CVE-2023-4903
- EPSS 0.27%
- Veröffentlicht 12.09.2023 21:15:08
- Zuletzt bearbeitet 21.11.2024 08:36:13
Inappropriate implementation in Custom Mobile Tabs in Google Chrome on Android prior to 117.0.5938.62 allowed a remote attacker to spoof security UI via a crafted HTML page. (Chromium security severity: Medium)
CVE-2023-4904
- EPSS 0.07%
- Veröffentlicht 12.09.2023 21:15:08
- Zuletzt bearbeitet 21.11.2024 08:36:13
Insufficient policy enforcement in Downloads in Google Chrome prior to 117.0.5938.62 allowed a remote attacker to bypass Enterprise policy restrictions via a crafted download. (Chromium security severity: Medium)
CVE-2023-4905
- EPSS 0.27%
- Veröffentlicht 12.09.2023 21:15:08
- Zuletzt bearbeitet 21.11.2024 08:36:13
Inappropriate implementation in Prompts in Google Chrome prior to 117.0.5938.62 allowed a remote attacker to spoof security UI via a crafted HTML page. (Chromium security severity: Medium)
CVE-2023-4906
- EPSS 0.05%
- Veröffentlicht 12.09.2023 21:15:08
- Zuletzt bearbeitet 21.11.2024 08:36:14
Insufficient policy enforcement in Autofill in Google Chrome prior to 117.0.5938.62 allowed a remote attacker to bypass Autofill restrictions via a crafted HTML page. (Chromium security severity: Low)
CVE-2023-4907
- EPSS 0.27%
- Veröffentlicht 12.09.2023 21:15:08
- Zuletzt bearbeitet 21.11.2024 08:36:14
Inappropriate implementation in Intents in Google Chrome on Android prior to 117.0.5938.62 allowed a remote attacker to obfuscate security UI via a crafted HTML page. (Chromium security severity: Low)
CVE-2023-4921
- EPSS 0.01%
- Veröffentlicht 12.09.2023 20:15:10
- Zuletzt bearbeitet 13.02.2025 18:15:48
A use-after-free vulnerability in the Linux kernel's net/sched: sch_qfq component can be exploited to achieve local privilege escalation. When the plug qdisc is used as a class of the qfq qdisc, sending network packets triggers use-after-free in qfq...
CVE-2023-4863
- EPSS 94.08%
- Veröffentlicht 12.09.2023 15:15:24
- Zuletzt bearbeitet 24.10.2025 14:07:28
Heap buffer overflow in libwebp in Google Chrome prior to 116.0.5845.187 and libwebp 1.3.2 allowed a remote attacker to perform an out of bounds memory write via a crafted HTML page. (Chromium security severity: Critical)
CVE-2023-41915
- EPSS 1.03%
- Veröffentlicht 09.09.2023 22:15:09
- Zuletzt bearbeitet 21.11.2024 08:21:54
OpenPMIx PMIx before 4.2.6 and 5.0.x before 5.0.1 allows attackers to obtain ownership of arbitrary files via a race condition during execution of library code with UID 0.
CVE-2023-4875
- EPSS 0.03%
- Veröffentlicht 09.09.2023 15:15:35
- Zuletzt bearbeitet 21.11.2024 08:36:10
Null pointer dereference when composing from a specially crafted draft message in Mutt >1.5.2 <2.2.12
CVE-2023-4874
- EPSS 0.08%
- Veröffentlicht 09.09.2023 15:15:34
- Zuletzt bearbeitet 21.11.2024 08:36:09
Null pointer dereference when viewing a specially crafted email in Mutt >1.5.2 <2.2.12