CVE-2022-2868
- EPSS 0.02%
- Veröffentlicht 17.08.2022 22:15:08
- Zuletzt bearbeitet 21.11.2024 07:01:50
libtiff's tiffcrop utility has a improper input validation flaw that can lead to out of bounds read and ultimately cause a crash if an attacker is able to supply a crafted file to tiffcrop.
CVE-2022-2869
- EPSS 0.03%
- Veröffentlicht 17.08.2022 22:15:08
- Zuletzt bearbeitet 21.11.2024 07:01:50
libtiff's tiffcrop tool has a uint32_t underflow which leads to out of bounds read and write in the extractContigSamples8bits routine. An attacker who supplies a crafted file to tiffcrop could trigger this flaw, most likely by tricking a user into op...
CVE-2020-14394
- EPSS 0.02%
- Veröffentlicht 17.08.2022 21:15:07
- Zuletzt bearbeitet 21.11.2024 05:03:10
An infinite loop flaw was found in the USB xHCI controller emulation of QEMU while computing the length of the Transfer Request Block (TRB) Ring. This flaw allows a privileged guest user to hang the QEMU process on the host, resulting in a denial of ...
CVE-2022-2862
- EPSS 0.08%
- Veröffentlicht 17.08.2022 20:15:07
- Zuletzt bearbeitet 21.11.2024 07:01:49
Use After Free in GitHub repository vim/vim prior to 9.0.0221.
CVE-2022-2849
- EPSS 0.05%
- Veröffentlicht 17.08.2022 18:15:08
- Zuletzt bearbeitet 21.11.2024 07:01:48
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0220.
CVE-2022-2845
- EPSS 0.64%
- Veröffentlicht 17.08.2022 15:15:07
- Zuletzt bearbeitet 21.11.2024 07:01:47
Improper Validation of Specified Quantity in Input in GitHub repository vim/vim prior to 9.0.0218.
CVE-2022-2817
- EPSS 0.04%
- Veröffentlicht 15.08.2022 23:15:09
- Zuletzt bearbeitet 21.11.2024 07:01:44
Use After Free in GitHub repository vim/vim prior to 9.0.0213.
CVE-2022-2816
- EPSS 0.04%
- Veröffentlicht 15.08.2022 22:15:08
- Zuletzt bearbeitet 21.11.2024 07:01:44
Out-of-bounds Read in GitHub repository vim/vim prior to 9.0.0212.
CVE-2022-38223
- EPSS 0.15%
- Veröffentlicht 15.08.2022 11:21:43
- Zuletzt bearbeitet 04.11.2025 19:15:41
There is an out-of-bounds write in checkType located in etc.c in w3m 0.5.3. It can be triggered by sending a crafted HTML file to the w3m binary. It allows an attacker to cause Denial of Service or possibly have unspecified other impact.
CVE-2022-2819
- EPSS 0.03%
- Veröffentlicht 15.08.2022 11:21:31
- Zuletzt bearbeitet 21.11.2024 07:01:45
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0211.