CVE-2023-32067
- EPSS 0.41%
- Veröffentlicht 25.05.2023 23:15:09
- Zuletzt bearbeitet 21.11.2024 08:02:38
c-ares is an asynchronous resolver library. c-ares is vulnerable to denial of service. If a target resolver sends a query, the attacker forges a malformed UDP packet with a length of 0 and returns them to the target resolver. The target resolver erro...
CVE-2023-31130
- EPSS 0.01%
- Veröffentlicht 25.05.2023 22:15:09
- Zuletzt bearbeitet 13.02.2025 17:16:26
c-ares is an asynchronous resolver library. ares_inet_net_pton() is vulnerable to a buffer underflow for certain ipv6 addresses, in particular "0::00:00:00/2" was found to cause an issue. C-ares only uses this function internally for configuration p...
CVE-2023-0950
- EPSS 0.06%
- Veröffentlicht 25.05.2023 20:15:09
- Zuletzt bearbeitet 23.04.2025 17:16:24
Improper Validation of Array Index vulnerability in the spreadsheet component of The Document Foundation LibreOffice allows an attacker to craft a spreadsheet document that will cause an array index underflow when loaded. In the affected versions of ...
CVE-2023-2255
- EPSS 50.82%
- Veröffentlicht 25.05.2023 20:15:09
- Zuletzt bearbeitet 21.11.2024 07:58:14
Improper access control in editor components of The Document Foundation LibreOffice allowed an attacker to craft a document that would cause external links to be loaded without prompt. In the affected versions of LibreOffice documents that used "floa...
CVE-2023-28709
- EPSS 0.36%
- Veröffentlicht 22.05.2023 11:15:09
- Zuletzt bearbeitet 13.02.2025 17:16:16
The fix for CVE-2023-24998 was incomplete for Apache Tomcat 11.0.0-M2 to 11.0.0-M4, 10.1.5 to 10.1.7, 9.0.71 to 9.0.73 and 8.5.85 to 8.5.87. If non-default HTTP connector settings were used such that the maxParameterCount could be reached using...
CVE-2023-33204
- EPSS 0.03%
- Veröffentlicht 18.05.2023 08:15:08
- Zuletzt bearbeitet 03.11.2025 18:15:40
sysstat through 12.7.2 allows a multiplication integer overflow in check_overflow in common.c. NOTE: this issue exists because of an incomplete fix for CVE-2022-39377.
CVE-2023-24805
- EPSS 8.93%
- Veröffentlicht 17.05.2023 18:15:09
- Zuletzt bearbeitet 21.11.2024 07:48:25
cups-filters contains backends, filters, and other software required to get the cups printing service working on operating systems other than macos. If you use the Backend Error Handler (beh) to create an accessible network printer, this security vul...
CVE-2023-2721
- EPSS 0.23%
- Veröffentlicht 16.05.2023 19:15:09
- Zuletzt bearbeitet 05.05.2025 16:15:35
Use after free in Navigation in Google Chrome prior to 113.0.5672.126 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)
CVE-2023-2722
- EPSS 0.26%
- Veröffentlicht 16.05.2023 19:15:09
- Zuletzt bearbeitet 05.05.2025 16:15:35
Use after free in Autofill UI in Google Chrome on Android prior to 113.0.5672.126 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVE-2023-2723
- EPSS 11.8%
- Veröffentlicht 16.05.2023 19:15:09
- Zuletzt bearbeitet 05.05.2025 16:15:36
Use after free in DevTools in Google Chrome prior to 113.0.5672.126 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)