CVE-2022-0213
- EPSS 0.19%
- Veröffentlicht 14.01.2022 13:15:07
- Zuletzt bearbeitet 21.11.2024 06:38:09
vim is vulnerable to Heap-based Buffer Overflow
CVE-2022-23222
- EPSS 0.73%
- Veröffentlicht 14.01.2022 08:15:07
- Zuletzt bearbeitet 21.11.2024 06:48:13
kernel/bpf/verifier.c in the Linux kernel through 5.15.14 allows local users to gain privileges because of the availability of pointer arithmetic via certain *_OR_NULL pointer types.
CVE-2022-23218
- EPSS 0.41%
- Veröffentlicht 14.01.2022 07:15:08
- Zuletzt bearbeitet 05.05.2025 17:17:55
The deprecated compatibility function svcunix_create in the sunrpc module of the GNU C Library (aka glibc) through 2.34 copies its path argument on the stack without validating its length, which may result in a buffer overflow, potentially resulting ...
CVE-2022-23219
- EPSS 0.41%
- Veröffentlicht 14.01.2022 07:15:08
- Zuletzt bearbeitet 05.05.2025 17:17:55
The deprecated compatibility function clnt_create in the sunrpc module of the GNU C Library (aka glibc) through 2.34 copies its hostname argument on the stack without validating its length, which may result in a buffer overflow, potentially resulting...
CVE-2022-20698
- EPSS 0.22%
- Veröffentlicht 14.01.2022 06:15:09
- Zuletzt bearbeitet 21.11.2024 06:43:21
A vulnerability in the OOXML parsing module in Clam AntiVirus (ClamAV) Software version 0.104.1 and LTS version 0.103.4 and prior versions could allow an unauthenticated, remote attacker to cause a denial of service condition on an affected device. T...
CVE-2022-21682
- EPSS 0.36%
- Veröffentlicht 13.01.2022 21:15:08
- Zuletzt bearbeitet 21.11.2024 06:45:13
Flatpak is a Linux application sandboxing and distribution framework. A path traversal vulnerability affects versions of Flatpak prior to 1.12.3 and 1.10.6. flatpak-builder applies `finish-args` last in the build. At this point the build directory wi...
CVE-2022-23134
- EPSS 93.08%
- Veröffentlicht 13.01.2022 16:15:08
- Zuletzt bearbeitet 12.03.2025 21:01:25
After the initial setup process, some steps of setup.php file are reachable not only by super-administrators, but by unauthenticated users as well. Malicious actor can pass step checks and potentially change the configuration of Zabbix Frontend.
CVE-2021-43860
- EPSS 0.18%
- Veröffentlicht 12.01.2022 22:15:07
- Zuletzt bearbeitet 21.11.2024 06:29:57
Flatpak is a Linux application sandboxing and distribution framework. Prior to versions 1.12.3 and 1.10.6, Flatpak doesn't properly validate that the permissions displayed to the user for an app at install time match the actual permissions granted to...
CVE-2021-37529
- EPSS 0.25%
- Veröffentlicht 12.01.2022 21:15:07
- Zuletzt bearbeitet 21.11.2024 06:15:18
A double-free vulnerability exists in fig2dev through 3.28a is affected by: via the free_stream function in readpics.c, which could cause a denial of service (context-dependent).
CVE-2021-37530
- EPSS 0.25%
- Veröffentlicht 12.01.2022 21:15:07
- Zuletzt bearbeitet 21.11.2024 06:15:19
A denial of service vulnerabiity exists in fig2dev through 3.28a due to a segfault in the open_stream function in readpics.c.