CVE-2022-24407
- EPSS 0.74%
- Veröffentlicht 24.02.2022 15:15:29
- Zuletzt bearbeitet 21.11.2024 06:50:21
In Cyrus SASL 2.1.17 through 2.1.27 before 2.1.28, plugins/sql.c does not escape the password for a SQL INSERT or UPDATE statement.
CVE-2022-24599
- EPSS 0.18%
- Veröffentlicht 24.02.2022 15:15:29
- Zuletzt bearbeitet 21.08.2025 19:04:57
In autofile Audio File Library 0.3.6, there exists one memory leak vulnerability in printfileinfo, in printinfo.c, which allows an attacker to leak sensitive information via a crafted file. The printfileinfo function calls the copyrightstring functio...
CVE-2019-25058
- EPSS 0.03%
- Veröffentlicht 24.02.2022 15:15:21
- Zuletzt bearbeitet 21.11.2024 04:39:51
An issue was discovered in USBGuard before 1.1.0. On systems with the usbguard-dbus daemon running, an unprivileged user could make USBGuard allow all USB devices to be connected in the future.
CVE-2022-0729
- EPSS 0.44%
- Veröffentlicht 23.02.2022 14:15:08
- Zuletzt bearbeitet 21.11.2024 06:39:16
Use of Out-of-range Pointer Offset in GitHub repository vim/vim prior to 8.2.4440.
CVE-2022-0714
- EPSS 0.21%
- Veröffentlicht 22.02.2022 20:15:07
- Zuletzt bearbeitet 21.11.2024 06:39:14
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.4436.
CVE-2022-23608
- EPSS 0.58%
- Veröffentlicht 22.02.2022 20:15:07
- Zuletzt bearbeitet 21.11.2024 06:48:55
PJSIP is a free and open source multimedia communication library written in C language implementing standard based protocols such as SIP, SDP, RTP, STUN, TURN, and ICE. In versions up to and including 2.11.1 when in a dialog set (or forking) scenario...
CVE-2021-4115
- EPSS 0.02%
- Veröffentlicht 21.02.2022 22:15:07
- Zuletzt bearbeitet 21.11.2024 06:36:55
There is a flaw in polkit which can allow an unprivileged user to cause polkit to crash, due to process file descriptor exhaustion. The highest threat from this vulnerability is to availability. NOTE: Polkit process outage duration is tied to the fai...
CVE-2022-0696
- EPSS 0.12%
- Veröffentlicht 21.02.2022 20:15:08
- Zuletzt bearbeitet 21.11.2024 06:39:12
NULL Pointer Dereference in GitHub repository vim/vim prior to 8.2.4428.
- EPSS 29.44%
- Veröffentlicht 21.02.2022 15:15:07
- Zuletzt bearbeitet 23.04.2025 19:15:51
The Samba vfs_fruit module uses extended file attributes (EA, xattr) to provide "...enhanced compatibility with Apple SMB clients and interoperability with a Netatalk 3 AFP fileserver." Samba versions prior to 4.13.17, 4.14.12 and 4.15.5 with vfs_fru...
CVE-2022-25375
- EPSS 0.2%
- Veröffentlicht 20.02.2022 20:15:18
- Zuletzt bearbeitet 21.11.2024 06:52:06
An issue was discovered in drivers/usb/gadget/function/rndis.c in the Linux kernel before 5.16.10. The RNDIS USB gadget lacks validation of the size of the RNDIS_MSG_SET command. Attackers can obtain sensitive information from kernel memory.