CVE-2023-2156
- EPSS 0.44%
- Veröffentlicht 09.05.2023 22:15:10
- Zuletzt bearbeitet 21.11.2024 07:58:02
A flaw was found in the networking subsystem of the Linux kernel within the handling of the RPL protocol. This issue results from the lack of proper handling of user-supplied data, which can lead to an assertion failure. This may allow an unauthentic...
CVE-2023-31490
- EPSS 4.49%
- Veröffentlicht 09.05.2023 16:15:14
- Zuletzt bearbeitet 21.11.2024 08:01:58
An issue found in Frrouting bgpd v.8.4.2 allows a remote attacker to cause a denial of service via the bgp_attr_psid_sub() function.
CVE-2023-31137
- EPSS 1.03%
- Veröffentlicht 09.05.2023 14:15:13
- Zuletzt bearbeitet 21.11.2024 08:01:28
MaraDNS is open-source software that implements the Domain Name System (DNS). In version 3.5.0024 and prior, a remotely exploitable integer underflow vulnerability in the DNS packet decompression function allows an attacker to cause a Denial of Servi...
CVE-2023-27954
- EPSS 0.12%
- Veröffentlicht 08.05.2023 20:15:18
- Zuletzt bearbeitet 29.01.2025 15:15:13
The issue was addressed by removing origin information. This issue is fixed in macOS Ventura 13.3, Safari 16.4, iOS 16.4 and iPadOS 16.4, iOS 15.7.4 and iPadOS 15.7.4, tvOS 16.4, watchOS 9.4. A website may be able to track sensitive user information.
CVE-2023-27932
- EPSS 0.01%
- Veröffentlicht 08.05.2023 20:15:17
- Zuletzt bearbeitet 29.01.2025 21:15:15
This issue was addressed with improved state management. This issue is fixed in macOS Ventura 13.3, Safari 16.4, iOS 16.4 and iPadOS 16.4, tvOS 16.4, watchOS 9.4. Processing maliciously crafted web content may bypass Same Origin Policy.
CVE-2022-43681
- EPSS 0.16%
- Veröffentlicht 03.05.2023 12:16:30
- Zuletzt bearbeitet 21.11.2024 07:27:01
An out-of-bounds read exists in the BGP daemon of FRRouting FRR through 8.4. When sending a malformed BGP OPEN message that ends with the option length octet (or the option length word, in case of an extended OPEN message), the FRR code reads of out ...
CVE-2022-40302
- EPSS 0.16%
- Veröffentlicht 03.05.2023 12:16:27
- Zuletzt bearbeitet 30.01.2025 17:15:11
An issue was discovered in bgpd in FRRouting (FRR) through 8.4. By crafting a BGP OPEN message with an option of type 0xff (Extended Length from RFC 9072), attackers may cause a denial of service (assertion failure and daemon restart, or out-of-bound...
CVE-2022-40318
- EPSS 0.12%
- Veröffentlicht 03.05.2023 12:16:27
- Zuletzt bearbeitet 21.11.2024 07:21:18
An issue was discovered in bgpd in FRRouting (FRR) through 8.4. By crafting a BGP OPEN message with an option of type 0xff (Extended Length from RFC 9072), attackers may cause a denial of service (assertion failure and daemon restart, or out-of-bound...
CVE-2023-2460
- EPSS 0.04%
- Veröffentlicht 03.05.2023 00:15:09
- Zuletzt bearbeitet 21.11.2024 07:58:39
Insufficient validation of untrusted input in Extensions in Google Chrome prior to 113.0.5672.63 allowed an attacker who convinced a user to install a malicious extension to bypass file access checks via a crafted HTML page. (Chromium security severi...
CVE-2023-2461
- EPSS 0.54%
- Veröffentlicht 03.05.2023 00:15:09
- Zuletzt bearbeitet 21.11.2024 07:58:39
Use after free in OS Inputs in Google Chrome on ChromeOS prior to 113.0.5672.63 allowed a remote attacker who convinced a user to enage in specific UI interaction to potentially exploit heap corruption via crafted UI interaction. (Chromium security s...