CVE-2023-2854
- EPSS 0.03%
- Published 26.05.2023 21:15:17
- Last modified 15.01.2025 16:15:27
BLF file parser crash in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via crafted capture file
CVE-2023-2855
- EPSS 0.03%
- Published 26.05.2023 21:15:17
- Last modified 15.01.2025 16:15:27
Candump log parser crash in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via crafted capture file
CVE-2023-2856
- EPSS 0.02%
- Published 26.05.2023 21:15:17
- Last modified 15.01.2025 16:15:27
VMS TCPIPtrace file parser crash in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via crafted capture file
CVE-2023-28321
- EPSS 0.3%
- Published 26.05.2023 21:15:16
- Last modified 15.01.2025 16:15:26
An improper certificate validation vulnerability exists in curl <v8.1.0 in the way it supports matching of wildcard patterns when listed as "Subject Alternative Name" in TLS server certificates. curl can be built to use its own name matching function...
CVE-2023-1667
- EPSS 1.15%
- Published 26.05.2023 18:15:10
- Last modified 21.11.2024 07:39:39
A NULL pointer dereference was found In libssh during re-keying with algorithm guessing. This issue may allow an authenticated client to cause a denial of service.
CVE-2023-2002
- EPSS 0.46%
- Published 26.05.2023 17:15:14
- Last modified 21.11.2024 07:57:44
A vulnerability was found in the HCI sockets implementation due to a missing capability check in net/bluetooth/hci_sock.c in the Linux Kernel. This flaw allows an attacker to unauthorized execution of management commands, compromising the confidentia...
CVE-2023-32067
- EPSS 0.38%
- Published 25.05.2023 23:15:09
- Last modified 21.11.2024 08:02:38
c-ares is an asynchronous resolver library. c-ares is vulnerable to denial of service. If a target resolver sends a query, the attacker forges a malformed UDP packet with a length of 0 and returns them to the target resolver. The target resolver erro...
CVE-2023-31130
- EPSS 0.01%
- Published 25.05.2023 22:15:09
- Last modified 13.02.2025 17:16:26
c-ares is an asynchronous resolver library. ares_inet_net_pton() is vulnerable to a buffer underflow for certain ipv6 addresses, in particular "0::00:00:00/2" was found to cause an issue. C-ares only uses this function internally for configuration p...
CVE-2023-0950
- EPSS 0.06%
- Published 25.05.2023 20:15:09
- Last modified 23.04.2025 17:16:24
Improper Validation of Array Index vulnerability in the spreadsheet component of The Document Foundation LibreOffice allows an attacker to craft a spreadsheet document that will cause an array index underflow when loaded. In the affected versions of ...
CVE-2023-2255
- EPSS 54.13%
- Published 25.05.2023 20:15:09
- Last modified 21.11.2024 07:58:14
Improper access control in editor components of The Document Foundation LibreOffice allowed an attacker to craft a document that would cause external links to be loaded without prompt. In the affected versions of LibreOffice documents that used "floa...