CVE-2023-2156
- EPSS 0.44%
- Published 09.05.2023 22:15:10
- Last modified 21.11.2024 07:58:02
A flaw was found in the networking subsystem of the Linux kernel within the handling of the RPL protocol. This issue results from the lack of proper handling of user-supplied data, which can lead to an assertion failure. This may allow an unauthentic...
CVE-2023-31490
- EPSS 4.49%
- Published 09.05.2023 16:15:14
- Last modified 21.11.2024 08:01:58
An issue found in Frrouting bgpd v.8.4.2 allows a remote attacker to cause a denial of service via the bgp_attr_psid_sub() function.
CVE-2023-31137
- EPSS 1.03%
- Published 09.05.2023 14:15:13
- Last modified 21.11.2024 08:01:28
MaraDNS is open-source software that implements the Domain Name System (DNS). In version 3.5.0024 and prior, a remotely exploitable integer underflow vulnerability in the DNS packet decompression function allows an attacker to cause a Denial of Servi...
CVE-2023-27954
- EPSS 0.12%
- Published 08.05.2023 20:15:18
- Last modified 29.01.2025 15:15:13
The issue was addressed by removing origin information. This issue is fixed in macOS Ventura 13.3, Safari 16.4, iOS 16.4 and iPadOS 16.4, iOS 15.7.4 and iPadOS 15.7.4, tvOS 16.4, watchOS 9.4. A website may be able to track sensitive user information.
CVE-2023-27932
- EPSS 0.01%
- Published 08.05.2023 20:15:17
- Last modified 29.01.2025 21:15:15
This issue was addressed with improved state management. This issue is fixed in macOS Ventura 13.3, Safari 16.4, iOS 16.4 and iPadOS 16.4, tvOS 16.4, watchOS 9.4. Processing maliciously crafted web content may bypass Same Origin Policy.
CVE-2022-43681
- EPSS 0.16%
- Published 03.05.2023 12:16:30
- Last modified 21.11.2024 07:27:01
An out-of-bounds read exists in the BGP daemon of FRRouting FRR through 8.4. When sending a malformed BGP OPEN message that ends with the option length octet (or the option length word, in case of an extended OPEN message), the FRR code reads of out ...
CVE-2022-40302
- EPSS 0.16%
- Published 03.05.2023 12:16:27
- Last modified 30.01.2025 17:15:11
An issue was discovered in bgpd in FRRouting (FRR) through 8.4. By crafting a BGP OPEN message with an option of type 0xff (Extended Length from RFC 9072), attackers may cause a denial of service (assertion failure and daemon restart, or out-of-bound...
CVE-2022-40318
- EPSS 0.12%
- Published 03.05.2023 12:16:27
- Last modified 21.11.2024 07:21:18
An issue was discovered in bgpd in FRRouting (FRR) through 8.4. By crafting a BGP OPEN message with an option of type 0xff (Extended Length from RFC 9072), attackers may cause a denial of service (assertion failure and daemon restart, or out-of-bound...
CVE-2023-2460
- EPSS 0.04%
- Published 03.05.2023 00:15:09
- Last modified 21.11.2024 07:58:39
Insufficient validation of untrusted input in Extensions in Google Chrome prior to 113.0.5672.63 allowed an attacker who convinced a user to install a malicious extension to bypass file access checks via a crafted HTML page. (Chromium security severi...
CVE-2023-2461
- EPSS 0.54%
- Published 03.05.2023 00:15:09
- Last modified 21.11.2024 07:58:39
Use after free in OS Inputs in Google Chrome on ChromeOS prior to 113.0.5672.63 allowed a remote attacker who convinced a user to enage in specific UI interaction to potentially exploit heap corruption via crafted UI interaction. (Chromium security s...