16:15:14
An issue was discovered in the Linux kernel before 6.3.3. There is an out-of-bounds read in crc16 in lib/crc16.c when called from fs/ext4/super.c because ext4_group_desc_csum does not properly check an offset. NOTE: this is disputed by third parties ...
CVE-2021-4028
- EPSS 0.05%
- Veröffentlicht 24.08.2022 16:15:09
- Zuletzt bearbeitet 21.11.2024 06:36:45
A flaw in the Linux kernel's implementation of RDMA communications manager listener code allowed an attacker with local access to setup a socket to listen on a high port allowing for a list element to be used after free. Given the ability to execute ...
CVE-2021-41819
- EPSS 0.88%
- Veröffentlicht 01.01.2022 06:15:07
- Zuletzt bearbeitet 22.05.2025 15:15:54
CGI::Cookie.parse in Ruby through 2.6.8 mishandles security prefixes in cookie names. This also affects the CGI gem through 0.3.0 for Ruby.
CVE-2021-41817
- EPSS 0.54%
- Veröffentlicht 01.01.2022 05:15:08
- Zuletzt bearbeitet 21.11.2024 06:26:48
Date.parse in the date gem through 3.2.0 for Ruby allows ReDoS (regular expression Denial of Service) via a long string. The fixed versions are 3.2.1, 3.1.2, 3.0.2, and 2.0.1.
CVE-2021-4166
- EPSS 0.22%
- Veröffentlicht 25.12.2021 19:15:07
- Zuletzt bearbeitet 21.11.2024 06:37:03
vim is vulnerable to Out-of-bounds Read
CVE-2020-14147
- EPSS 0.27%
- Veröffentlicht 15.06.2020 18:15:14
- Zuletzt bearbeitet 21.11.2024 05:02:44
An integer overflow in the getnum function in lua_struct.c in Redis before 6.0.3 allows context-dependent attackers with permission to run Lua code in a Redis session to cause a denial of service (memory corruption and application crash) or possibly ...
CVE-2018-14523
- EPSS 0.45%
- Veröffentlicht 23.07.2018 08:29:00
- Zuletzt bearbeitet 21.11.2024 03:49:15
An issue was discovered in aubio 0.4.6. A buffer over-read can occur in new_aubio_pitchyinfft in pitch/pitchyinfft.c, as demonstrated by aubionotes.
CVE-2018-14522
- EPSS 0.45%
- Veröffentlicht 23.07.2018 08:29:00
- Zuletzt bearbeitet 21.11.2024 03:49:15
An issue was discovered in aubio 0.4.6. A SEGV signal can occur in aubio_pitch_set_unit in pitch/pitch.c, as demonstrated by aubionotes.
CVE-2016-9957
- EPSS 0.29%
- Veröffentlicht 12.04.2017 20:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Stack-based buffer overflow in game-music-emu before 0.6.1.