CVE-2023-21930
- EPSS 0.11%
- Published 18.04.2023 20:15:13
- Last modified 21.11.2024 07:43:56
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JSSE). Supported versions that are affected are Oracle Java SE: 8u361, 8u361-perf, 11.0.18, 17.0.6, 20; Oracle GraalVM Enterprise Edition: 2...
CVE-2023-2033
- EPSS 13.9%
- Published 14.04.2023 19:15:09
- Last modified 19.02.2025 19:44:57
Type confusion in V8 in Google Chrome prior to 112.0.5615.121 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVE-2023-1994
- EPSS 0.2%
- Published 12.04.2023 22:15:13
- Last modified 07.02.2025 17:15:23
GQUIC dissector crash in Wireshark 4.0.0 to 4.0.4 and 3.6.0 to 3.6.12 allows denial of service via packet injection or crafted capture file
CVE-2023-1993
- EPSS 0.07%
- Published 12.04.2023 21:15:16
- Last modified 07.02.2025 17:15:23
LISP dissector large loop in Wireshark 4.0.0 to 4.0.4 and 3.6.0 to 3.6.12 allows denial of service via packet injection or crafted capture file
CVE-2023-1992
- EPSS 0.21%
- Published 12.04.2023 21:15:15
- Last modified 07.02.2025 17:15:23
RPCoRDMA dissector crash in Wireshark 4.0.0 to 4.0.4 and 3.6.0 to 3.6.12 allows denial of service via packet injection or crafted capture file
- EPSS 0.03%
- Published 12.04.2023 16:15:17
- Last modified 13.02.2025 17:16:00
A use-after-free vulnerability in the Linux Kernel io_uring system can be exploited to achieve local privilege escalation. The io_file_get_fixed function lacks the presence of ctx->uring_lock which can lead to a Use-After-Free vulnerability due a ra...
- EPSS 0.02%
- Published 11.04.2023 21:15:15
- Last modified 21.11.2024 07:40:17
A use-after-free flaw was found in btsdio_remove in drivers\bluetooth\btsdio.c in the Linux Kernel. In this flaw, a call to btsdio_remove with an unfinished job, may cause a race problem leading to a UAF on hdev devices.
CVE-2023-1668
- EPSS 0.09%
- Published 10.04.2023 22:15:09
- Last modified 23.04.2025 17:16:28
A flaw was found in openvswitch (OVS). When processing an IP packet with protocol 0, OVS will install the datapath flow without the action modifying the IP header. This issue results (for both kernel and userspace datapath) in installing a datapath f...
CVE-2020-11935
- EPSS 0.03%
- Published 07.04.2023 02:15:07
- Last modified 21.11.2024 04:58:56
It was discovered that aufs improperly managed inode reference counts in the vfsub_dentry_open() method. A local attacker could use this vulnerability to cause a denial of service attack.
CVE-2023-29415
- EPSS 0.12%
- Published 06.04.2023 05:15:07
- Last modified 13.02.2025 21:15:13
An issue was discovered in libbzip3.a in bzip3 before 1.3.0. A denial of service (process hang) can occur with a crafted archive because bzip3 does not follow the required procedure for interacting with libsais.